Official: US blames Iran hackers for cyberattacks

Associated Press Modified: October 12, 2012 at 12:03 am •  Published: October 11, 2012
Advertisement
;

In his speech, Panetta said the Shamoon virus replaced crucial system files at Aramco with the image of a burning U.S. flag, and also overwrote all data on the machine, rendering more than 30,000 computers useless and forcing them to be replaced. He said the Qatar attack was similar.

Panetta offered no new details on the Pentagon's growing cyber capabilities or the military rules of engagement the department is developing to guide its use of computer-based attacks when the U.S. is threatened.

He said the department is investing more than $3 billion a year in cybersecurity to beef up its ability to defend against and counter cyberthreats, including investment in U.S. Cyber Command. And the Pentagon is honing its policies so that any actions comply with the law of armed conflict.

"Our mission is to defend the nation. We defend. We deter. And if called upon, we take decisive action to protect our citizens," he said.

He added, however, that the department will not monitor American citizen's personal computers, or provide for the day-to-day security of private or commercial networks.

Panetta used the Persian Gulf attacks in his remarks as a warning to business community that it must embrace stalled legislation that would encourage companies to meet certain cybersecurity standards. And he is endorsing a planned move by President Barack Obama to use his executive powers to put some of those programs, including voluntary standards, in place until Congress is able to act.

"These attacks mark a significant escalation of the cyber threat," Panetta said. "And they have renewed concerns about still more destructive scenarios that could unfold."

U.S. authorities have repeatedly warned that foreign Internet hackers are probing U.S. critical infrastructure networks, including those that control utility plants, transportation systems and financial networks.

"We know of specific instances where intruders have successfully gained access to these control systems," Panetta told the business group. "We also know that they are seeking to create advanced tools to attack these systems and cause panic and destruction, and even the loss of life."

Business leaders, including the U.S. Chamber of Commerce, were opposed to the legislations, arguing it would expand the federal government's regulatory authority companies already struggling in the tough economy. The bill also encourages more information sharing between the government and private companies.

Panetta pressed the group to support the stronger cybersecurity measures, warning that failure to do so could have catastrophic consequences.

"Before September 11, 2001 the warning signs were there. We weren't organized. We weren't ready. And we suffered terribly for that lack of attention," said Panetta. "We cannot let that happen again. This is a pre-9/11 moment."