Iran General NewsIran struggling to contain 'foreign-made' computer worm

Iran struggling to contain ‘foreign-made’ computer worm

-

Washington Post: Iran suspects that a foreign organization or nation designed “Stuxnet,” a quickly mutating computer worm that has been infiltrating industrial computer systems in the Islamic republic, a high-ranking official said Monday.

The Washington Post

By Thomas Erdbrink and Ellen Nakashima
Washington Post Staff Writers
Tuesday, September 28, 2010; A12

TEHRAN – Iran suspects that a foreign organization or nation designed “Stuxnet,” a quickly mutating computer worm that has been infiltrating industrial computer systems in the Islamic republic, a high-ranking official said Monday.

“We had anticipated that we could root out the virus within one to two months,” Hamid Alipour, deputy head of Iran’s Information Technology Co., a part of the ministry of communication and information technology, told the Islamic Republic News Agency. “But the virus is not stable, and since we started the cleanup process three new versions of it have been spreading,” he said.

No one has claimed responsibility for the worm and no entity or country has been definitively identified as its source.

It is the first known case of malware designed to sabotage an industrial control system. “We’ve never seen anything like this before,” said Liam O’Murchu, a researcher with the security firm Symantec. “It’s very dangerous.”

International computer security experts say Stuxnet was designed to target control systems produced by Siemens, a German equipment manufacturer. Siemens products are widely used in Iranian electricity plants, communication systems and in the country’s first nuclear power plant, near the city of Bushehr, set to start production in October.

Once inside the target system, the worm is capable of reprogramming the software that controls critical functions. Researchers still do not know what type of system it had in its sights or what type of sabotage was intended.

The worm was discovered in June, and researchers found about 45,000 infected computers in various countries, including Indonesia and India. But the vast majority were in Iran, leading analysts to conclude that a system in Iran was the likely target.

Iranian officials said Saturday that they had been hit by “electronic warfare” and acknowledged that the worm had infected more than 30,000 computers, including personal computers owned by employees of the nuclear power plant near Bushehr.

But although the officials said over the weekend that the facility itself was not in danger and that the virus was under control, Monday’s remarks suggest otherwise.

Because of the worm’s reach and complexity and the huge investment required to write the code, Alipour said he thinks the virus was designed by a foreign organization or country. “The writer has had access to industrial information which is not available to IT experts,” he said, stressing that an ordinary group of hackers could not have designed the virus.

An Iranian computer expert said the nuclear power plant must also be infected if employees’ personal computers were hit by Stuxnet. “This could either be done by Israel, intending to steal nuclear secrets or disrupt power plants, or by India, which has the biggest private programming capacity worldwide,” said the expert, speaking on the condition of anonymity because of the sensitivity of the subject.

A low-level cyberwar between Iran and the West intensified after President Mahmoud Ahmadinejad’s disputed election victory last year. Several groups of Iranian hackers, some of them alleged to have ties to the intelligence ministry, have been attacking opposition Web sites.

Alipour said the worm had become active about a year ago. “It is different from any other virus,” he said. “Stuxnet is extremely dangerous, and serious measures should be taken to clean it up.”

Nakashima reported from Washington.

Latest news

Iran’s ‘No To Executions Tuesdays’ Campaign Marks 117th Week

On Tuesday, April 21, the "No to Executions Tuesdays" campaign entered its 117th week. On this occasion, prisoners participating...

The Naval Blockade And the Structural Fracture of Iran’s Economy

The blockade of the Strait of Hormuz has now become one of the most decisive variables in Iran’s political...

Iran’s Regime Moves to Seize Assets of Dissidents

Iran's regime has once again revealed its true nature in the form of an overt state-backed theft; this time...

Execution of PMOI Members Hamed Validi and Nima Shahi in Tehran

In the early hours of Monday, April 20, Hamed Validi and Mohammad (Nima) Massoum Shahi, two members of the...

The Shadow of Damage and Destruction Over the Livelihoods and Lives of Iranian Citizens

The Iranian regime’s adventurist policies in its nuclear program, missile development, and proxy forces in the region have ultimately...

Head of the Iranian Regime’s Judiciary Emphasizes Accelerating Executions

Gholamhossein Mohseni Ejei, the head of the Iranian regime’s judiciary, has once again, in a commanding tone, called on...

Must read

Iran Regime Broadcasts ‘Confession’ of Dual National Accused of Spying

Iran Focus London, 18 Dec - The Iranian Regime’s...

Senators push for 20-year inspection in Iran nuke talks

The Hill: Two influential U.S. senators have asked fellow lawmakers...

You might also likeRELATED
Recommended to you