Bonum Certa Men Certa

The Lessons of Stuxnet: Never Use Microsoft Windows

The NSA is playing with nukes

Missiles



Summary: Windows is sufficiently 'NSA-compatible' for remote compromise and physical damage (sabotage) to highly sensitive, high-risk equipment

MANY news reports from around Friday [1-13] made it abundantly clear that Stuxnet, an Israel- and US-made virus that targets Microsoft Windows, was deployed not only in Iran (which uses Windows and Microsoft Linux) but also deployed (albeit unsuccessfully) in North Korea.



It is worth noting that Stuxnet was developed not only in the US but also in Israel and much of Microsoft's software development for 'security' is also done in Israel, so it might not detect Stuxnet (by design).

"Imagine the media reaction if some nation's government tried to install viruses in nuclear facilities in the US..."News from North Korea should remind any nation with military facilities (that's about every nation on Earth) to dodge Microsoft Windows. Turkey, for instance, reportedly moved its army to GNU/Linux and several other nations make similar moves for security reasons. In order to explain North Korea's resistance to the infection some corporation media likes to highlight "near-complete isolation" (see below) rather than reliance on GNU/Linux. The ToryGraph (see below) calls Stuxnet a "computer virus" even through it is uniquely a Microsoft Windows virus. Imagine the media reaction if some nation's government tried to install viruses in nuclear facilities in the US...

This is by no means defence of North Korea; it's just that the story makes is abundantly clear that, Microsoft's special relationship with the NSA aside, Windows is a target. Even Western governments target it. The NSA habitually said that it worried about attacks on its electric grid while hypocritically enough it is attacking nuclear facilities in other countries, never mind the risk of "blowback" or the "fallout" (pun intended) such aggressive actions may consequently bring. Pentagon would label this an "act of [cyber] war".

Related/contextual items from the news:



  1. NSA eggheads tried to bork Nork nukes with Stuxnet. It failed – report
    The NSA tried to wreck North Korea's nuclear weapons lab using the centrifuge-knackering malware Stuxnet, and ultimately failed, multiple intelligence sources claim.


  2. Pyongyang 1, NSA 0: U.S. Tried and Failed to Hack North Korea’s Nuclear Infrastructure
    By almost completely shutting itself off from the rest of the world, the North Korean government has denied its people and society access to the fruits of the digital communications revolution. It has also reportedly helped stymie a U.S. cyberattack on the country’s nuclear infrastructure modeled on the so-called Stuxnet virus the United States and Israel used against Iranian centrifuges.
  3. The NSA reportedly tried -- but failed -- to use a Stuxnet variant against North Korea
    Right around the time that the Stuxnet attack so famously sabotaged Iran’s nuclear program in 2009 and 2010, the U.S. National Security Agency reportedly was trying something similar against North Korea.

    The NSA-led U.S. effort used a version of the Stuxnet virus designed to be activated by Korean-language computer settings, but it ultimately failed to sabotage North Korea’s nuclear weapons program, according to a Friday Reuters report, which attributed the information to people familiar with the campaign.


  4. NSA tried Stuxnet cyber-attack on North Korea five years ago but failed
    The US tried to deploy a version of the Stuxnet computer virus to attack North Korea’s nuclear weapons programme five years ago but ultimately failed, according to people familiar with the covert campaign.
  5. Report: US tried Stuxnet variant on N. Korean nuke program, failed
  6. US tried to bring down North Korean missile programme with computer virus
  7. Report: U.S. failed to sabotage North Korean nuclear program with Stuxnet-twin
  8. Report: US cyberattack on North Korea was ineffective
  9. Why Did a US Cyber Attack on North Korea Fail?
  10. US Tried, Failed To Sabotage North Korea Nuclear Weapons Program With Stuxnet-Style Cyber Attack
  11. US Reportedly Launched Stuxnet Attack Against North Korea
  12. US Failed at Planting Stuxnet-Style Computer Bug in N. Korea Nuke Program
  13. US reportedly tried to destroy North Korea’s nuclear program with a Stuxnet-type virus


Recent Techrights' Posts

Links 24/10/2024: Apple Fines and Vision Pro Shows Signs of Dying Already (Production Stalled)
Links for the day
Mono Was Always Just a Front of Microsoft
threats sent from Microsofters
NSA is NOT "Obama", NSA is Harry S. Truman
It's important to fact-check Lunduke
Financial Engineering at IBM (Faking Growth Where None Exists)
Buybacks aside, it seems like IBM's alleged "growth" (that is illusion) comes at the expense of others
 
Gemini Links 26/10/2024: Getting Older, "To Learn What Something Is, Learn What It Isn't"
Links for the day
Links 25/10/2024: Erosion of Trust Online and Disability Rights
Links for the day
Gemini Links 25/10/2024: "Staff Engineer", Executing Commands via NNCP, and More
Links for the day
No, Microsoft, You Cannot Silence Techrights
No legal basis
China Has Bypassed Sanctions by Making Its Own Operating System
"Huawei Consumer Business Group Chairman, Richard Yu, stated that there are currently 15,000 apps and services in the HarmonyOS Next ecosystem with more on the way"
What's Left of the Talks by Chief GNUisance of the GNU Project, the Man Who Started GNU/Linux 41+ Years Ago
Coming up in Peru
Endorsing Facts, Not Political Parties
Sure, some parties can deceive as they care about facts less than others
The News Drought Problem
We always adapt. We've always adapted. That's life.
What It Means When All Russians Get Banned From All Free Software
It's very easy to ban those whom you dislike or distrust; but banning over 100 million people (from the largest country on the planet) would damage the concept of Software Freedom
Almost 18
This coming year we expect to (again) smash the record for number of articles per year
[Meme] IBM's Leadership Has Sacrificed IBM (Abolished Its Long-Term Future for Wall Street Rallies)
Financial obligations cannot just be thrown away
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, October 24, 2024
IRC logs for Thursday, October 24, 2024
IBM Shuffling to FOURTH Chief Marketing Officer (CMO) in 4 Years and He Comes From McKinsey, Which Advises IBM and Red Hat on Mass Layoffs!
Maybe after McKinsey advises IBM to lay off the CMO the CMO can issue a PR-centric press release about why that's great news
[Meme] Fast Approaching Peak Disinformation via Social Control Media
Disinformation flowing freely for a regime that's openly against free speech is not "free speech"
Gemini Links 24/10/2024: Closing Gemini Protocol Bugs (GitLab), Why Birds Are Cool, Upcoming US Election
Links for the day
IBM's Collapse Continues Today
"customers aren't fooled!"
With the Rise of GNU/Linux the x86 Era Might Become Footnote/Blight of History
We basically shot our own "national security" foot with the Wintel monopoly
Trying to Make Material of Groklaw Easily Accessible Again
It came back only temporarily. In 2013, right after Edward Snowden's NSA leaks, PJ called it quits for good.
How Microsoft Attacks Critics and Competition
We've thus far found some useful bits or nuggets of information during our still-ongoing research
20 Years Later More People Understand That Canonical/Ubuntu Was Falsely Marketed to the GNU/Linux Community
In more recent years Canonical was very shamelessly promoting Microsoft and even Windows
IBM's Stock Crashes
Of course IBM is already resorting to buzzwords
A Severe Linux Foundation Conflict of Interest (Microsoft Staff in Charge of Linux Foundation)
As far as we can tell, the 'Linux' Foundation has - for the first time - hired someone black
Links 24/10/2024: Russian Election Disinformation, "Former OpenAI Researcher Says Company Broke Copyright Law"
Links for the day
Gemini Links 24/10/2024: Frustration, Zen Language and Koans, Thoughts on Free Software Sharing
Links for the day
To Linux Foundation, Bill Gates is a Saint and Every Russian Developer is Pure Evil
Torvalds on Russia
EPO Strategy is Keyword Stuffing and Cuts in the Name of 'Sustainable' (While Continuing to Grant Fake, Illegal Patents)
The word "sustainable" appears 42 times in the text
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, October 23, 2024
IRC logs for Wednesday, October 23, 2024