Tuesday, June 28, 2011

Stuxnet: Anatomy of a Computer Virus

I discovered this video on the Stuxnet virus which although quite scary is the present reality that the computing world faces.  One of the key components of the success of this attack was that the use of a hard-coded password in the database of Siemen's visualization software (WinCC/SCADA).  I wonder if the underlying database supported privileged user controls (like in Oracle Database Vault) to prevent privilege escalation if the attack could have been prevented.

Here is the video.


Stuxnet: Anatomy of a Computer Virus from Patrick Clair on Vimeo.