Iran Nuclear Agency Not "Thunderstruck" By Virus 91
twoheadedboy writes "Iran may have been hit hard by Stuxnet, but officials have said that reports of a virus infecting its nuclear facilities and forcing computers to play the AC/DC classic 'Thunderstruck' were rubbish. Last month, F-Secure's chief research officer, Mikko Hypponen, was sent an email that appeared to be from a scientist working at the Atomic Energy Organization of Iran (AEOI), claiming nuclear systems had been targeted by cyber attackers. Whilst the chief of the AEOI has come out to deny those claims, the sender of that email still managed to get hold of an official aeoi.org.ir email address. That has left some onlookers baffled about what is going on."
F-Suckered (Score:2)
hehe
One or both lied? (Score:5, Insightful)
Re: (Score:2)
But, if he KNOWS that you know he knows you know he is lieing, he's got the edge!
Re: (Score:2)
Re: (Score:1)
Re: (Score:3)
Actually, I called this Bogus [slashdot.org] at the time the story broke on SlashDot.
If the story had a more plausible origin I might have believed it, but to have originated from a top Nuclear Scientist in a paranoid state, who somehow sneaks an email past his keepers is just silly. If such a scientist has that ability, and a desire to embarrass the state they would leak far more devastating information than a childish exploit.
The email is as likely to have come from someone who actually tried (and perhaps failed) to pl
Re: (Score:2)
Why would he have to have snuck it by? Perhaps he is supposed to get help from security contractors when there is an emerging computer security threat.
The whole reason that Stuxnet worked was that Iran was still dependent on Siemens controllers. It is not like they are Russia and they have their own people for all of that. They are a fairly small country, with a weak economy and not much high-tech industry.
Re:One or both lied? (Score:5, Insightful)
It is not like it would be unprecedented for the chief of a government agency to outright lie about something like this.
Much like US and Israeli intelligence agencies are lying about the threat of an Iranian bomb, which the Iranians have no intention of building.
Why do I find this claim plausible? Because the Israelis in particular have been claiming that Iran has been trying to build a bomb for over 20 years, and Iran does not yet have the bomb. That would put the Iranians in Sidney Opera House territory in terms of how late their project is.
Building nuclear weapons is easy. It only took four years the very first time to design and build both uranium and plutonium bombs from scratch, and it was done by people whose resources were fantastically limited compared to even a moderately wealthy state like modern Iran. Iran has a per capita GDP of about $3600, which is about half of the US at the bottom of the Great Depression and 1/3 of what it was in the early '40's, and what can be bought for those dollars is light-years ahead of what could be had in 1942, so there are no significant economic or technological constraints on Iran today compared to the US 70 years ago.
But Iran doesn't have a bomb? Why not?
Iranians aren't stupid or uneducated or technologically backward. Why would it take them more than a few years to replicate a relatively simple piece of technology?
The most plausible explanation to my mind is that they are not working on building one. If they were, they would have it by now.
It is perfectly reasonable for an oil-producing country to create a significant civil nuclear program, as the example of Canada shows, so the fact that Iran has oil in no way implies that they don't need nuclear power.
None of this makes much sense, unless Iran is not working on building a bomb.
Re: (Score:1)
funny sarcasm in obvious disguise of trolling as a method of articulating agreement with the parent post is modded down? wtf happened to slashdot?!
Re: (Score:3)
Iran got an advanced centrifuge design from A.Q. Khan that is extremely difficult to operate in practice. (We also interdicted the supply of some of the advanced machine components it requires.) For some reason, they stuck with it, and eventually got it to work. That's why it's taken them so long to get significant enrichment.
Now, if they were on a crash program to build a bomb, they could have abandoned it and pursued a simpler earlier Soviet design. So I agree it's not their first priority. Indeed, t
Re: (Score:2)
If you say "dual program" people will understand something different than if you say "retaining the option". There is pretty much a consensus in US and Israeli intelligence that Iran has not been doing any work on nuclear bombs in the last 10 years. but it's no secret they want that option. Having the option is a deterrent. It does not mean you want to make a bomb. They did bomb related research prior to 2003, but whether there was an actual intent to create a bomb then is very much speculation. Just to ge
Re: (Score:1)
Meanwhile IV Reich^W^W Israel has had nuclear weapons for decades and routinely "rattles its sword" [guardian.co.uk] at neighbouring countries, occasionally launching some conventional assault on them as well.
I wouldn't be surprised if Iran came up with something entirely new in the nuclear energy field and everyone dependent on oil profits wanted to stop them.
Re: (Score:3, Insightful)
Actually the way that uranium was separated for the Manhattan Project was tremendously inefficient and expensive. Iran has a larger population than the US and dollars depreciate in value due to inflation. This is why they are bothering with centrifuges. Well that and the fact that the technology is not supposed to be particularly hard to implement with a reasonable industrial base. Centrifuge separation is much more efficient than either of the processes used in the US to separate the uranium for its nucle
Re: (Score:3)
Iran has a larger population than the US...
Um, no they don't. They do not even have a larger population than the U.S. had at the time of the Manhattan Project.
Re: (Score:2)
This is one of those times I wish /. had an edit button. Ah well. You probably figured I wrote that bit wrong from the tone used in the rest of the post.
s/Iran has/Iran does not have/
Re: (Score:1)
Centrifuge separation is much more efficient than either of the processes used in the US to separate the uranium for its nuclear weapons.
And yet breeding plutonium would be even more efficient. And logical - if they really wanted to build weapons.
Re: (Score:2)
It's only logical that Israelis think that under their nuke facilities are huge bomb building factories. After all that's how they would do it.
Anyhow when it's time to go after Finland?? Finland is building a new nuclear reactor and has all the infrastructure and technical know how to make all the parts needed for da bomb! oh the humanity!
Re: (Score:1)
You are not using valid reasoning. The '20 years' have involved more than one person in power in Iran.
Nope. [slashdot.org]
Re: (Score:1)
Re: (Score:2)
Blah, blah, blah, US, Israel, blah, blah, blah.
Look, I'm not particularly a fan of the US, but the evidence against Iran is now pretty damning that even the IAEA agrees there's a lot of evidence suggesting a military dimension to Iran's activities. See the IAEA report and get it directly from the horses mouth if you wish:
http://www.iaea.org/Publications/Documents/Board/2012/gov2012-23.pdf [iaea.org]
Specifically:
"40. The Annex to the Director Generalâ(TM)s November 2011 report (GOV/2011/65) provided a detailed ana
Re: (Score:2)
The only thing that doesn't make sense is Iran's non-compliance if they're innocent
As I recall a very similar argument was used not too long ago regarding "weapons of mass destruction" in a country immediately adjacent to Iran. The argument was false then, and it is false now. Nation-states are not rational actors: they obfuscate and sabre-rattle for all kinds of reasons in pursuit of their often-misguided perceptions of their national interest.
Your quote from the IAEA is a nice bit of bait-and-switch. Iran is generally portrayed as actively pursuing nuclear weapons in a systematic wa
Re: (Score:2)
Xest, at least you did the work of looking up actual sources. But I don't think you're there yet.
You could look up the piece the consistence that got so much publicity, the detonation chamber in Parchin.
It's not mentioned directly in the actual document you linked to but the document has a reference to an earlier document from nov2011 you can find over here
http://isis-online.org/uploads/isis-reports/documents/IAEA_Iran_8Nov2011.pdf [isis-online.org]
Read items 44 and 45 under C.6. Initiation of high explosives and associated
Re:One or both lied? (Score:4, Funny)
Why would anyone be "baffled" by what is going on? It is not like it would be unprecedented for the chief of a government agency to outright lie about something like this. On the other hand it would not be unprecedented for the "leaker" to turn out to be lying either.
Remember that Iran is a country with no homosexuals. This marvelous achievement in the field of biology could hint at similar breakthroughs in other areas of science and engineering including computer security!
Re: (Score:1)
Re: (Score:2)
Re: (Score:1)
Re: (Score:1)
Remember that Iran is a country with no homosexuals.
Oh for fuck's sake, it wasn't that long ago when being a homo was a felony in the US of A, with penalty going up to death [wikipedia.org].
Re: (Score:2)
Why would anyone be "baffled" by what is going on? It is not like it would be unprecedented for the chief of a government agency to outright lie about something like this. On the other hand it would not be unprecedented for the "leaker" to turn out to be lying either.
Heh, Iraq had Baghdad Bob [youtube.com], maybe Iran now has "Tehran Terry"?
you know... i wish this HAD happened.. (Score:5, Funny)
Seriousy, how many billions of dollars would isreal and the US owe AC/DC and I think capitol records for unauthorized distribution and exhibition?
Are you kidding? (Score:3)
Sic the RIAA after them - they go sue Iran, and bankrupt their nuclear program.
Re: (Score:3, Funny)
Re: (Score:2)
How did they know it was Tunderstruck ?
Hell, I didn't even know the song was released inf Farsi .
[peeks at Google Translate, No, no-can-do].
Re: (Score:2)
How did they know it was Thunderstruck ? .
Hell, I didn't even know the song was released inf Farsi
B--0h4p0h7p0h4p0h7p0h4p0h7p0h4p0h7p0h|4p0h7p0h4p0h7p0h4p0h7p0h4p0h7p0h|
it's a pretty distinctive riff.
Re: (Score:2)
Re: (Score:2)
Seriousy, how many billions of dollars would isreal and the US owe AC/DC and I think capitol records for unauthorized distribution and exhibition?
Probably nothing. Iranian copyright law [wikipedia.org] only protects works created in Iran. But it looks like while the US may not stop Iran from getting nukes, it is going to nail them with DMCAs of mass destruction as Iran has recently signaled interest in signing the Berne Convetion (international treaty that "normalizes" copyright law between most nations on the planet).
or was it worse? (Score:2)
...and it really DID play a movie of naked girls eating bacon??
That would be good news.
Re: (Score:2)
What they don't tell you is that the actual payload of the virus didn't disable any computer systems, per se.
Much worse, it immediately reduced the capability of all of the employees to being able to use only one hand to type with.
Re: (Score:2)
No silly. In true slashdot tradition, it would be Natily Portman dressed only in a crispy bacon bikini, slathering herself in hot grits.
Re: (Score:2)
I wasn't even around for those days, but somehow I still know that it's an old slashdot meme. I believe for some reason she's also supposed to be petrified?
Re: (Score:1)
It could be soy!
Re: (Score:2)
Every Jew and Vegetarian I know will eat bacon. Apparently there is an exception.
Re: (Score:2)
Should have kept your mouth shut.
Should have served Pork Rinds at the next vegan conspiracy meeting.
Ask yourself: If you were making a fool of yourself in front of her and her friends would she tell you or cluck with her friends?
Re: (Score:2)
I am neither a Jew or a vegetarian, but I won't touch bacon. Fried mammal fat is disgusting.
I don't cook my beans with lard, either.
Re: (Score:2)
No silly. In true slashdot tradition, it would be Natily Portman dressed only in a crispy bacon bikini, slathering herself in hot grits.
That sounds distinctively unpleasant.
Why would they still use Windows? (Score:3)
Jeez, fool me once, shame on you, fool me twice...
Re: (Score:1)
... a fool can't get fooled again.
So... (Score:5, Funny)
Re:So... (Score:4)
Since STUXNET was designed to incorrectly calibrate centrifuges, there is a distinct possibility that the Girl's Got Rhythm.
Re: (Score:2)
No AC/DC here.
I can send mail from aeoi.org.ir (Score:5, Informative)
still managed to get hold of an official aeoi.org.ir email address
That is not particularly difficult. Anyone can send mail under any email address they want.
There is of course SPF and DomainKeys, but aeoi.org.ir does not resolve for me at all (not even an NS record) so those do not apply.
Re: (Score:2)
Re: (Score:1)
Re: (Score:2)
You know, I'd like to think that F-Secure wouldn't be dumb enough to believe a forged From address... I'd like to think that, but I'd probably bet otherwise.
Not "Thunderstruck" (Score:1)
It was much worse (Score:5, Funny)
Re: (Score:1)
---
posting AC because of mod points
Told You So. (Score:2)
It's a mixed up, muddled up, shook up world (Score:1)
They should have forced it to play "Lola".
I walked to the door
I fell to the floor
I got down on my knees
And I looked at her and she at me
And that's the way that I want it to be
I always want it to be that way for my Lola
Lo Lo Lo Lo Lola...
Thunderstruck... (Score:3, Insightful)
Whew! (Score:2)
What I Want To Know... (Score:2)
Is if the RIAA is going to sue the Iranians or the authors of the virus or both for copyright infringement?
the real story to the olympics-gawking majority is (Score:1)
.. that the US and Israel are a couple of war-mongers, who, as soon as
said Olympics have finished, will wage another agressive imperialistic
hegemonic war.
"the sender of that email still managed to get (Score:2)
hold of an official aeoi.org.ir email address."
huh?
anyone can do that
http://en.wikipedia.org/wiki/Email_spoofing [wikipedia.org]
are you telling me Mikko Hypponen has some trustworthy independent means to verify the email actually came from aeoi.org.ir?
or are you telling me aeoi.org.ir is using some verification scheme when sending emails to random Western audiences, or that such an infrastructure even exists/ is trustworthy?
"Last month, F-Secure's chief research officer, Mikko Hypponen, was sent an email that appeared to b
Re: (Score:2)
You seem to mistake a heavily hedged statement for an unprofessional one. In this I think you are mistaken.
No, Iran wasn't Thunderstruck by Stuxnet either (Score:2)
If you check this wapo article [washingtonpost.com] . I guess it depends on your interpretation of "hit hard by stuxnet" . In Natanz about 1000 centrifuges were replaced during that time, or 10%, for whatever reason, and the Uranium production during 2010 was not lower.
Noooo! (Score:1)
Damn, and all this time I was hoping for a counter-cyber attack to play Aerosmith's Pink [rt.com] on all the Whitehouse's computers.