Stuxnet: A Breakthrough
symantec.com
symantec.com
Having said that - it could be VERY lucrative for them - just not in volume. Very much high end expensive product sales (which may be a direction they want to go in - now that MS and others are rolling out built in virus protection with the OS?).
Symantec is basically deconstructing a worm that cost some government lots of money, time and talent to create. They want to be seen as playing in the same league as the security experts at NSA, CIA or the respective equivalents of another country.
For those of us who don't do industrial process control, what would that do to the plant?
Supposedly more than 30 programmers worked on Stuxnet. That seems like a big investment just to increase the wear rate on a few motors, however critical they might be.
Maybe flipping the motor drive frequency from 1200Hz to 2Hz and back could act like an impulse to excite any high-Q resonance in the centrifuge structure?
This is very likely to cause a centrifuge crash.
I think there is another option: these modifications in the frequencies were intended to make sure the uranium did not becoming pure enough, effectively preventing Iran from obtaining a working bomb. If the virus wasn't discovered, it could have taken the Iranian scientists years to figure out why the centrifuges weren't doing their jobs, after discovering the lack of purity in the first place.
First, the virus should have been less interesting.
Second, the true goal of the virus might not be the actual attack but rather, like the scenes from the Bourne movies spying on Pamela Landy from the rooftop across the street, the realization that someone knows exactly what you're doing and they're more sophisticated than you. Further, it indicates there's a hole in your organization from which information is leaking or might be leaking (even worse if you can't find something that doesn't exist). I've followed enough of the Wikileaks controversy regarding their internal disputes to conclude the weakest link in many organizations is their structure and individual members. The true goal might be psychological.
http://spectrum.ieee.org/podcast/telecom/security/how-stuxne...
It worked this time because nobody was expecting it, but no target worth attacking in this way is going to let it happen again.
With any plant of sufficient size, there will be a lot of people involved in commissioning, servicing and operating it. This makes "fully insulating" SCADA systems much harder.
Management people will demand to get data from the plant to manage utilization. Servicing personnel will want to connect their laptops to the automation systems to talk to their company's devices that are installed in the plant during maintenance. ... ...
So, for military projects where integrity/secrecy is a value for itself, I can imagine draconian regulations to be in place soon, or most likely they already are. But for "normal" industrial plants where there's a need for money to be made, there always will be a balance between IT security and pragmatism in running the damn thing.
And if diagnosing a failed motor controller in a stalled plant is delayed because IT security prohibits the technician from inserting his USB stick, I can tell you how the discussion with the plant manager will turn out in 99% of all cases.
And those plants likely don't have enemies powerful or motivated enough to attack them in this way. Typical black hats these days are in it for the cash and I don't see how sabotaging a factory could be made into cost effective fraud.