IT GOES DEEPER · THE ARCHIVE · TECH & SURVEILLANCE · CASE 5460-07

Stuxnet

FILE DATE 2010
CROSS-REFS 03
STATUS NEVER CLOSED

SUMMARY

The weapon made of code that crossed an air gap and broke real machines. Nobody signed it. Everybody knows.

FULL DOSSIER

Deep underground in the Iranian desert, at a fortified facility called Natanz, thousands of centrifuges spin. They're refining uranium, whirling at tens of thousands of RPM, and they are among the most closely guarded machines on the planet — sealed off from the internet entirely, air-gapped, untouchable. Nothing digital can reach them. And yet, one day, they start to tear themselves apart. A few here, a few there. The centrifuges spin too fast, then too slow, and shatter. The Iranian engineers are baffled. They tear down their systems, fire staff, chase ghosts. Their monitors say everything is normal. Everything is fine. The screens are lying to them. Because something got inside. And that something is called Stuxnet — and here's the thing you have to understand: it is real, it is proven, and it changed the world. Stuxnet was a cyberweapon, and it is widely documented as a joint operation of the United States and Israel, reportedly under a program codenamed 'Olympic Games.' It was discovered in 2010 when it accidentally escaped Natanz and spread across the wider internet, where security researchers at firms like Symantec and Belarus's VirusBlokAda finally caught it and pulled it apart. What they found stunned them. So here's where it gets strange. This wasn't a virus that stole data or held files for ransom. This was the first true cyber-physical weapon — malware built to reach out of the digital world and break real, physical machines. Stuxnet was breathtakingly precise. It ignored ordinary computers. It hunted only for a specific Siemens industrial controller, wired to a specific configuration of centrifuges, spinning at specific frequencies. If it didn't find Natanz, it did nothing. It crossed the air gap by hiding on USB drives, carried in by human hands. And here's the part that still gives experts chills. To pull this off, Stuxnet burned through multiple 'zero-day' exploits — unknown, unpatched flaws so valuable that finding even one is a big deal. This thing used four. It carried stolen, legitimate digital certificates to look trustworthy. And its masterstroke: while it commanded the centrifuges to destroy themselves, it recorded normal readings and played them back to the control room. The operators watched a movie of everything working perfectly while their machines died. This is documented history, not speculation — reconstructed by security researchers, later detailed in reporting like David Sanger's, and never seriously disputed as a nation-state operation. What remains officially unconfirmed is the fine print of who signed off. But the artifact itself is on the record. Stuxnet opened a door that can never be closed. It proved code can be a weapon that spills blood and bends metal. On the map, Stuxnet wires directly to CYBER-LORE, the larger story of cyberwar and the 'first shot' fired in a new kind of conflict. And it reaches toward DEW, directed-energy weapons — the other frontier where invisible forces do physical harm. Find Stuxnet on the map at the exact moment the digital world learned to kill.

SOURCES ON RECORD

01Symantec, 'W32.Stuxnet Dossier' (Nicolas Falliere, Liam O Murchu, Eric Chien), 2011. Ralph Langner, analysis and TED talk 'Cracking Stuxnet.' David E. Sanger, 'Confront and Conceal' (2012) and New York Times reporting on Operation Olympic Games, June 2012. Kim Zetter, 'Countdown to Zero Day' (2014). Initial detection credited to VirusBlokAda (2010).

CROSS-REFERENCED FILES

◉ OPEN THIS FILE ON THE GLOBE
ENTRIES ARE CLAIMS, CASES & LEGENDS — NOT ENDORSEMENTS. VERIFY AGAINST THE SOURCES ON RECORD. TRUST NO ONE, ESPECIALLY THIS FILE.
⚠ THE ARCHIVE IS A WORK IN PROGRESS — DOSSIERS ARE STILL BEING WRITTEN, EXPANDED & CORRECTED.
PRIVACY & ACCESSIBILITY · ALL CASE FILES · SUPPORT@ITGOESDEEPER.COM