![]() |
|
#276
|
||||
|
||||
|
After Hitting Iran Hard Stuxnet Attacks Kazakhstan and Russia
Kaspersky Lab reports that the number of hosts infected with Stuxnet in Iran has been slowly decreasing since July, but has spiked in Kazakhstan and Russia this month. Full Story Here: http://news.softpedia.com/news/After...a-158283.shtml |
|
#277
|
||||
|
||||
|
"Further alarm was raised when it was discovered that the Bushehr facility was using an un-licensed version of Siemens' special industrial control software. To make matters worse, it was not properly configured."
:-O ""I have never seen anything like that, not even in the smallest cookie plant," an appalled Langner said, after seeing evidence of the violations in a press photo of a Bushehr central control monitor screen that registered a clear systems error." http://it.tmcnet.com/news/2010/09/27/5031216.htm |
|
#278
|
||||
|
||||
|
@ noone_particular
Very good points about holding those responsible for any such disaster by such methods. And not just in this case, but Any others in the future. In this case it "might" be to do damage locally, without releasing harmful materials/chemicals into our atmosphere. But **** can & does happen, and if so the people/nation responsible Must expect some comeback ! @ hawki Thanks for the links. * Quote:
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#279
|
|||
|
|||
|
Thanks for posting the article. It's certainly a welome diversion from the deluge of articles that sensationalize the exploit. This article actually gives pause to considerations of preventative security measures!
Quote:
Quote:
Quote:
---- rich |
|
#280
|
||||
|
||||
|
Quote:
|
|
#281
|
||||
|
||||
|
Quote:
Rmus will like this Quote:
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#282
|
||||
|
||||
|
Iran claims Stuxnet worm did not hit nuclear systems
Head of the Atomic Energy Organization of Iran (AEOI) Ali Akbar Salehi says enemy efforts to infect Iranian nuclear systems with a computer virus have failed. http://www.infowars.com/iran-claims-...uclear-systems
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#283
|
||||
|
||||
|
Quote:
http://www.infowars.com/millions-of-...s-across-china
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#284
|
||||
|
||||
|
|
|
#285
|
||||
|
||||
|
@ hawki
Thanks for posting Quote:
* Quote:
So MS ignored this vulnerability for over 18 months * Quote:
Uses a Win32k.sys Vulnerability and a Task Scheduler vulnerability
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#286
|
||||
|
||||
|
Quote:
Quoting... Quote:
__________________
-http://www.veteranstoday.com/author/henderson/ -http://www.veteranstoday.com/2013/03/04/the-911-illusion-patsies-beneficiaries/ |
|
#287
|
||||
|
||||
|
Quote:
FWIW: Due primarily to Russin implemented safeguards, the Bushehr nuclear reactor is not a high-priority target in Israel's view. "A more plausible target is Iran’s uranium-enrichment plant at Natanz. Inspections by the International Atomic Energy Agency, the UN’s watchdog, have found that about half Iran’s centrifuges are idle and those that work are yielding little. Some say a fall in the number of working centrifuges at Natanz in early 2009 is evidence of a successful Stuxnet attack." http://www.economist.com/node/171478...47818&fsrc=rss |
|
#288
|
|||
|
|||
|
Regardless of which plant it targets, this type of activity is no different than terrorism. If that malware either directly causes a radiation release or causes them to do something that causes one, it would qualify as an act of war. If another nation did that to us, guarantee you that's what we'd be calling it. The hypocrisy of this is sickening.
__________________
Sitting in a bunker, here behind my wall, waiting for the worms to come. |
|
#289
|
||||
|
||||
|
Quote:
http://www.bbc.co.uk/news/world-middle-east-11459468
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#290
|
||||
|
||||
|
Conspiracies, Conspiracies, Conspiracies. Everybody loves to talk about conspiracy theories. Interesting insights(?) from the comments sections in various forums, blogs, news sites about Stuxnet...
http://www.prisonplanet.com/evidence...ke-plants.html http://www.economist.com/blogs/babba...et_worm?page=1 http://www.abovetopsecret.com/forum/thread613841/pg1
__________________
-http://www.veteranstoday.com/author/henderson/ -http://www.veteranstoday.com/2013/03/04/the-911-illusion-patsies-beneficiaries/ |
|
#291
|
||||
|
||||
|
Code:
btw, i was wondering why some sensitive places like nuclear power would use "MS windows" though all people know how much vulnerable it is !!!! |
|
#292
|
||||
|
||||
|
Quote:
I decided to have some fun, Hebrew anagramatical like: Talmud style. myrtus Quote:
Quote:
Possible hebrew involved (u is not a Hebrew letter) mem yod resh tav/teit/tzadei samek/shin 40 10 200 400/9/900 60/300 Forward: mem resh (mar /ah)= Mr., bitter mem resh tav (marat)= Mrs. mem resh teit (marat)= plucked (hair, fleathers) resh tzadei (rats)= run, runner teit samek (tas)= flew; tray, platter tav shin (tash)= weakened; became exhausted Backward: shin teit (shat)= sailed, rowed samek teit resh (satar)= slapped samek tav resh (satar)= refuted, contradicted resh mem (ram)= lofty, loud tav resh (tar)= toured tav resh mem (taram)= donated, contributed tav resh yod mem (tareem)= lift! raise!
__________________
Americans are the enemy? Mil. can arrest you? What the heck is going on? |
|
#293
|
|||
|
|||
|
|
|
#294
|
||||
|
||||
|
EU Agency analysis of 'Stuxnet' malware: a paradigm shift in threats and Critical Information Infrastructure Protection- ENISA:
http://www.enisa.europa.eu/media/pre...e-protection-1
__________________
A man's pride shall bring him low: but honour shall uphold the humble in spirit: Proverbs 29,23. "Only the wasteful virtues earn the sun": William Butler Yeats, April 27, 1916. |
|
#295
|
||||
|
||||
|
Quote:
EU calls Stuxnet 'paradigm shift' as U.S. responds more mildly In a statement released yesterday, Udo Helmbrecht, the executive director of ENISA (European Network and Information Security Agency), said that as a "new class and dimension of malware," Stuxnet represents a "paradigm shift." ... U.S. response more tepid Despite the sophistication of Stuxnet and the fact that it is aimed at critical infrastructure, U.S. cybersecurity officials seem to be treating it like any ordinary malware, an industry watcher told CNET and experts complained to The Christian Science Monitor. Through US-CERT (Computer Emergency Readiness Team), the Department of Homeland Security issues advisories and alerts about computer vulnerabilities and attacks. Searches for "Stuxnet" and for "Siemens Simatic" revealed a handful of warnings, with the earliest dating back to July when Stuxnet was first publicized. These include updates to prior advisories as more was learned in mid-August about the PLC code injection aspect of the malware, which meant it was not just for espionage but could be used for sabotage. "The question is where the heck is DHS?" Joe Weiss, a critical infrastructure security expert, said in an interview with CNET today. "There is no real guidance being given. There is nothing going out to the utilities or other end users talking about the actual compromise of the controller itself" and how to detect and remove the malware from infected PLCs. U.S. officials seem oddly disinterested in something that other countries appear to be taking extremely seriously--the first malware known to specifically target critical infrastructure, Weiss suggested. As an example, he said the acting director of control systems for the DHS gave a talk two weeks ago at the Applied Control Solutions' Industrial Control Cyber Security conference run by Weiss and didn't mention Stuxnet. link: http://news.cnet.com/8301-27080_3-20019124-245.html
__________________
-http://www.veteranstoday.com/author/henderson/ -http://www.veteranstoday.com/2013/03/04/the-911-illusion-patsies-beneficiaries/ |
|
#296
|
||||
|
||||
|
__________________
A man's pride shall bring him low: but honour shall uphold the humble in spirit: Proverbs 29,23. "Only the wasteful virtues earn the sun": William Butler Yeats, April 27, 1916. |
|
#297
|
||||
|
||||
|
@ Dermot7
Thanks for the latest Langner link * Quote:
__________________
. Malware = You don't scare me A different perspective https://rt.com - https://rt.com/on-air |
|
#298
|
||||
|
||||
|
Microsoft Patch Tuesday: One Stuxnet hole remains open
While 16 updates from this Microsoft bumper Patch Tuesday close 49 security holes, a vulnerability exploited by the Stuxnet super worm to escalate access privileges remains open. Update MS10-073 does, however, close the other two known privilege escalation holes, which are related to loading keyboard layouts in the kernel. MS10-073 also fixes two previously undisclosed flaws. As one of the problems was discovered by Symantec, it's probably already actively being exploited in the wild. http://www.h-online.com/security/new...n-1106886.html |
|
#299
|
||||
|
||||
|
More than 30 persons built the Stuxnet worm.
WASHINGTON -- Details about the Stuxnet worm, a highly-engineered piece of malicious software that targeted industrial control systems, have trickled out since it made international news earlier this fall. The sophistication of the malware combined with its ability to target the controllers that run power plants and other infrastructure facilities impressed many security experts. At a small conference on cybersecurity sponsored by TechAmerica, Symantec's Brian Tillett put a number on the size of the team that built the virus. He said that traces of more than 30 programmers have been found in source code. http://www.theatlantic.com/technolog...uilt-it/66156/ |
|
#300
|
||||
|
||||
|
New STUXNET Scanner Tool by trendmicro
http://blog.trendmicro.com/stuxnet-s...forensic-tool/ not sure if it's the right place to post the tool though ![]()
__________________
Analyzing scareware, junkware, crimeware, damnware, crapware ....... and all $h!tware |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|