Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations
Fast16 is a sophisticated sabotage tool discovered in 2026 that predates Stuxnet and was designed to corrupt nuclear weapons simulations involving high-explosive detonations. It specifically targets simulation software LS-DYNA and AUTODYN, tampering with results when material density exceeds 30 g/cm³, a threshold associated with uranium compression in nuclear implosions. The malware operated for years with tailored builds, remaining confined to internal networks while evading detection.
- ▪Fast16 targets simulations in LS-DYNA and AUTODYN, specifically those modeling high-explosive detonations relevant to nuclear weapon design.
- ▪The malware activates only when the simulated material density exceeds 30 g/cm³, a condition typical of uranium under shock compression in implosion devices.
- ▪It uses a rule-driven hook engine with 101 byte-pattern rules to alter simulation outputs, ensuring tampering occurs only during full-scale transient blast runs.
- ▪Up to ten distinct software builds of fast16 were developed, indicating a long-term operation that adapted to software updates over time.
- ▪Fast16 spreads within a network via share enumeration and impersonation but is designed not to propagate beyond the target network.
Lobsters files mainly under programming. We currently carry 187 of its stories.
Story provenance
Source · retrieval · rights · ranking — open for full record
inspect →
Story provenance
Attribution is not the same as permission. This drawer separates discovery metadata, excerpts, WeSearch-generated summaries, reuse status, and whether the publisher receives the visit. Nothing here claims a legal grant the publisher has not made.
Record
| Original publisher | Security |
| Canonical URL | https://www.security.com/threat-intelligence/fast16-nuclear-sabotage |
| Publication time | Sun, 17 May 2026 03:30:13 -0500 |
| Retrieval time | 2026-05-17T08:52:12.990Z |
| Last seen | 2026-05-17T08:52:12.990Z |
| Headline source | Publisher (no WeSearch rewrite) |
| Excerpt source | publisher body |
| Excerpt method | First ~120 words (~800 chars) of extracted publisher body, fair-use limited. |
| Summary | WeSearch · cerebras-chat (WeSearch summarizer) |
| Summary source text | contentText |
| Citation coverage | Summary is a WeSearch-generated derivative; primary citation is the original publisher URL. |
| Cluster | 5RfLprBg7FgI |
| Cluster logic | Grouped by semantic title/content similarity across sources within a rolling window. Same-publisher template collisions are excluded from coverage comparison. |
| Ranking reason | Story pages are not engagement-ranked. Hub feeds use recency, with optional source-diversified chronological ordering (cap consecutive stories per source). No personalized ranking. |
| Publisher visit | Yes — open original |
| Substitutes article? | No — link-out required for full text |
Rights status (four layers)
WeSearch handling by dimension
| Indexing | May the item be indexed (stored, ranked, made findable)? | Allowed |
| Snippet | May a short excerpt of the publisher's text be shown? | Allowed |
| AI summary | May WeSearch generate its own short summary of the article? | Limited |
| Retrieval / RAG | May the content be exposed for third-party retrieval-augmented generation? | Not asserted |
| Model training | May the content be used to train AI models? | Not asserted |
| Commercial reuse | May the content be reused commercially? | Not permitted |
Basis: Derived from the published RSS/Atom feed. Contact: [email protected]. Reviewed: 2026-07-24.
Opening excerpt (first ~120 words) tap to expand
Fast16: Pre-Stuxnet Sabotage Tool Was Built to Subvert Nuclear Weapons Simulations New analysis confirms the targeted applications and reveals fast16 was tailored to corrupt uranium-compression simulations central to nuclear weapon design.Threat Intelligence16 May 20268 Min ReadShareKey findingsFast16’s hook engine is selectively interested in high-explosive simulations inside LS-DYNA and AUTODYN.All evidence suggests that attackers were specifically targeting simulations of nuclear detonations.The malware checks for the density of the material being simulated and only acts when that value passes 30 g/cm³, the threshold uranium can only reach under the shock compression of an implosion device.Up to ten distinct software builds carry tailored hooks, suggesting a sustained operation that…
Excerpt limited to ~120 words for fair-use compliance. The full article is at Security.