test_scratch / cti-ATT-CK-v13.1 /ics-attack /malware /malware--496bff4d-0700-4b28-b06f-f30a63002be7.json
khoicrtp's picture
Upload 2298 files
5fe70fd
raw
history blame
3.75 kB
{
"type": "bundle",
"id": "bundle--eef19592-11e6-4fc3-a557-25f0848e5421",
"spec_version": "2.0",
"objects": [
{
"labels": [
"malware"
],
"x_mitre_platforms": [
"Windows"
],
"x_mitre_domains": [
"ics-attack"
],
"x_mitre_aliases": [
"Stuxnet"
],
"object_marking_refs": [
"marking-definition--fa42a846-8d90-4e51-bc29-71d5b4802168"
],
"name": "Stuxnet",
"description": "[Stuxnet](https://collaborate.mitre.org/attackics/index.php/Software/S0010) was the first publicly reported piece of malware to specifically target industrial control systems devices. Stuxnet is a large and complex piece of malware that utilized multiple different complex tactics including multiple zero-day vulnerabilites, a sophisticated Windows rootkit, and network infection routines.(Citation: Wired W32.Stuxnet Dossier Feb 2011)(Citation: Symantec W32.Stuxnet Writeup)(Citation: CISA ICS Advisory (ICSA-10-238-01B))(Citation: SCADAhacker Stuxnet Mitigation Jan 2014)",
"id": "malware--496bff4d-0700-4b28-b06f-f30a63002be7",
"x_mitre_version": "1.0",
"type": "malware",
"created_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"created": "2019-03-26T15:02:14.907Z",
"modified": "2021-10-21T14:00:00.188Z",
"external_references": [
{
"source_name": "mitre-ics-attack",
"external_id": "S1008",
"url": "https://collaborate.mitre.org/attackics/index.php/Software/S0010"
},
{
"source_name": "Wired W32.Stuxnet Dossier Feb 2011",
"description": "Nicolas Falliere, Liam O Murchu, Eric Chien. (2011, February). W32.Stuxnet Dossier (Version 1.4). Retrieved September 22, 2017.",
"url": "https://www.wired.com/images_blogs/threatlevel/2010/11/w32_stuxnet_dossier.pdf"
},
{
"source_name": "Symantec W32.Stuxnet Writeup",
"description": "Jarrad Shearer. (n.d.). W32.Stuxnet Writeup. Retrieved October 22, 2019.",
"url": "https://www.symantec.com/security-center/writeup/2010-071400-3123-99"
},
{
"source_name": "CISA ICS Advisory ICSA-10-238-01B Stuxnet January 2014",
"description": "CISA. (2014, January 08). Stuxnet Malware Mitigation (Update B). Retrieved October 22, 2019.",
"url": "https://www.us-cert.gov/ics/advisories/ICSA-10-238-01B"
},
{
"source_name": "SCADAhacker Stuxnet Mitigation Jan 2014",
"description": "Joel Langill. (2014, January 21). Stuxnet Mitigation. Retrieved October 22, 2019.",
"url": "https://scadahacker.com/resources/stuxnet-mitigation.html"
},
{
"source_name": "Langer Stuxnet Analysis Nov 2013",
"description": "Ralph Langner. (2013, November). To Kill a Centrifuge: A Technical Analysis of What Stuxnet's Creators Tried to Achieve. Retrieved March 27, 2018.",
"url": "https://www.langner.com/wp-content/uploads/2017/03/to-kill-a-centrifuge.pdf"
}
],
"x_mitre_attack_spec_version": "2.1.0",
"x_mitre_modified_by_ref": "identity--c78cb6e5-0c4b-4611-8297-d1b8b55e40b5",
"x_mitre_deprecated": true
}
]
}