|
|
|
|
|
by gtirloni
699 days ago
|
|
Do you see a lot of people driving around applying software updates with diskettes like in the old days? Have we learned nothing from how the uranium enrichment machines were hacked in Iran? Or how attackers routinely move laterally across the network? Everything is connected these days. For really good reasons. |
|
Also the facility was air-gapped, so it wasn't connected to ANY outside network. They had to use other means to get Stux on those computers and then used something like 7 zero days to move from windows into Siemens computers to inflict damage.
Stux got out potentially because someone brought their laptop to work, the malware got into said laptop and moved outside the airgap from a different network.