Wow this is some next-generation William Gibson-esq shit right here.
As far as who its attacking if the PLC payloads could be unencrypted it might reveal that they attack a certain kind of device, or perhaps in a certain installation or configuration. Finding out exactly what those payloads doing will be the most interesting, and revealing of all. The Symantec article says that the payloads have changed over time, as well.
Just moved back to SF for the first time since the end of the first Boom. Compared to Boston, Seattle and especially San Diego SF is a crappy place to live. It still beats LA and NYC, though.
As far as who its attacking if the PLC payloads could be unencrypted it might reveal that they attack a certain kind of device, or perhaps in a certain installation or configuration. Finding out exactly what those payloads doing will be the most interesting, and revealing of all. The Symantec article says that the payloads have changed over time, as well.