First Victims of the Stuxnet Worm Revealed
An anonymous reader writes: Analyzing more than 2,000 Stuxnet files collected over a two-year period, Kaspersky Lab can identify the first victims of the Stuxnet worm. Initially security researchers had no doubt that the whole attack had a targeted nature. The code of the Stuxnet worm looked professional and exclusive; there was evidence that extremely expensive zero-day vulnerabilities were used. However, it wasn't yet known what kind of organizations were attacked first and how the malware ultimately made it right through to the uranium enrichment centrifuges in the particular top secret facilities. Kaspersky Lab analysis sheds light on these questions.
It took us a long time to establish what organization it really was, but ultimately we succeeded in identifying it with a high degree of certainty. It is called Foolad Technic Engineering Co (FIECO). It is an Iranian company with headquarters in Isfahan. The company creates automated systems for Iranian industrial facilities (mostly those producing steel and power) and has over 300 employees. The company is directly involved with industrial control systems.
This posting is provided 'AS IS' without warranty of any kind, implied or otherwise.
Ummm... why? You think it's preposterous that software exploits are bought and sold?
"It is common for individuals or companies who discover zero-day attacks to sell them to government agencies for use in cyberwarfare." - Zero-day attack
References:
- Zero-day exploit in Apple’s iOS operating system 'sold for $500,000'
- Nations Buying as Hackers Sell Flaws in Computer Code
- How Spies, Hackers, and the Government Bolster a Booming Software Exploit Market
- Cyberwar’s Gray Market
"Mind, as manifested by the capacity to make choices, is to some extent present in every electron." -Freeman Dyson