. Military Space News .




.
CYBER WARS
Stuxnet-like virus points to new round of cyber war
by Staff Writers
San Francisco (AFP) Oct 20, 2011


Internet security specialists have warned of a new round of cyber warfare in the form of a computer virus similar to the malicious Stuxnet worm believed to have targeted Iran's nuclear program.

Analysts at US firms McAfee and Symantec agreed that a sophisticated virus dubbed "Duqu" has been unleashed on an apparent mission to gather intelligence for future attacks on industrial control systems.

"This seems to be the reconnaissance phase of something much larger," McAfee senior research analyst Adam Wosotowsky told AFP about the virus, named for the "DQ" prefix on files it creates.

McAfee and Symantec said that, based on snippets of the virus they were given to study, portions of the encrypted Duqu code matched identically scrambled portions of Stuxnet.

"The threat was written by the same authors (or those that have access to the Stuxnet source code) and appears to have been created since the last Stuxnet file was recovered," Symantec said on its website.

"Duqu's purpose is to gather intelligence data and assets from entities, such as industrial control system manufacturers, in order to more easily conduct a future attack against another third party.

"The attackers are looking for information such as design documents that could help them mount a future attack on an industrial control facility."

Symantec said the virus had been aimed at "a limited number of organizations for their specific assets," without providing further information.

McAfee was working to trace a timeline of Duqu's spread and the areas it has reached.

"It seems to be primarily centered on the Middle East, then India, Africa and Eastern Europe," Wosotowsky said. "I haven't seen any reports in North or South America."

Duqu was crafted to steal information by logging computer key strokes or mining machines for valuable data such as passwords or credentials that could be used to slip into networks undetected, according to McAfee.

Duqu is able to pass information to its creators through "command and control" computers that could then be used to issue new orders, such as seizing control of factory machinery.

"Our guess is that it is going after infiltrating certificate authorities to then use those to sign programs and install itself much more cleanly on more protected, locked-down networks," Wosotowsky said.

Symantec said it was alerted to the threat on October 14 by a "research lab with strong international connections."

McAfee, like Symantec, declined to identify the research facility that tipped it off.

Wosotowsky saw Duqu as evidence that nation states are taking their conflicts into the cyber world.

"Normal people shouldn't be highly concerned with getting an infection in their personal, independent systems," Wosotowsky said.

"But they should be concerned that we are going to see the militarization of cyber space going forward... This is a new face of international conflict."

Stuxnet was designed to attack computer control systems made by German industrial giant Siemens and commonly used to manage water supplies, oil rigs, power plants and other critical infrastructure.

Most Stuxnet infections have been discovered in Iran, giving rise to speculation it was intended to sabotage nuclear facilities there. The worm was crafted to recognize the system it was to attack.

The New York Times reported in January that US and Israeli intelligence services collaborated to develop the computer worm to sabotage Iran's efforts to make a nuclear bomb.

Tehran has always denied it is seeking nuclear weapons.

Related Links
Cyberwar - Internet Security News - Systems and Policy Issues




.
.
Get Our Free Newsletters Via Email
...
Buy Advertising Editorial Enquiries






.

. Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle



CYBER WARS
Cyber war might never happen
London, UK (SPX) Oct 20, 2011
Cyber war, long considered by many experts within the defence establishment to be a significant threat, if not an ongoing one, may never take place according to Dr Thomas Rid of King's College London. In a paper published in The Journal of Strategic Studies, Dr Thomas Rid, from the Department of War Studies, argues that cyber warfare has never taken place, nor is it currently doing so and ... read more


CYBER WARS
Aerostat system detects cruise missiles and supports engagement

Raytheon Successfully Test Fires First New-Build Patriot Missile

NATO missile shield 'not targeted at anyone': Spain

THAAD Weapon System Achieves Intercept of Two Targets at Pacific Missile Range Facility

CYBER WARS
U.S. aid to help find Libyan missiles

Philippines unfazed by Taiwan Spratlys missile plan

El-Op tunes C-Music to protect airliners

US team seeking missing missiles in Libya

CYBER WARS
Computer virus did not target US drone fleet: general

US Army to fly 'kamikaze' drones

Raytheon Aims to Integrate STM on Light-Attack Aircraft

Miscommunication caused US drone deaths: report

CYBER WARS
First MEADS Battle Manager Begins Integration Testing in the United States

Elbit Establishes Israeli MOD Comms Equipment Supply Upgrade and Maintenance Project

Boeing FAB-T Demonstrates High-Data-Rate Communications with AEHF Satellite Test Terminal

NRL TacSat-4 Launches to Augment Communications Needs

CYBER WARS
Lockheed Martin Receives Unanimous Decision That "Paveway" Is a Generic Term

First shipboard integration of a true dual-band radar suite

Raytheon Awarded contract for Lightweight Torpedoes

Lockheed Martin Delivers First F-35 Weapons Load Training System to Eglin AFB

CYBER WARS
Eurocopter aims for S. Korean contracts

Thales to upgrade Australia's Steyr rifles

Brazil's C295s achieve milestone

Gripen upgrade likely to heat up FX-2 race

CYBER WARS
India PM concedes 'problems' in China relations

Outside View: A kingdom for a strategy

China not seeking to top US: Lee Kuan Yew

Obama national security aide to visit China, India

CYBER WARS
Boeing and BAE Systems to Develop Integrated Directed Energy Weapon for US Navy


.

The content herein, unless otherwise known to be public domain, are Copyright 1995-2011 - Space Media Network. AFP and UPI Wire Stories are copyright Agence France-Presse and United Press International. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement