Stuxnet - First weaponized malware?

The constant threat: viruses, trojans, spyware, ... the list goes on

Re: Stuxnet - First weaponized malware?

Post by Dwere134 on Tue Oct 05, 2010 10:21 pm
([msg=47125]see Re: Stuxnet - First weaponized malware?[/msg])

Goatboy wrote:
Dwere134 wrote:Did you download it and test it out to see?

Yea, I just loaded up a nuclear power plant image into VMWare.

Smartass. ;-)
Dwere (David)
Goatboy wrote:
Dwere wrote:I'm not one to start some branch of religion though. Not my thing.

Of course if you wanted to, you could call it the Davidians!
Dwere134
Experienced User
Experienced User
 
Posts: 83
Joined: Mon Sep 27, 2010 5:06 pm
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by Goatboy on Tue Oct 05, 2010 10:22 pm
([msg=47126]see Re: Stuxnet - First weaponized malware?[/msg])

Better than being a dumbass ;)
Mundus Vult Decipi
User avatar
Goatboy
Expert
Expert
 
Posts: 2443
Joined: Mon Jul 07, 2008 9:35 pm
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by sanddbox on Fri Oct 08, 2010 8:29 pm
([msg=47269]see Re: Stuxnet - First weaponized malware?[/msg])

Goatboy wrote:
Dwere134 wrote:Did you download it and test it out to see?

Yea, I just loaded up a nuclear power plant image into VMWare.


Well, these were run on windows computers, so it is technically possible.
Image

HTS User Composition:
95% Male
4.98% Female
.01% Monica
.01% Goat
User avatar
sanddbox
Expert
Expert
 
Posts: 2354
Joined: Sat Jul 04, 2009 5:20 pm
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by insomaniacal on Fri Oct 08, 2010 8:42 pm
([msg=47271]see Re: Stuxnet - First weaponized malware?[/msg])

No idea if Sanddbox is right or not, but seriously? You'd think for anything related to weaponry they'd have some seriously modified open source OS, or even better, a totally custom OS written solely for their needs.

I wouldn't want to trust Windows (or even 90% of Linux Distros) with something like Nuclear Power.
It's not who votes that counts, it's who counts the votes
insomaniacal.blog.com
User avatar
insomaniacal
Addict
Addict
 
Posts: 1212
Joined: Sun May 24, 2009 10:21 am
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by tgoe on Sun Oct 10, 2010 9:26 am
([msg=47302]see Re: Stuxnet - First weaponized malware?[/msg])

Windows is just an interface to the PLCs for workers so it's the chosen transport mechanism for stuxnet. The software that's actually responsible for the running and monitoring of the machines is custom and dedicated to that purpose. btw, I say that link earlier looks like stuxnet only because it's identical to one I got elsewhere and a couple AV say it is stuxnet. I haven't been able to look at it that much in depth and unfortunately I don't have the hardware to get it up and running fully...

P.S. Stuxnet Dossier if you haven't seen it yet:
http://www.symantec.com/content/en/us/enterprise/media/security_response/whitepapers/w32_stuxnet_dossier.pdf
User avatar
tgoe
Contributor
Contributor
 
Posts: 527
Joined: Sun Sep 28, 2008 2:33 pm
Location: q3dm7
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by fashizzlepop on Sun Oct 10, 2010 10:52 pm
([msg=47346]see Re: Stuxnet - First weaponized malware?[/msg])

insomaniacal wrote:seriously modified open source OS,


Yeah, I would highly doubt they'd use an open source OS. Windows was probably the better option because so much attention is thrown at it to keep it patched.

*Nix has been proven to be easier to break into. It's just that there's not as much gain into making *Nix virii as Windows...
The glass is neither half-full nor half-empty; it's merely twice as big as it needs to be.
User avatar
fashizzlepop
Moderator
Moderator
 
Posts: 2147
Joined: Sat May 24, 2008 1:20 pm
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by tgoe on Sun Oct 10, 2010 11:13 pm
([msg=47349]see Re: Stuxnet - First weaponized malware?[/msg])

fashizzlepop wrote:
insomaniacal wrote:seriously modified open source OS,


Yeah, I would highly doubt they'd use an open source OS. Windows was probably the better option because so much attention is thrown at it to keep it patched.

*Nix has been proven to be easier to break into. It's just that there's not as much gain into making *Nix virii as Windows...



Windows was most likely not chosen at all but rather implied due to Microsoft's monopoly.

Again, stuxnet's target is the PLC. Not windows or *nix or any PC. If the people at the facilities used *nix, it would have spread via *nix to try to get at the machinery.

Windows have been proven to be easiest to break into. Pick up rock, throw.
User avatar
tgoe
Contributor
Contributor
 
Posts: 527
Joined: Sun Sep 28, 2008 2:33 pm
Location: q3dm7
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by insomaniacal on Mon Oct 11, 2010 6:12 am
([msg=47366]see Re: Stuxnet - First weaponized malware?[/msg])

fashizzlepop wrote:
insomaniacal wrote:seriously modified open source OS,


Yeah, I would highly doubt they'd use an open source OS. Windows was probably the better option because so much attention is thrown at it to keep it patched.

*Nix has been proven to be easier to break into. It's just that there's not as much gain into making *Nix virii as Windows...


As I said "Highly Modified". And I also highly doubt a properly configured *Nix box would be any easier to break into versus a Windows box. Source on that?
It's not who votes that counts, it's who counts the votes
insomaniacal.blog.com
User avatar
insomaniacal
Addict
Addict
 
Posts: 1212
Joined: Sun May 24, 2009 10:21 am
Blog: View Blog (0)


Re: Stuxnet - First weaponized malware?

Post by Vulpine on Mon Oct 11, 2010 11:52 am
([msg=47381]see Re: Stuxnet - First weaponized malware?[/msg])

insomaniacal wrote:As I said "Highly Modified". And I also highly doubt a properly configured *Nix box would be any easier to break into versus a Windows box. Source on that?



Regarding IBM 2010 Security Evaluation.

This slightly supports what fashizzlepop says, but the system critical exploits still favor Windows even with Linux having more vulnerabilities. Windows just gets a bad reputation because it's heavily targeted due to market share. If you flip it around (Linux or Apple dominating) you'd see one of them catching the same flak. Heck, someone even managed to sneak a trojan into some Linux repositories that was just recently discovered after months of sitting there.

I'm inclined to agree with tgoe that this worm, or some variation, would have got in regardless of the OS.
User avatar
Vulpine
Poster
Poster
 
Posts: 382
Joined: Fri Mar 26, 2010 11:14 pm
Blog: View Blog (0)


Previous

Return to Malware

Who is online

Users browsing this forum: No registered users and 0 guests