News / USA

    Malicious Virus Shuttered US Power Plant

    Computer keyboard Computer keyboard
    x
    Computer keyboard
    Computer keyboard
    Reuters
    A computer virus attacked a turbine control system at a U.S. power company last fall when a technician unknowingly inserted an infected USB computer drive into the network, keeping a plant off line for three weeks, according to a report posted on a U.S. government website.
           
    The Department of Homeland Security report did not identify the plant but said criminal software, which is used to conduct financial crimes such as identity theft, was behind the incident.
           
    It was introduced by an employee of a third-party contractor that does business with the utility, according to the agency.
           
    DHS reported the incident, which occurred in October, along with a second involving a more sophisticated virus, on its website as cyber experts gather at a high-profile security conference in Miami known as S4 to review emerging threats against power plants, water utilities and other parts of the critical infrastructure.
           
    In addition to not identifying the plants, a DHS spokesman declined to say where they are located.
           
    Interest in the area has surged since 2010 when the Stuxnet computer virus was used to attack Iran's nuclear program. Although the United States and Israel were widely believed to be behind Stuxnet, experts believe that hackers may be copying the technology to develop their own viruses.
           
    Justin W. Clarke, a security researcher with a firm known as Cylance that helps protect utilities against cyber attacks, noted that experts believe Stuxnet was delivered to its target in Iran via a USB drive. Attackers use that technique to place malicious software on computer systems that are ``air gapped,'' or cut off from the public Internet.
           
    ``This is yet another stark reminder that even if a true 'air gap' is in place on a control network, there are still ways that malicious targeted or unintentional random infection can occur,'' he said.
           
    Aging Systems       

    Many critical infrastructure control systems run on Windows XP and Windows 2000, operating systems that were designed more than a decade ago. They have ``auto run'' features enabled by default, which makes them an easy target for infection because malicious software loads as soon as a USB is plugged into the system unless operators change that setting, Clarke said.
           
    The Department of Homeland Security's Industrial Control Systems Cyber Emergence Response Team (ICS-CERT), which helps protect critical U.S. infrastructure, described the incident in a quarterly newsletter that was accessed via its website on Wednesday.
           
    The report from ICS-CERT described a second incident in which it said it had recently sent technicians to clean up computers infected by common as well as ``sophisticated'' viruses on workstations that were critical to the operations of a power generation facility.
           
    The report did not say who the agency believed was behind the sophisticated virus or if it was capable of sabotage. DHS uses the term "sophisticated'' to describe a wide variety of malicious software that is designed to do things besides commit routine cyber crimes. They include viruses capable of espionage and sabotage.
           
    A DHS spokesman could not immediately be reached to comment on the report.
           
    The Department of Homeland Security almost never identifies critical infrastructure operators that are hit by viruses, or even their locations, but it does provide statistics.
           
    It said ICS-CERT responded to 198 cyber incidents reported by energy companies, public water districts and other infrastructure facilities in the fiscal year ending Sept. 30, 2012.
           
    Attacks against the energy sector represented 41 percent of the total number of incidents in fiscal 2012. According to the report, ICS-CERT helped 23 oil and natural gas sector organizations after they were hit by a targeted spear-phishing campaign - when emails with malicious content are specifically targeted at their employees.
           
    The water sector had the second highest number of incidents,
     representing 15 percent.

    You May Like

    Mother of IS Supporter: Son Was Peaceful, 'Role Model'

    Somali-American Abdirizak Mohamed Warsame pleaded guilty Thursday to charges of conspiring to provide material support to Islamic State militants

    Factions Shift as Civilians Die in Syrian War

    Scenario likely only to further confuse military situation on ground and potentially worsen humanitarian crisis that already has grown to epic proportions

    Presidential Hopefuls Woo Minorities, Evangelicals

    Four GOP candidates to speak at forum at Bob Jones University in Greenville, South Carolina

    This forum has been closed.
    Comment Sorting
    Comments
         
    by: Timur Tyncherov
    January 23, 2013 9:50 AM
    Laugh and cry at the same time. Any half-competent sysadmin would not allow the auto-run feature to be enabled on the control network of a critical infrastructure facility. And any competent sysadmin would set up the access rights in a way that prevents “an employee of a third-party contractor” from running the malicious software on a critical workstation. And yes, it IS possible even on Windows XP/2000.

    by: Christopher Hobe Morrison from: Pine Bush, NY, USA
    January 16, 2013 9:39 PM
    Uhhhh, computers not connected to the internet to prevent them from being infected, and somebody inserted an infected USB into the computer?

    Didn't somebody run a check on something that was going to be used like that? Are outside people allowed to do things that might result in that sort of thing happening?

    Featured Videos

    Your JavaScript is turned off or you have an old version of Adobe's Flash Player. Get the latest Flash player.
    Two-thirds of World Faces Water Shortagei
    X
    February 12, 2016 7:31 PM
    Four billion people — or two out of every three on the planet — do not have enough water to meet their basic needs. That is far greater than previously thought, according to a new study that presents a more accurate picture of the problem. As VOA's Rosanne Skirble reports, the findings will help policymakers and the public craft solutions to address the threat.
    Video

    Video Two-thirds of World Faces Water Shortage

    Four billion people — or two out of every three on the planet — do not have enough water to meet their basic needs. That is far greater than previously thought, according to a new study that presents a more accurate picture of the problem. As VOA's Rosanne Skirble reports, the findings will help policymakers and the public craft solutions to address the threat.
    Video

    Video Gateway to Mecca: Historical Old Jeddah

    Local leader Sami Nawar's family has been in the Old City of Jeddah for hundreds of years and takes us on a tour of this ancient route to Mecca, also believed to be the final resting place of Adam's wife, Eve.
    Video

    Video New Technology Aims to Bring Election Transparency to Uganda

    A team of recent graduates from Uganda’s Makerere University has created a mobile application designed to help monitor elections and expose possible rigging. The developers say the app, called E-Poll, will make Uganda's democratic process fairer. From Kampala, VOA's Serginho Roosblad reports.
    Video

    Video As Refugees Perish, Greek Graveyards Fill

    Aid workers on the Greek island of Lesbos say they are struggling to bury the increasing number of bodies of refugees that have been recovered or washed up ashore in recent months.  The graveyards are all full, they say, yet as tens of thousands of people clamor to get out of Syria, it is clear refugees will still be coming in record numbers. For VOA, Hamada Elrasam reports from Lesbos, Greece.
    Video

    Video Russia Bristles at NATO Expansion in E. Europe

    Russian Foreign Minister Sergei Lavrov is meeting Friday with the head of NATO after the Western military alliance and the United States announced plans for the biggest military build-up in Europe since the Cold War. Russia has called NATO's moves a threat to stability in Europe. But NATO says the troop rotations and equipment are aimed at reassuring allies concerned about Russia as VOA's Daniel Schearf reports from Moscow.
    Video

    Video To Fight Zika, Scientists Target Mosquitoes

    Mosquitoes strike again. The Zika virus outbreak is just the latest headline-grabbing epidemic carried by these biting pests, but researchers are fighting back with new ways to control them. VOA's Steve Baragona takes a look.
    Video

    Video Mosul Refugees Talk About Life Under IS

    A top U.S. intelligence official told Congress this week that a planned Iraqi-led operation to re-take the city of Mosul from Islamic State militants is unlikely to take place this year. IS took over the city in June 2014, and for the past year and a half, Mosul residents have been held captive under its rule. VOA's Zana Omar talked to some families who managed to escape. Bronwyn Benito narrates his report.
    Video

    Video Scientists Make Progress Toward Better Diabetes Treatment, Cure

    Scientists at two of the top U.S. universities say they have made significant advances in their quest to find a more efficient treatment for diabetes and eventually a cure. According to the International Diabetes Federation, the disease affects more than 370 million people worldwide. VOA’s George Putic reports.
    Video

    Video NATO to Target Migrant Smugglers

    NATO has announced plans to send warships to the Aegean Sea to target migrant smugglers in the alliance's most direct intervention so far since a wave of people began trying to reach European shores.
    Video

    Video Russia's Catholics, Orthodox Hopeful on Historic Pope-Patriarch Meeting

    Russia's Catholic minority has welcomed an historic first meeting Friday in Cuba between the Pope and the Patriarch of Russia's dominant Orthodox Church. The Orthodox Church split with Rome in 1054 and analysts say politics, both church and state, have been driving the relationship in the centuries since. VOA's Daniel Schearf reports from Moscow.
    Video

    Video Used Books Get a New Life on the Streets of Lagos

    Used booksellers are importing books from abroad and selling them on the streets of Africa's largest city. What‘s popular with readers may surprise you. Chris Stein reports from Lagos.
    Video

    Video After NH Primaries All Eyes on South Carolina

    After Tuesday's primary in New Hampshire, US presidential candidates swiftly turned to the next election coming up in South Carolina. The so-called “first-in-the-South” poll may help further narrow down the field of candidates. Zlatica Hoke reports.
    Video

    Video Smartphone Helps Grow Vegetables

    One day, you may be using your smartphone to grow your vegetables. A Taipei-based company has developed a farm cube — a small, enclosed ecosystem designed to grow plants indoors. The environment inside is automatically adjusted by the cube, but it can also be controlled through an app. VOA's Deborah Block has more on the gardening system.
    Video

    Video Exhibit Turns da Vinci’s Drawings Into Real Objects

    In addition to being a successful artist, Renaissance genius Leonardo da Vinci designed many practical machines, some of which are still in use today, although in different forms. But a number of his projects were never realized — until today. VOA’s George Putic reports.