Subscribe free to our newsletters via your
. 24/7 Space News .




CYBER WARS
Stuxnet-like virus points to new round of cyber war
by Staff Writers
San Francisco (AFP) Oct 20, 2011


Internet security specialists have warned of a new round of cyber warfare in the form of a computer virus similar to the malicious Stuxnet worm believed to have targeted Iran's nuclear program.

Analysts at US firms McAfee and Symantec agreed that a sophisticated virus dubbed "Duqu" has been unleashed on an apparent mission to gather intelligence for future attacks on industrial control systems.

"This seems to be the reconnaissance phase of something much larger," McAfee senior research analyst Adam Wosotowsky told AFP about the virus, named for the "DQ" prefix on files it creates.

McAfee and Symantec said that, based on snippets of the virus they were given to study, portions of the encrypted Duqu code matched identically scrambled portions of Stuxnet.

"The threat was written by the same authors (or those that have access to the Stuxnet source code) and appears to have been created since the last Stuxnet file was recovered," Symantec said on its website.

"Duqu's purpose is to gather intelligence data and assets from entities, such as industrial control system manufacturers, in order to more easily conduct a future attack against another third party.

"The attackers are looking for information such as design documents that could help them mount a future attack on an industrial control facility."

Symantec said the virus had been aimed at "a limited number of organizations for their specific assets," without providing further information.

McAfee was working to trace a timeline of Duqu's spread and the areas it has reached.

"It seems to be primarily centered on the Middle East, then India, Africa and Eastern Europe," Wosotowsky said. "I haven't seen any reports in North or South America."

Duqu was crafted to steal information by logging computer key strokes or mining machines for valuable data such as passwords or credentials that could be used to slip into networks undetected, according to McAfee.

Duqu is able to pass information to its creators through "command and control" computers that could then be used to issue new orders, such as seizing control of factory machinery.

"Our guess is that it is going after infiltrating certificate authorities to then use those to sign programs and install itself much more cleanly on more protected, locked-down networks," Wosotowsky said.

Symantec said it was alerted to the threat on October 14 by a "research lab with strong international connections."

McAfee, like Symantec, declined to identify the research facility that tipped it off.

Wosotowsky saw Duqu as evidence that nation states are taking their conflicts into the cyber world.

"Normal people shouldn't be highly concerned with getting an infection in their personal, independent systems," Wosotowsky said.

"But they should be concerned that we are going to see the militarization of cyber space going forward... This is a new face of international conflict."

Stuxnet was designed to attack computer control systems made by German industrial giant Siemens and commonly used to manage water supplies, oil rigs, power plants and other critical infrastructure.

Most Stuxnet infections have been discovered in Iran, giving rise to speculation it was intended to sabotage nuclear facilities there. The worm was crafted to recognize the system it was to attack.

The New York Times reported in January that US and Israeli intelligence services collaborated to develop the computer worm to sabotage Iran's efforts to make a nuclear bomb.

Tehran has always denied it is seeking nuclear weapons.

.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues






Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle








CYBER WARS
Cyber war might never happen
London, UK (SPX) Oct 20, 2011
Cyber war, long considered by many experts within the defence establishment to be a significant threat, if not an ongoing one, may never take place according to Dr Thomas Rid of King's College London. In a paper published in The Journal of Strategic Studies, Dr Thomas Rid, from the Department of War Studies, argues that cyber warfare has never taken place, nor is it currently doing so and ... read more


CYBER WARS
Lunar Probe to search for water on Moon

Subtly Shaded Map of Moon Reveals Titanium Treasure Troves

NASA's Moon Twins Going Their Own Way

Titanium treasure found on Moon

CYBER WARS
Mars Landing-Site Specialist

New Mystery on Mars's Forgotten Plains

Russian scientists want to join Europe's ExoMars mission

UK Space Agency announces seed funding for Mars exploration

CYBER WARS
Space tourism gaining momentum

NASA Veteran Alan Stern to Lead Florida Space Institute

Astrotech Subsidiary Awarded Task Order for NASA Mission

ASU in space: 7 current missions, more in the wings

CYBER WARS
China's first space lab module in good condition

Takeoff For Tiangong

Snafu as China space launch set to US patriotic song

Civilians given chance to reach for the stars

CYBER WARS
Expedition 30 to ISS could be launched on Dec 21

ISS could be used for satellite assembly until 2028

Ultrasound 2: Taking Space Imaging to the Next Level

CU-Boulder to play key role in global student space experiment competition

CYBER WARS
ILS Proton Launches ViaSat-1 for ViaSat

Final checks for first Soyuz launch from Kourou

Soyuz is put through its paces for Thursday's launch

Russia blames scientists for rocket crashes

CYBER WARS
NASA's Spitzer Detects Comet Storm In Nearby Solar System

Photo Reveals Planet-Size Object as Cool as Earth

Spiral Arms Point to Possible Planets in a Star's Dusty Disk

UChicago launches search for distant worlds

CYBER WARS
Greenpeace criticises Japan radiation screening

Apple profit soars but misses high expectations

China rare earths giant halts output as prices fall

Camera lets people shoot first, focus later




The content herein, unless otherwise known to be public domain, are Copyright 1995-2014 - Space Media Network. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement