- Argentina beats Dutch in shootout to reach World Cup final
- Tanard Jackson suspended indefinitely by NFL — again
- FAA investigating fireworks drone flights
- Pentagon: We’ll give Obama a drone strike with al-Baghdadi’s name on it
- Marine in Mexican custody to get day in court after 101 days
- Senate OKs San Antonio mayor as housing secretary
- NFL star likely fooled by Marine impostor who accepted first-class plane ticket
- Sen. Ted Cruz tweets Obama directions from fundraisers to border towns
- Israel hits key Hamas targets in Gaza offensive
- Ten-year sentence for New Orleans’ Nagin on graft charges
Virus origin in Gulf computer attacks in question
Question of the Day
“My guess would be that it was another Shamoon attack,” said Jeffrey Carr, the head of Taia Global, a computer security firm in McLean, Virginia.
Carr believes hackers working on behalf of the Iranian government were behind both attacks. He notes similarities between Shamoon and a virus that previously struck Iran, suggesting that Iran-linked hackers may have created Shamoon by adapting computer code from the earlier virus.
A number of Iranian groups have the skills to carry out an attack of this scope and may be using false claims of responsibility to obscure Tehran’s involvement, he said.
Iranian officials have not commented publicly on the latest viruses to hit the region. But Iran appears to be building up corps of pro-regime hackers, including a secretive “Cyber Army” thought to be linked to the country’s powerful Revolutionary Guard. Lebanon’s Iran-backed militant Hezbollah group is also believed to count skilled hackers among its ranks.
Tehran has been on the receiving end of a series of computer attacks in recent years.
Iranian technicians cut off Internet links to Iran’s Oil Ministry, rigs and the hub for nearly all the country’s crude exports earlier this year as they tried to battle malicious software known as Flame, which was able to steal information and spy on users.
In 2010, a virus called Stuxnet tailored to disrupt Iran’s nuclear centrifuges caused some setbacks within its uranium enrichment labs and infected an estimated 16,000 computers, Iranian officials say.
Alexander Klimburg, a computer security expert at the Austrian Institute for International Affairs, said the latest attacks against Saudi Arabia and Qatar are more complex than those typically employed by “hacktivist” groups seeking to highlight particular political or social causes.
He agrees that Iran might be involved, though he acknowledges it is difficult to know for sure.
“There has been an Iranian strategy … to interrupt the flow of oil out of the Strait of Hormuz,” he said. “Nobody’s ever said they’d do it just with fast boats,” a reference to the armed Revolutionary Guard craft that ply the Persian Gulf.
But other experts have their doubts.
Vitaly Kamluk, chief malware expert at Russian security company Kaspersky Lab, said that while the attacks appear to be acts of sabotage, there was no firm evidence that they were linked, nor was it known who exactly might be behind them.
“Attribution,” he said, “is extremely hard in cyberspace.”
TWT Video Picks
By Ted Cruz
Banning speech with a constitutional amendment is playing with fire
- GOP: Lerner warned IRS employees to hide information from Congress
- GORDON: Russia plays its own game away from the World Cup
- ISTOOK: Flying illegals home would be 99.5 percent cheaper than Obamas plan
- White House plans for bowling alley upgrades abruptly canceled
- Obama requests $3.7 billion to fight surge of illegals
- Colorado man offers Obama a toke of marijuana a Rocky Mountain 'high'
- Islamic militants aim to take Baghdad airport
- Gun advocates credit new concealed carry laws for sharp drop in Chicago murder rate
- Power grab: EPA wants to garnish wages of polluters
- Malaysian MP not sorry for tweeting 'long live Hitler' after Germany win
Obama's biggest White House 'fails'
Celebrities turned politicians
Athletes turned actors
20 gadgets that changed the world
Fighting in Iraq
World Cup's sexiest WAGs
U.S.-Ghana World Cup opener