Stuff You Should Know
Stuff You Should Know

Q: Are we in the midst of cyberwar? A: Yes

There's a secret war going on around us, and it's happening on a daily basis. The Air Force recently launched a new unit specifically designed to carry out and defend against cyberwar. Go deep into this new and alarming type of war with Josh and Chuck.

Topics Discussed

Episode Summary

Executive Summary: The episode explains cyber warfare as an emerging, high-stakes threat to modern infrastructure, tracing it from early pipeline and Pentagon incidents to offensive operations like Stuxnet. The hosts emphasize how dependent the U.S. is on interconnected systems, how cyber attacks can enable or accompany physical attacks, and how both government and private companies struggle to defend against a rapidly evolving risk landscape.

Main Topics: Early Warning Signs of Cyber Vulnerability (Priority: 5/5): The Olympic Pipeline disaster is used as an early example of how digitally controlled infrastructure can fail catastrophically and how such failures foreshadowed cyber attack potential. Pentagon Red Team Testing and Moonlight Maze (Priority: 5/5): Project Eligible Receiver showed the U.S. military could be penetrated quickly, followed by the Moonlight Maze espionage campaign that stole sensitive data from government networks. Offensive U.S. Cyber Operations (Priority: 5/5): The discussion covers how the U.S. has used cyber attacks offensively, including disrupting Serbian air defenses in Kosovo and Iran's centrifuges via Stuxnet/Operation Olympic Games. Stuxnet and the Evolution of Cyber Sabotage (Priority: 5/5): Stuxnet is presented as a landmark offensive cyber weapon, demonstrating that malware can conceal damage while causing physical destruction in critical industrial systems. Defense Challenges and Infrastructure Dependence (Priority: 4/5): The episode argues that the U.S. is especially vulnerable because so much of its infrastructure runs on networked systems, often from major vendors like Microsoft, outpacing security planning. Cyber War and Physical War as a Combined Threat (Priority: 4/5): The hosts stress that cyber attacks may be paired with kinetic strikes, such as shutting down power or communications before a physical invasion, making defense more urgent. Listener Mail and Beer History Sidebar (Priority: 2/5): A long listener email shifts to the Great Chicago Fire’s impact on breweries and the rise of Milwaukee beer brands like Schlitz, serving as the episode's closing community segment.

Key Arguments: Modern infrastructure is deeply exposed because utilities, banks, government systems, and military tools depend on interconnected digital control systems. The Olympic Pipeline incident illustrates how a systems-control failure can resemble the effects of a deliberate cyber attack. The U.S. has tested and used offensive cyber capabilities, but doing so creates precedent and invites retaliation or reverse engineering. Project Eligible Receiver and Moonlight Maze proved that even advanced government networks were vulnerable and that attacks can remain undetected for long periods. Stuxnet represents a major escalation because it did not merely spy; it sabotaged physical industrial equipment while masking the damage. Cyber defense is hampered by rapid software deployment, inadequate testing, and the private ownership of much of the internet's infrastructure. A cyber attack could be most dangerous when combined with a physical assault that exploits the resulting chaos. Education, safer software practices, and stronger corporate responsibility are presented as the main defensive responses available now.

Data Points: Olympic Pipeline disaster date: June 10, 1999 - A leak and fireball at the Olympic Pipeline Company in Bellingham, Washington, is cited as an early cyber-risk example. Lives lost in Olympic Pipeline incident: 3 - The pipeline explosion killed three people. Project Eligible Receiver detection time: 3 days - The Pentagon reportedly did not realize it was being cyber-attacked by the red team for three days. Moonlight Maze detection delay: 2 years - NASA, the Pentagon, and other agencies reportedly took two years to notice they were being spied on. Stuxnet operation year: 2010 - The offensive cyber attack against Iran is described as occurring in 2010. Iranian nuclear setback: At least 1 year - Stuxnet reportedly set Iran's nuclear program back by at least a year. Milwaukee beer sales in Chicago after the fire: 50,000 barrels - Schlitz sold about 50,000 barrels in Chicago alone by the 1880s after the Great Chicago Fire. Schlitz share of total sales: 17% - The 50,000 barrels represented about 17% of Schlitz's total sales. Chicago breweries destroyed by fire: About 18 - The listener mail says the Great Chicago Fire wiped out roughly 18 breweries. Chicago breweries lost: About three-quarters - The email states the fire destroyed about 75% of Chicago's breweries.

Pivotal Quotes: "all of the ponies are hooked to a single basket of eggs" — Chuck Bryant: A metaphor describing how interconnected and vulnerable critical infrastructure has become. "how do we prevent a cyber war from bringing us all down?" — Josh Clark: Summarizes the episode's central concern about the scale of cyber risk. "the computer equivalent of Hiroshima" — Narration/hosts: Used to describe the strategic significance and destructive precedent of Stuxnet and U.S. cyber operations.

Implications: Listeners should see cyber security as a core infrastructure issue, not just an IT problem. The episode warns that future conflicts may begin with software sabotage and could spread quickly unless governments, companies, and users improve defenses.

🔓 Sign Up for Unlimited Episode Search

About Stuff You Should Know

If you've ever wanted to know about champagne, satanism, the Stonewall Uprising, chaos theory, LSD, El Nino, true crime and Rosa Parks, then look no further. Josh and Chuck have you covered.

View all episodes from Stuff You Should Know