The Stuxnet Computer Virus Has Infected The International Space Station

space_stationWell, we’ve even ruined outer space. io9 writes:

The problem with creating Stuxnet, the world’s most sophisticated malware worm, is that it could eventually go rogue. Which is precisely what has happened. The virus has spread to a Russian nuclear plant — and even the International Space Station.

Stuxnet is an incredibly powerful computer worm that was created by the United States and Israel to attack Iran’s nuclear facilities. It initially spreads through Microsoft Windows and targets Siemens industrial control systems. It’s considered the first malware that both spies and subverts industrial systems. It’s even got a programmable logic controller rootkit for the automation of electromechanical processes.

Let that last point sink in for just a second. This thing, with a little bit of coaxing, can actually control the operation of machines and computers it infects.

Apparently, the virus spread to the International Space Station on an infected USB stick that was transported by Russian cosmonauts.

  6. Sloppy reporting from io9. Here is a better article, though I have yet to see one from anyone who truly understands the issues. Maybe Bruce Schneier will write one.

    1. Stuxnet is a virus specific to SCADA (supervisory control and data acquisition) systems used to control complex electro-mechanical infrastructures in real-time. It is believed that it was developed by the NSA to target Iranian centrifuges used in their nuclear program. Unfortunately, that doesn’t make SCADA an Iran-specific problem. Computer viruses mutate in the wild. Also, while it took millions of dollars worth of work to develop the code, once developed, it can be modified by free-enterprise or government hackers for any other infrastructure target running the Siemens SCADA software. This could be a nuclear power plant, conventional electric generator plants, power grid control, hospitals, factories, many other places.

    2. Based on Kaspersky’s reports that everyone is referencing, Stuxnet has not infected the ISS . What Kaspersky reported is a common, garden variety Winblows virus. Trojan-GameThief.Win32.Magania – “This Trojan belongs to the family of Trojans that steals passwords from online gaming user account records.”

    3. Stuxnet DID infect a RU nuclear reactor SCADA. This is what should cause public concern. I wouldn’t be surprised if the unexplained electrical fires at the new NSA facility in Utah were caused by Stuxnet, has anyone looked? Once crap like this is released into the wild, it can go anywhere. That’s why biological viruses as weapons of war are unfashionable. People don’t want to fund plagues they might personally get. Does anyone think having the power plant one gets power from or the hospital one is in getting taken down by malware is a good idea? This crap is dangerous to everybody

    4. The IBD article mentions Linux SCADA on the ISS. Linux SCADA is completely immune to Stuxnet. What’s weird about this is that I researched Linux SCADA a few years back and couldn’t find any active programs. Not to say Linux SCADA is immune to malware, but one can’t run Winblows viruses on a Linux-only box. Though Linux is comparatively immune to malware, fewer users make it a lower-priority target, and the internals of Linux make it harder to create usable malware.

    5. The malware environment now is increasingly driven by spook shop money, subsiziding the development of hazards to everyone’s public safety. Thanks to Snowden, we know major spook shops are largely driving the growing market for zero-day vulns.

    6. Public funds should be devoted to suppression of malware and malware developers in the interests of public safety for everyone.

    • emperorreagan | Nov 15, 2013 at 10:15 am |

      It’s incredible that the US would release something like this when its industry automates everything – from the air conditioner running in a data closet to nuclear power plants; from waste water treatment to production of dangerous chemicals. And for what? US/Israeli paranoia about the intent of Iran’s nuclear program (classic projection from nations that preemptively strike unconfirmed targets and a nation that dropped nuclear bombs to try to improve its negotiating position with the Soviets)… Why not just give everyone the framework to fuck everything over?

      So the Iranian attack forced centrifuges to spin out of control. You could conceivably adapt that to a wide variety of things – you could drive pump speeds to zero or drive them to overload; you could drive automated valves to a position: open a valve and “relieve” toxic gas or release untreated waste water, or close a valve and cause pressure to build or starve something of cooling water. You could just screw with sensor readings and let the system to react – inverse a temperature or RPM reading, for instance.

      • Liam_McGonagle | Nov 15, 2013 at 10:34 am |

        If you believe in both free will and the inevitability of biological death, then every death is a suicide.

      • Think of this as full employment for infosec and chip designers in a few years. When hospitals that cheaped out on infosec in favor of luxury accommodations lose VIPs when power goes down during operation, or corporations lose serious $ over factory shutdowns, or a regional grid goes down, elite panic will follow.

      • tesmith47 | Nov 18, 2013 at 5:00 am |

        we give israel nuclear weapons but complain when anyone non white gets nukes. will god never stop this hypocrisy?

  7. tesmith47 | Nov 18, 2013 at 4:56 am |

    israel and america the two biggest terrorist in the world, now first with computer terrorism. they should get sued at least!!!

