New York Times Reports US and Israel Behind Stuxnet
Oxford_Comma_Lover writes "Confirming heavy speculation in the Slashdot community, the New York Times reports that joint US-Israeli efforts were almost certainly behind the recent Stuxnet attack on Iran's nuclear program." The article stops just short of saying in so many words that Israeli is the doer, but leaves little doubt of its conclusion.
They probably "almost certainly" did, but the NYT article is still just speculation. The haven't confirmed anything.
It will considered an act of war resulting in the real thing, of course.
For justice, we must go to Don Corleone
Or you have to have spys in the Companies providing the parts. Siemens does not have a strong culture of being paranoid, especially not against western/pro-western secret services, with which they probably collaborate anyway when it comes to identifying industrial espionage from other services. I am pretty sure that the BND (German secret service) can ask them for plans and details quite openly (i guess you don't produce parts relevant for nuclear technology or military infrastructure without having liaison officer assigned to you), and probably also for the source code of the embedded SPS modules. For sure the same holds true for the manufacturer of the turbines. Since the Western secret services collaborate on an less prominent, informal level (see e.g. the BND agents in Baghdad during the war which reported back to the NATO headquarters, where obviously - no records exist - they helped clearing military targets in Iraq, despite Germany no being officially involved in the war).
I would guess that actually several secret services collaborated in this, but the "Cui Bono?" points to Israel.
By the way, all the pundits saying it would take the resources of a government to create that worm know very little about what it actually takes to make one. It did however take very intimate knowledge of the code running on those systems, so the creator probably has a copy of the source code on those machines, or the equivalent. (I'm pretty sure it's too large to be memorized by a single person.)
Did you RTFA? It claims Israel acquired some of the centrifuges that Iran is using, got them working, then tested the worm's effect on them. That's a lot more than the resources of Joe Hacker. Not just anyone can run down to Pakistani-Centrifuges-R-Us and buy a dozen of them to test with.
When you look at the instructions Stuxnet was sending to the centrifuges, they're brilliantly designed exactly to cause them to fail. After lurking for a couple weeks, they over-speed them for a few minutes, then drop them down to almost stopped speed, then bring them back to a fairly normal operating speed. The overspeed period stresses the already stressed components, occasionally beyond the breaking point. The underspeed periods act like a mixer, stirring up any U-238 that had already been spun out of suspension. Returning them to normal speed allayed suspicion that they were faulty.
There is no way one guy is going to know exactly what values it would take to create such a precise scenario. It takes massive resources to pull that off.
John