Wednesday, July 27, 2011

Stuxnet: The First Weaponized Virus



Stuxnet video: Anatomy of a Computer Virus

Director:Patrick Clair (patrickclair.com, vimeo.com/patrickclair)
Written by:Scott Mitchell
Produced by:Zapruder's Other Films
Motion Graphics:Patrick Clair

I stumbled across this incredibly well-done video, which describes, in concise layman’s terms, the nature and ramifications of last year’s Stuxnet virus.  Stuxnet is arguably the first weapon of war that’s made entirely of computer code, deployed on a global scale. This 3-minute segment was produced for the Australian TV program “HungryBeast” on ABC1.

Although many of us have still not heard of Stuxnet, this was one virus that should make everyone sit up and take notice.  Those who have studied this virus say it is undoubtedly a “cyberweapon”, and many believe that it specifically targeted Iran's nuclear uranium enrichment facilities.  Further still, it is widely speculated that Israel and/or the United States may have been involved.

Eugene Kaspersky, co-founder and chief executive officer of Russian computer security firm Kaspersky Lab said on the company's website that “This malicious program was not designed to steal money, send spam, grab personal data... no, this piece of malware was designed to sabotage plants, to damage industrial systems.”

In the new world order of tomorrow, the victor may not be the one with the mightiest guns, bombs, planes or armies, but rather, the one with the mightiest code.
Dieter Groll
“We believe this type of attack could only be conducted with nation-state support and backing.  The sophistication of the multi-layered attack brings us to an understanding that Stuxnet was created by a team of extremely skilled professionals who possessed vast resources and financial support”, he concluded.

I first wrote about Cyberwarfare in 2009.  Stuxnet is the first concrete example of the future of warfare, with truly frightening potential.  Stuxnet's successors may indeed possess the potential to bring down an enemy nation’s electrical grid, or other critical infrastructure.  In the “new world order” of tomorrow, the victor may not be the one with the mightiest guns, bombs, planes or armies, but rather, the one with the mightiest code.

Monday, December 7, 2009

(USB) Power to the People

TruePower UCS Power Outlet w/ Built-in USB Ports

TruePower UCS Power Outlet w/ Built-in USB Ports
From the “It’s About Time Department”:  Fastmac.com has announced their custom-designed TruePower UCS Power Outlet with Built-in USB Ports.  At just $10 a pop, you can pick up a couple of these bad boys and put one next to the couch, one by your nightstand, etc.  Oh, add the cost of shipping, plus permitting fees and electrician’s fees, but if you decide to go renegade and trim those costs with it a simple do-it-yourself weekend project, I’ll take NO responsibility for the consequences.

These outlets are scheduled to begin shipping in early 2010, after final UL approval.  That’s just in time for USB 3.0 to begin coming out later in the year, but hey, what technology isn’t obsolete the moment you drive it off the lot?

One added bonus is that the USB ports only draw power when a device is physically connected to it, unlike the typical “vampire” chargers that continually suck electricity when we leave them plugged in – but we never do that, do we?  [Ahem, excuse me a moment while I crawl under my desk and unplug the 3 unused chargers that I just noticed... Ok, I’m back.]

Belkin In-Desk USB Hub

The Belkin In-Desk USB Hub
Speaking of desks, another useful device is the Belkin In-Desk USB Hub, a 4-port USB 2.0 hub that’s designed to fit into a 3-inch-round opening on your desk and connect to your computer with the included USB cable. It retails for around $40.

And if your desk doesn’t have a 3-inch hole, it’s easy to add with a hole-saw drill attachment, but I’ll let somebody else blog about that.  What’s that?  My desk?  Yup, the hole’s there – I remember seeing it a couple years ago before all the paper got piled on top of it....

Update December 10, 2009: 
Disclaimer: The author received absolutely no compensation whatsoever for mentioning these products.

Thursday, November 19, 2009

Report: Countries arming for cyber warfare

A new report issued by McAfee, Inc., entitled “Virtually Here: The Age of Cyber Warfare” reveals that the global cyberarms race has moved from fiction to reality.  The report found that politically motivated cyberattacks have increased, and five countries – the United States, Russia, France, Israel and China – are now armed with cyberweapons.

“McAfee began to warn of the global cyberarms race more than two years ago, but now we’re seeing increasing evidence that it’s become real,” said Dave DeWalt, McAfee President and CEO.  “Now several nations around the world are actively engaged in cyberwar-like preparations and attacks.  Today, the weapons are not nuclear, but virtual, and everyone must adapt to these threats.”

... the efforts of nation-states to build increasingly sophisticated cyberattack capabilities, and in some cases demonstrate a willingness to use them, suggest that a Cyber Cold War may have already begun.
McAfee, Inc. — Virtually Here: The Age of Cyber Warfare
The report includes insights from dozens of the world’s leading experts in international relations, including Dr. Jamie Saunders, counselor at the British Embassy in Washington D.C. and security experts with experience at the U.S. National Security Agency and the Australian Attorney-General’s Department.  Former White House advisor Paul Kurtz compiled the report on McAfee’s behalf.

The report reveals how the private sector will get caught in the crossfire.  Government disclosure is a major issue, as cyber initiatives and information are often classified by the government, hindering cybercrime defense in the public and private sector.  Experts call for a clear definition and an open debate on cyberwarfare.  Without an open discussion among the government, private sector and the public, future cyberattacks targeting critical infrastructure could be devastating.

This year’s report identifies the following challenges:

  • Cyberwarfare is a Reality – Over the past year, the increase in politically motivated cyberattacks has raised alarm and caution, with targets including the White House, Department of Homeland Security, U.S. Secret Service and Department of Defense in the U.S. alone.  Nation-states are actively developing cyberwarfare capabilities and involved in the cyberarms race, targeting government networks and critical infrastructures.  The result of a cyberattack of this nature can result in physical damage and death – it’s not just a war between computers; cyberwarfare can cause real devastation.
  • Cyberweapons Are Targeting Critical Infrastructure – Attackers are not only building their cyberdefenses, but cyberoffenses, targeting infrastructure such as power grids, transportation, telecommunication, finance and water supplies, because damage can be done quickly and with little effort.  In most developed countries, critical infrastructure is connected to the Internet and lacks proper security functions, leaving these installations vulnerable to attacks.  Without the appropriate protection combined with the current lack of preparedness, an attack on these infrastructures would be detrimental and will cause more destruction than any previous attacks.
  • Cyberwar is Undefined – Cyberwarfare entangles so many different actors in so many different ways that the rules of engagement are not clearly defined.  Additionally, there is debate on how much responsibility should be placed on organizations to protect and educate the public on preventing cyberattacks.  Without a proper definition in place, it is nearly impossible to determine when a political response or threat of military action is warranted.
  • Private Sector is the Most at Risk – Critical infrastructure is privately-owned in many developed countries, making it a huge target for cyberwarfare.  The private sector relies heavily on the government to prevent cyberattacks.  If virtual shooting starts, governments, corporations and private citizens may get caught in the crossfire.  Without insight into the government’s cyberdefense strategy, the private sector is not able to be proactive and take the proper precautions.  Experts call for a public discussion on cyberwarfare, bringing it out of the shadows.
“Nations have been reluctant to use those capabilities because of the likelihood that [a big cyberattack] could do harm to their own country.  The world is so interconnected these days”, says Dmitri Alperovitch, Vice President of Threat Research at McAfee.

However, experts are putting dots together and seeing patterns that indicate that there is increasing intelligence gathering and building of sophisticated cyberattack capabilities.

“While we have not yet seen a ‘hot’ cyberwar between major powers, the efforts of nation-states to build increasingly sophisticated cyberattack capabilities, and in some cases demonstrate a willingness to use them, suggest that a ‘Cyber Cold War’ may have already begun,” the report says.

Over the next 20 to 30 years, cyberattacks will increasingly become a component of war.
William Crowell, fmr. Deputy Director, U.S. National Security Agency
For instance, Alperovitch speculates that the July 4 denial-of-service attacks on Web sites in the U.S. and South Korea could have been a test by North Korea to see if flooding South Korean networks and the transcontinental communications between the U.S. and South Korea would disrupt the ability of the U.S. military in South Korea to communicate with military leaders in Washington, D.C., and the Pacific Command in Hawaii.  “The ability of the North Koreans to disable cybercommunications between the U.S. and South Korea would give them a huge strategic advantage [if they were to attack South Korea]”, Alperovitch said.

There have been earlier attacks that smack of cyberwarfare too.  Estonian government and commercial sites suffered debilitating denial-of-service attacks in 2007, and last year sites in Georgia were attacked during the South Ossetia war, orchestrated by civilian attackers.  Recently, in August of 2009, Twitter, Facebook and other sites suffered denial-of-service attacks that appeared to be aimed at a single university professor in Georgia who had been blogging about the Georgian war.  Those attacks, timed closely with the one-year anniversary of the conflict, affected hundreds of millions of users.

“Over the next 20 to 30 years, cyberattacks will increasingly become a component of war,” says William Crowell, a former Deputy Director of the U.S. National Security Agency.  “What I can’t foresee is whether networks will be so pervasive and unprotected that cyber war operations will stand alone.”

The complete McAfee Virtual Criminology Report 2009 is available for download at http://resources.mcafee.com/content/NACriminologyReport2009NF