Powerful ‘Flame’ Cyber Weapon Hits Middle East Targets Iran
Security experts have discovered a new data-stealing virus dubbed “Flame” they say has lurked inside thousands of computers across the Middle East for as long as five years as part of a sophisticated cyber warfare campaign.
It is the most complex piece of malicious softwarediscovered to date, said Kaspersky Lab security senior researcher Roel Schouwenberg, whose company discovered the virus. The results of the Lab’s work were made available on Monday.
Schouwenberg said he did not know who built Flame.
If the Lab’s analysis is correct, Flame could be the third major cyber weapon uncovered after the Stuxnet virus that attacked Iran’s nuclear program in 2010, and its data-stealing cousin Duqu, named after the Star Wars villain.
The discovery by one of the world’s largest makers of anti-virus software will likely fuel speculation that nations have already secretly deployed other cyber weapons.
“If Flame went on undiscovered for five years, the only logical conclusion is that there are other operations ongoing that we don’t know about,” Schouwenberg said in an interview.
The Moscow-based company is controlled by Russian malware researcher Eugene Kaspersky, and gained notoriety in cyber weapons research after solving several mysteries surrounding Stuxnet and Duqu.
Researchers at Kaspersky said they were only starting to understand how Flame works because it is so complex. The full significance will not be known until other cyber security firms obtain samples of Flame.
The Lab’s research shows the largest number of infected machines are in Iran, followed by the Israel/Palestine region, then Sudan and Syria.
The virus contains about 20 times as much code as Stuxnet, which attacked an Iranian uranium enrichment facility, causing centrifuges to fail. It has about 100 times as much code as a typical virus designed to steal financial information, Schouwenberg said.
Flame can gather data files, remotely change settings on computers, turn on PC microphones to record conversations, take screen shots and log instant messaging chats.
He said there was evidence to suggest the code was commissioned by the same nation or nations that were behind Stuxnet and Duqu, which were built on a common platform.
Both Flame and Stuxnet appear to infect machines by exploiting the same flaw in the Windows operating system and employ a similar way of spreading.
That means the teams that built Stuxnet and Duqu might have had access to the same technology as the team that built Flame, he said. Schouwenberg said he believed the attack was highly targeted, aimed mainly at businesses and academic institutions. He estimated that no more than 5,000 personal computers around the world have been infected, including a handful in North America.
Kaspersky Lab discovered Flame while investigating reports that a virus dubbed Wiper was attacking computers in Iran.
The International Telecommunications Union, a U.N. agency that promotes research and cooperation on telecommunications technology, asked Kaspersky Lab to investigate those reports.
Schouwenberg said that his team discovered Flame, but failed to turn up anything that resembled Wiper. source – MSNBC
|Print article||This entry was posted by NTEB News Desk on May 28, 2012 at 2:50 pm, and is filed under Islamic Terrorism, Israel, Middle East, Technology. Follow any responses to this post through RSS 2.0. You can leave a response or trackback from your own site.|
No comments yet.
No trackbacks yet.
about 2 months ago - 75 comments
about 3 months ago - 34 comments
about 3 months ago - 21 comments
In wake of reported IAF attack on a military research center in Syria, Syrian ambassador to Lebanon says Damascus has option to respond as Iran threatens “serious consequences” for Tel Aviv; Hezbollah, Russia condemn strike. BEIRUT – Syria’s ambassador to Lebanon said on Thursday that Damascus had the option of a “surprise decision” to respond…
about 4 months ago - 67 comments
about 5 months ago - 27 comments
about 6 months ago - 15 comments
An Iranian 150-ton freighter departed Bandar Abbas port Sunday, Nov. 18, with a cargo of 220 short-range missiles and 50 improved long-range Fajr-5 rockets for the Gaza Strip, DEBKAfile’s intelligence sources report. The ship turned toward the Bab al-Mandeb Straits and the Red Sea.
about 6 months ago - 14 comments
Two major Israeli newspapers are reporting that rockets fired from Egypt have hit Israel. “Terrorists in the Sinai Peninsula launched rockets into Israel Friday night,” reports the Jerusalem Post. “The rockets fell near an Israeli village on the southern border, causing some damage, but no injuries.”
about 6 months ago - 11 comments
about 6 months ago - 18 comments
about 6 months ago - 47 comments
Mr. Netanyahu, forget Obama, and as much as it hurts to say this, forget America as well. We voted yesterday to return to office a man of Muslim origin who hates you and hates Israel with every fiber of his being. You don’t need the support of the American president and you do not need American military might to defend you. You have the God of Abraham, the God of Issac and the God of Jacob to fight for you.