Another week, another batch of CIA Vault7 leaks was published by Wikileaks. This time the documents provide details about the Project Protego, a CIA Secret Missile Control System.
The Project Protego is a PIC-based missile control system that was developed by Raytheon, one of major U.S. defence contractors, and maintained between 2014 and 2015.
The system is installed on-board a Pratt & Whitney aircraft (PWA) equipped with missile launch systems (air-to-air and/or air-to-ground).
According to the documents, it could be used to hit air-to-air and air-to-ground targets.
Protego is composed of separate micro-controller units that exchange data and signals over encrypted and authenticated channels.
The encrypted channels are:
» On-board TWA are the ‘Master Processor’ (MP) and the ‘Deployment Box’. Both systems are layed-out with master/slave redundancy.
» The missle system has micro-controllers for the missle itself (‘Missle Smart Switch’, MSS), the tube (‘Tube Smart Switch’, TSS) and the collar (which holds the missile before and at launch time).
Leaked documents include the projects’ scheme, description, a guide on how to configure and build Protego images, and other related data.
A missile could be launched only after the Master Processor (MP) receives three specific valid signals from a beacon (‘In Border,’ ‘Valid GPS,’ and ‘No End of Operational Period’).
“Similary safeguards are in place to auto-destruct encryption and authentication keys for various scenarios (like ‘leaving a target area of operation’ or ‘missing missle‘).” states Wikileaks.
It is unclear if the project the Protego Protego was part of the Vault 7 dump, which mostly contains malware, hacking tools, and relevant documentation. According to Wikileaks, the project was maintained between 2014 and 2015.
“The missile system has micro-controllers for the missile itself (‘Missile Smart Switch’, MSS), the tube (‘Tube Smart Switch’, TSS) and the collar (which holds the missile before and at launch time).” continues Wikileaks.
Raytheon, who was also mentioned in a previous CIA leak, it was tasked by the US intelligence agency for analyzing TTPs used by threat actors in the wild.
Likely the name Protego has been inspired from the magical Shield Charm used in Harry Potter movies, which creates a magical barrier to deflect physical entities and spells, in order to protect a certain person or area.
This means that the project Protego was mainly designed for defensive purposes.
Below the list of release published by Wikileaks since March:
(Security Affairs – Wikileaks, Project Protego)