AC/DC song used in Iranian nuclear program attack

By
Follow google news

Nuclear facilities thunderstruck.

Nuclear enrichment facilities in Iran may have been hit by another malware attack, according to Finnish security company F-Secure.

AC/DC song used in Iranian nuclear program attack
Bushehr nuclear plant (Credit: AEOI/Iran)

Researcher Mikko Hyppönen claimed that emails sent to him by a scientist working at the Iranian Atomic Energy Organisation (AEOI) indicated the hacker tool Metasploit was used in the attacks.

The malware shut down an automation network at the Natanz and Fordo facilities together with key Siemens hardware previously targeted in malware attacks there, according to the emails.

The worm also randomly played Thunderstruck by Australian rock band AC/DC on full volume at midnight on the infected computers, the unidentified scientist claimed.

Hyppönen was skeptical of the claims but said the source was genuine.

"We can't confirm any of the details. However, we can confirm that the researcher was sending and receiving emails from within the AEOI," he said.

Iran's controversial nuclear enrichment program, which Western nations fear will be used to create atomic weapons, has previously been set back by the Stuxnet malware in 2010, now believed to have been written and disseminated by US and Israeli security agencies.

The malware subverts industrial systems and includes a rootkit that targets the programmable logic controllers in Siemiens supervisory control and data acquisition (SCADA) monitoring devices.

Hyppönen said on Twitter that he had heard nothing further about the alleged worm attack.

However, he confirmed the scientist quoted emailed him three times from the Iranian atomic energy organisation aeoi.org.ir domain, but has been quiet since.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:

Most Read Articles

Poor WA gov M365 security led to $71k theft and children's data breached

Poor WA gov M365 security led to $71k theft and children's data breached

Health and Aged Care CISO retires

Health and Aged Care CISO retires

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

US medical device maker Stryker's Microsoft environment attacked

US medical device maker Stryker's Microsoft environment attacked

Log In

  |  Forgot your password?