Cyberwarfare and Applied Just War Theory: Assessing the Stuxnet Worm Through Jus Ad Bellum and Jus in Bello
Total Page:16
File Type:pdf, Size:1020Kb
Load more
Recommended publications
-
In Defense of Cyberterrorism: an Argument for Anticipating Cyber-Attacks
IN DEFENSE OF CYBERTERRORISM: AN ARGUMENT FOR ANTICIPATING CYBER-ATTACKS Susan W. Brenner Marc D. Goodman The September 11, 2001, terrorist attacks on the United States brought the notion of terrorism as a clear and present danger into the consciousness of the American people. In order to predict what might follow these shocking attacks, it is necessary to examine the ideologies and motives of their perpetrators, and the methodologies that terrorists utilize. The focus of this article is on how Al-Qa'ida and other Islamic fundamentalist groups can use cyberspace and technology to continue to wage war againstthe United States, its allies and its foreign interests. Contending that cyberspace will become an increasingly essential terrorist tool, the author examines four key issues surrounding cyberterrorism. The first is a survey of conventional methods of "physical" terrorism, and their inherent shortcomings. Next, a discussion of cyberspace reveals its potential advantages as a secure, borderless, anonymous, and structured delivery method for terrorism. Third, the author offers several cyberterrorism scenarios. Relating several examples of both actual and potential syntactic and semantic attacks, instigated individually or in combination, the author conveys their damagingpolitical and economic impact. Finally, the author addresses the inevitable inquiry into why cyberspace has not been used to its full potential by would-be terrorists. Separately considering foreign and domestic terrorists, it becomes evident that the aims of terrorists must shift from the gross infliction of panic, death and destruction to the crippling of key information systems before cyberattacks will take precedence over physical attacks. However, given that terrorist groups such as Al Qa'ida are highly intelligent, well-funded, and globally coordinated, the possibility of attacks via cyberspace should make America increasingly vigilant. -
2016 8Th International Conference on Cyber Conflict: Cyber Power
2016 8th International Conference on Cyber Conflict: Cyber Power N.Pissanidis, H.Rõigas, M.Veenendaal (Eds.) 31 MAY - 03 JUNE 2016, TALLINN, ESTONIA 2016 8TH International ConFerence on CYBER ConFlict: CYBER POWER Copyright © 2016 by NATO CCD COE Publications. All rights reserved. IEEE Catalog Number: CFP1626N-PRT ISBN (print): 978-9949-9544-8-3 ISBN (pdf): 978-9949-9544-9-0 CopyriGHT AND Reprint Permissions No part of this publication may be reprinted, reproduced, stored in a retrieval system or transmitted in any form or by any means, electronic, mechanical, photocopying, recording or otherwise, without the prior written permission of the NATO Cooperative Cyber Defence Centre of Excellence ([email protected]). This restriction does not apply to making digital or hard copies of this publication for internal use within NATO, and for personal or educational use when for non-profit or non-commercial purposes, providing that copies bear this notice and a full citation on the first page as follows: [Article author(s)], [full article title] 2016 8th International Conference on Cyber Conflict: Cyber Power N.Pissanidis, H.Rõigas, M.Veenendaal (Eds.) 2016 © NATO CCD COE Publications PrinteD copies OF THIS PUBlication are availaBLE From: NATO CCD COE Publications Filtri tee 12, 10132 Tallinn, Estonia Phone: +372 717 6800 Fax: +372 717 6308 E-mail: [email protected] Web: www.ccdcoe.org Head of publishing: Jaanika Rannu Layout: Jaakko Matsalu LEGAL NOTICE: This publication contains opinions of the respective authors only. They do not necessarily reflect the policy or the opinion of NATO CCD COE, NATO, or any agency or any government. -
Zombies—A Pop Culture Resource for Public Health Awareness Melissa Nasiruddin, Monique Halabi, Alexander Dao, Kyle Chen, and Brandon Brown
Zombies—A Pop Culture Resource for Public Health Awareness Melissa Nasiruddin, Monique Halabi, Alexander Dao, Kyle Chen, and Brandon Brown itting at his laboratory bench, a scientist adds muta- secreted by puffer fish that can trigger paralysis or death- Stion after mutation to a strand of rabies virus RNA, like symptoms, could be primary ingredients. Which toxins unaware that in a few short days, an outbreak of this very are used in the zombie powders specifically, however, is mutation would destroy society as we know it. It could be still a matter of contention among academics (4). Once the called “Zombie Rabies,” a moniker befitting of the next sorcerer has split the body and soul, he stores the ti-bon anj, Hollywood blockbuster—or, in this case, a representation the manifestation of awareness and memory, in a special of the debate over whether a zombie apocalypse, manu- bottle. Inside the container, that part of the soul is known as factured by genetically modifying one or more diseases the zombi astral. With the zombi astral in his possession, like rabies, could be more than just fiction. Fear of the the sorcerer retains complete control of the victim’s spiri- unknown has long been a psychological driving force for tually dead body, now known as the zombi cadavre. The curiosity, and the concept of a zombie apocalypse has be- zombi cadavre remains a slave to the will of the sorcerer come popular in modern society. This article explores the through continued poisoning or spell work (1). In fact, the utility of zombies to capitalize on the benefits of spreading only way a zombi can be freed from its slavery is if the spell public health awareness through the use of relatable popu- jar containing its ti-bon anj is broken, or if it ingests salt lar culture tools and scientific explanations for fictional or meat. -
Issue No. 486 AUGUST 2021
Issue Brief ISSUE NO. 486 AUGUST 2021 © 2021 Observer Research Foundation. All rights reserved. No part of this publication may be reproduced, copied, archived, retained or transmitted through print, speech or electronic media without prior written approval from ORF. The Limits of Military Coercion in Halting Iran’s Nuclear Weapons Programme Kunal Singh Abstract Israel believes that the use of force is essential to stopping Iran from making the nuclear bomb. A vocal section of the strategic affairs community in the United States agrees with the proposition. This brief argues that military means are unlikely to sabotage the nuclear weapons programme of an advanced-stage bomb-seeker like Iran. Moreover, use of force could be counterproductive as it can incentivise Iran’s pursuit of the bomb, and it may erode the confidence required for diplomatic negotiations that can possibly help cease the weapons programme. Attribution: Kunal Singh, “The Limits of Military Coercion in Halting Iran’s Nuclear Weapons Programme,” ORF Issue Brief No. 486, August 2021, Observer Research Foundation. 01 n early April in Vienna, the Biden administration initiated efforts with Iran to reinstate the Joint Comprehensive Plan of Action (JCPOA), more commonly known as the Iran nuclear deal, from which the United States (US) had exited during the tenure of former US President Donald Trump. A week later, an explosion at Iran’s Natanz uranium enrichment Ifacility caused a power blackout. Israel, the state most vocally opposed to the JCPOA, is widely believed to have -
Iran: Recent Incidents Likely a Coordinated String of Deliberate Attacks
The Cambridge Security Initiative IRAN: RECENT INCIDENTS LIKELY A COORDINATED STRING OF DELIBERATE ATTACKS JULY 2020 Richard C. Baffa Since early May, Iranian critical infrastructure and national security facilities have been subject to at least nine fires, explosions, and apparent cyberattacks; eight of these have taken place since 26 June. The nature of the targets and the short period of time in which they have occurred is unprecedented, strongly pointing to deliberate attacks and/or sabotage. Tehran has downplayed many of the incidents as accidents, but unofficially blamed the United States, Israel, and an unnamed Arab state (likely Saudi Arabia and/or the United Arab Emirates), and has vowed to retaliate. Two of the sites, the Natanz enrichment facility and Khojir military base, are highly secure national security facilities, harbouring sensitive nuclear and ballistic missile capabilities, including the IR-4 and IR-6 generation of modern centrifuges. At Natanz, an explosion and fire damaged a new, high-value centrifuge production/assembly plant on 2 July; the building is adjacent to underground fuel production facilities where the U.S. and Israel conducted the Stuxnet cyberattack a decade ago. An unnamed Middle Eastern intelligence official claimed Israel was responsible, using a powerful bomb. On 26 June, another explosion took place at Khojir missile production site, a highly secretive facility for missile engines and propellant development and testing near Tehran. In addition, on 10 July, local witnesses in Garmdarreh, west of Tehran, reported a series of explosions followed by widespread power outages. Multiple reports claimed the explosions occurred at Islamic Revolutionary Guard Corps (IRGC) missile depots, possibly the Islam IRGC Aerospace military base; there are also other military facilities, a chemical weapons research site, and power plants in the area. -
Duqu the Stuxnet Attackers Return
Uncovering Duqu The Stuxnet Attackers Return Nicolas Falliere 4/24/2012 Usenix Leet - San Jose, CA 1 Agenda 1 Revisiting Stuxnet 2 Discovering Duqu 3 Inside Duqu 4 Weird, Wacky, and Unknown 5 Summary 2 Revisiting Stuxnet 3 Key Facts Windows worm discovered in July 2010 Uses 7 different self-propagation methods Uses 4 Microsoft 0-day exploits + 1 known vulnerability Leverages 2 Siemens security issues Contains a Windows rootkit Used 2 stolen digital certificates Modified code on Programmable Logic Controllers (PLCs) First known PLC rootkit 4 Cyber Sabotage 5 Discovering Duqu 6 Boldi Bencsath Announce (CrySyS) emails: discovery and “important publish 25 page malware Duqu” paper on Duqu Boldi emails: Hours later the “DUQU DROPPER 7 C&C is wiped FOUND MSWORD 0DAY INSIDE” Inside Duqu 8 Key Facts Duqu uses the same code as Stuxnet except payload is different Payload isn‟t sabotage, but espionage Highly targeted Used to distribute infostealer components Dropper used a 0-day (Word DOC w/ TTF kernel exploit) Driver uses a stolen digital certificate (C-Media) No self-replication, but can be instructed to copy itself to remote machines Multiple command and control servers that are simply proxies Infections can serve as peers in a peer-to-peer C&C system 9 Countries Infected Six organizations, in 8 countries confirmed infected 10 Architecture Main component A large DLL with 8 or 6 exports and 1 main resource block Resource= Command & Control module Copies itself as %WINDIR%\inf\xxx.pnf Injected into several processes Controlled by a Configuration Data file Lots of similarities with Stuxnet Organization Code Usual lifespan: 30 days Can be extended 11 Installation 12 Signed Drivers Some signed (C-Media certificate) Revoked on October 14 13 Command & Control Module Communication over TCP/80 and TCP/443 Embeds protocol under HTTP, but not HTTPS Includes small blank JPEG in all communications Basic proxy support Complex protocol TCP-like with fragments, sequence and ack. -
Reimagining US Strategy in the Middle East
REIMAGININGR I A I I G U.S.S STRATEGYT A E Y IIN THET E MMIDDLED L EEASTS Sustainable Partnerships, Strategic Investments Dalia Dassa Kaye, Linda Robinson, Jeffrey Martini, Nathan Vest, Ashley L. Rhoades C O R P O R A T I O N For more information on this publication, visit www.rand.org/t/RRA958-1 Library of Congress Cataloging-in-Publication Data is available for this publication. ISBN: 978-1-9774-0662-0 Published by the RAND Corporation, Santa Monica, Calif. 2021 RAND Corporation R® is a registered trademark. Cover composite design: Jessica Arana Image: wael alreweie / Getty Images Limited Print and Electronic Distribution Rights This document and trademark(s) contained herein are protected by law. This representation of RAND intellectual property is provided for noncommercial use only. Unauthorized posting of this publication online is prohibited. Permission is given to duplicate this document for personal use only, as long as it is unaltered and complete. Permission is required from RAND to reproduce, or reuse in another form, any of its research documents for commercial use. For information on reprint and linking permissions, please visit www.rand.org/pubs/permissions. The RAND Corporation is a research organization that develops solutions to public policy challenges to help make communities throughout the world safer and more secure, healthier and more prosperous. RAND is nonprofit, nonpartisan, and committed to the public interest. RAND’s publications do not necessarily reflect the opinions of its research clients and sponsors. Support RAND Make a tax-deductible charitable contribution at www.rand.org/giving/contribute www.rand.org Preface U.S. -
The Emergence and Development of the Sentient Zombie: Zombie
The Emergence and Development of the Sentient Zombie: Zombie Monstrosity in Postmodern and Posthuman Gothic Kelly Gardner Submitted in partial fulfilment of the requirements for the award of Doctor of Philosophy Division of Literature and Languages University of Stirling 31st October 2015 1 Abstract “If you’ve never woken up from a car accident to discover that your wife is dead and you’re an animated rotting corpse, then you probably won’t understand.” (S. G. Browne, Breathers: A Zombie’s Lament) The zombie narrative has seen an increasing trend towards the emergence of a zombie sentience. The intention of this thesis is to examine the cultural framework that has informed the contemporary figure of the zombie, with specific attention directed towards the role of the thinking, conscious or sentient zombie. This examination will include an exploration of the zombie’s folkloric origin, prior to the naming of the figure in 1819, as well as the Haitian appropriation and reproduction of the figure as a representation of Haitian identity. The destructive nature of the zombie, this thesis argues, sees itself intrinsically linked to the notion of apocalypse; however, through a consideration of Frank Kermode’s A Sense of an Ending, the second chapter of this thesis will propose that the zombie need not represent an apocalypse that brings devastation upon humanity, but rather one that functions to alter perceptions of ‘humanity’ itself. The third chapter of this thesis explores the use of the term “braaaaiiinnss” as the epitomised zombie voice in the figure’s development as an effective threat within zombie-themed videogames. -
Iran'in Siber Güvenlik Stratejisinin Saldiri Ve
See discussions, stats, and author profiles for this publication at: https://www.researchgate.net/publication/334583513 İRAN’IN SİBER GÜVENLİK STRATEJİSİNİN SALDIRI VE SAVUNMA KAPASİTESİ BAKIMINDAN ANALİZİ Article in Turkish Studies - Social Sciences · January 2019 DOI: 10.29228/TurkishStudies.22799 CITATIONS READS 0 225 1 author: Ali Burak Darıcılı 35 PUBLICATIONS 21 CITATIONS SEE PROFILE All content following this page was uploaded by Ali Burak Darıcılı on 25 July 2019. The user has requested enhancement of the downloaded file. Turkish Studies Social Sciences Volume 14 Issue 3, 2019, p. 409-425 DOI: 10.29228/TurkishStudies.22799 ISSN: 2667-5617 Skopje/MACEDONIA-Ankara/TURKEY Research Article / Araştırma Makalesi A r t i c l e I n f o / M a k a l e B i l g i s i Received/Geliş: 04.02.2019 Accepted/Kabul: 10.06.2019 Report Dates/Rapor Tarihleri: Referee 1 (15.03.2019)-Referee 2 (11.03.2019)- Referee 3 (18.03.2019) This article was checked by iThenticate. ANALYSIS OF IRAN'S CYBER SECURITY STRATEGY WITH REGARD TO THE ATTACK AND THE DEFENSE CAPACITY Ali Burak DARICILI ABSTRACT The Stuxnet Virus was released in June 2010 and has affected Iran's nuclear facilities in Bushehr and Natanz. It was claimed that the United States of America (USA) and Israel secret services together have a role in the planning of this cyber-attack. Following this cover activity, also known as Operation Olympic Games in the literature, Iran considered the need to take serious measures in the field of cyber security and aimed to reach an effective cyber security capacity in cyber space with the investments made in 2010. -
Zombie Apocalypse: Engaging Students in Environmental Health
Journal of University Teaching & Learning Practice Volume 15 | Issue 2 Article 4 2018 Zombie Apocalypse: Engaging Students In Environmental Health And Increasing Scientific Literacy Through The seU Of Cultural Hooks And Authentic Challenge Based Learning Strategies Harriet Whiley Flinders University, [email protected] Donald Houston Flinders University, [email protected] Anna Smith Flinders University, [email protected] Kirstin Ross Flinders University, [email protected] Follow this and additional works at: http://ro.uow.edu.au/jutlp Recommended Citation Whiley, Harriet; Houston, Donald; Smith, Anna; and Ross, Kirstin, Zombie Apocalypse: Engaging Students In Environmental Health And Increasing Scientific Literacy Through The sU e Of Cultural Hooks And Authentic Challenge Based Learning Strategies, Journal of University Teaching & Learning Practice, 15(2), 2018. Available at:http://ro.uow.edu.au/jutlp/vol15/iss2/4 Research Online is the open access institutional repository for the University of Wollongong. For further information contact the UOW Library: [email protected] Zombie Apocalypse: Engaging Students In Environmental Health And Increasing Scientific Literacy Through The seU Of Cultural Hooks And Authentic Challenge Based Learning Strategies Abstract Environmental Health (EH) is an essential profession for protecting human health and yet as a discipline it is under-recognised, overlooked and misunderstood. Too few students undertake EH studies, culminating in a dearth of qualified Environmental Health Officers (EHOs) in Australia. A major deterrent to students enrolling in EH courses is a lack of appreciation of the relevance to their own lives. This is symptomatic of a wider problem of scientific literacy: the relevance gap and how to bridge it. -
Stuxnet, Schmitt Analysis, and the Cyber “Use-Of-Force” Debate
Members of International Telecommunications Union and UN Institute for Training and Research confer on cyber security UN (Jean-Marc Ferré) UN (Jean-Marc Stuxnet, Schmitt Analysis, and the Cyber “Use-of-Force” Debate By ANDREW C. FOLTZ All Members shall refrain in ne of the many seemingly advance the specific criteria states will use in intractable legal issues sur- making such determinations. their international relations rounding cyberspace involves As discussed in this article, several ana- from the threat or use of force O whether and when peacetime lytic frameworks have been developed to help against the territorial integ- cyber operations constitute a prohibited use of assess when cyber operations constitute a use force under Article 2(4) of the United Nations of force.3 One conclusion these frameworks rity or political independence (UN) Charter. Notwithstanding a significant share is that cyber operations resulting in of any state, or in any other body of scholarly work on this topic and physical damage or injury will almost always manner inconsistent with extensive real-world examples from which to be regarded as a use of force. When these draw, there is no internationally recognized frameworks were developed, however, there the Purposes of the United definition of a use of force.2 Rather, what has were few, if any, examples of peacetime, state- Nations. emerged is a general consensus that some sponsored cyber coercion. More importantly, cyber operations will constitute a use of force, the prospect of cyber attacks causing physical —Article 2(4), Charter of the but that it may not be possible to identify in damage was largely theoretical.4 Beginning United Nations1 Lieutenant Colonel Andrew C. -
INDIVIDUAL and NATIONAL RESPONSIBILITY to PROTECT Dr
INDIVIDUAL AND NATIONAL RESPONSIBILITY TO PROTECT Dr. Jack D. Kem “It is absolutely the responsibility of every U.S. service member, if they see inhumane treatment being conducted, to intervene to stop it.” GEN Peter Pace, 29 November 20051 ABSTRACT The "Responsibility to Protect," or R2P, as defined by the international community, is a sovereign obligation that relates directly to States to protect their citizens from genocide and mass atrocities. In the past decade, this "Responsibility to Protect" has extended to the international community when States fail to fulfill their obligation. R2P, therefore, is considered only at the "nation-state" level. This paper addresses how the concepts in R2P should also be considered as an individual obligation to intervene when instances of genocide or mass atrocities occur. The paper also compares and contrasts R2P with Just War Theory parallel concepts of Jus ad Bellum (as a nation-state concern) and Jus in Bello (as an individual concern). BACKGROUND On November 29, 2005, Secretary of Defense Donald Rumsfeld and the Chairman of the Joint Chiefs of Staff General Peter Pace conducted a press conference at the Pentagon. One of the key issues addressed at the press conference was the “growing reports of uniformed death squads” allegedly conducting assassinations and torture. These reports were dismissed as “hypothetical” by Secretary Rumsfeld. One reporter then asked a question “about excesses of the Interior Ministry, the Ministry of Defense, and that is in dealing with prisoners or in arresting people and how they're treated after they're arrested.” Acknowledging Iraq as sovereign country, he asked “…what is the U.S.