Bought my first house

User avatar
DBTrek
Posts: 12241
Joined: Wed Jan 25, 2017 7:04 pm

Re: Bought my first house

Post by DBTrek » Wed Mar 10, 2021 3:35 pm

Or ...maybe it IS how it was done (just did a quick search on this):
...Researchers now know that the sabotage-oriented code first attacked five component vendors that are key to Iran's nuclear program, including one that makes the centrifuges Stuxnet was targeting. These companies were unwitting Trojan horses, security firm Kaspersky Lab says. Once the malware hit their systems, it was just a matter of time before someone brought compromised data into the Natanz plant (where there's no direct internet access) and sparked chaos. As you might suspect, there's also evidence that these first breaches didn't originate from USB drives. Researchers saw that Stuxnet's creators compiled the first known worm mere hours before it reached one of the affected companies; unless there was someone on the ground waiting to sneak a drive inside one of these firms, that code reached the internet before it hit Natanz....


https://www.engadget.com/2014-11-13-stu ... first.html
Compromise the hardware vendors - let the rest run it's due course.
No secret weaponry.
Using the same tactics that have always worked - reach isolated systems through necessary hardware updates.
Another path is using inside agents.
"Hey varmints, don't mess with a guy that's riding a buffalo"

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 3:56 pm

I've read the media reports which quotes "anonymous American intelligence officials" stating that it was delivered by MEK agent with a thumb drive

that actually strikes me as a cover story

one reason being the Iranians were on high alert for that, unsupervised access to USB ports seems unlikely, they were watching everybody in there all the time

but also, any official revealing the actual method would be committing treason, so seems unlikely that they would be giving the real story
Nec Aspera Terrent

User avatar
DBTrek
Posts: 12241
Joined: Wed Jan 25, 2017 7:04 pm

Re: Bought my first house

Post by DBTrek » Wed Mar 10, 2021 4:04 pm

I only know what the independent security experts say.
In this case, Kapersky says they did it through fairly well known and effective means.
/shrug

I doubt there's a magic CIA hack-from-afar with no connectivity weapon - simply beacuse Stuxnet is so old that we would have almost certainly have seen this weapon used again and again by now.
But ... it's not like the CIA would advertise it if it existed.
"Hey varmints, don't mess with a guy that's riding a buffalo"

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:09 pm

I just don't find the thumb drive story plausible

it wasn't just that the computers were not connected to the outside world, they weren't even connected to each other

there were multiple levels of computers, none of which were connected to the other, these computers were not networked internally

one USB drive wouldn't get it done, because it had to jump to other computers in the facility from there without any connections between them
Nec Aspera Terrent

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:15 pm

like the Iranians did everything right

they had all their computers working in isolation, not hooked up to anything. they had them on multiple floors, with no connections between them

somebody would have had to go to each computer and insert the virus manually, over & over, that just doesn't seem plausible with the level of draconian security in play
Nec Aspera Terrent

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:21 pm

you have these isolated computers on different floors, each one running a centrifuge array

none of them are connected to each other, they don't talk to each other, there's no interface from computer to computer

yet they are all running a coordinated ruse at the same time, seamlessly so nobody notices

that is slick, there's no way for them to communicate, yet somehow they are all working in concert undetected

it's not just that Stuxtnet got in

it got in everywhere at once and was coordinating between computers which were not connected to each other
Nec Aspera Terrent

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:29 pm

to the larger point tho,

operational nuclear weapons security is tight, but not crazy paranoid Iranian secret program tight

if you can get into Natanz, you can get into the Russian Strategic Rocket forces computers much more easily

the Iranians hold people's families hostage, they torture people to death, they have no limits

the Russians don't have that level of security, not even close, and certainly NORAD doesn't neither
Nec Aspera Terrent

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:37 pm

bear in mind I'm not saying you can hack in to launch nuclear missiles

that's not computerized at all, that's entirely mechanical, you have to turn a physical key

what you would hack into the is the higher command & control which sends the orders to those guys who turn the keys

the point of attack is the early warning systems, to blind them, and only for the few minutes required
Last edited by Smitty-48 on Wed Mar 10, 2021 4:41 pm, edited 1 time in total.
Nec Aspera Terrent

User avatar
SuburbanFarmer
Posts: 25278
Joined: Wed Nov 30, 2016 6:50 am
Location: Ohio

Re: Bought my first house

Post by SuburbanFarmer » Wed Mar 10, 2021 4:41 pm

The most credible story I heard about Stuxnet was that they hacked the PLCs, not the actual computers.
SJWs are a natural consequence of corporatism.

Formerly GrumpyCatFace

https://youtu.be/CYbT8-rSqo0

Smitty-48
Posts: 36399
Joined: Wed Nov 30, 2016 3:22 am

Re: Bought my first house

Post by Smitty-48 » Wed Mar 10, 2021 4:50 pm

in the case of the Russian Perimeter or Dead Hand system

that has to be turned on

and even if it is autonomous once it is turned on

the turning on part has to be networked

which means turning it off is networked as well

the Natanz effect is when it is telling the Kremlin it is on, when in fact you have turned it off
Nec Aspera Terrent