Researchers Identify Fast16 Sabotage Malware That Pre-Dates Stuxnet
ID: 907b73cc-cc0c-5998-8156-ce11c9875d24
STIX ID: report--907b73cc-cc0c-5998-8156-ce11c9875d24
Feed Name: Infosecurity Magazine (News)
SentinelOne researchers uncovered Fast16, a Lua‑based worm and associated kernel driver (fast16.sys) dating to ~2005 that appears designed for targeted sabotage of engineering and simulation tools (LS‑DYNA, PKPM, MOHID). The framework used a boot‑start filesystem driver to intercept and patch executables on Windows 2000/XP, carried multiple 'wormlets', and aimed to introduce subtle errors into physical‑world calculations; the report ties Fast16 to state‑level operations and references the Shadow Brokers leak.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
