Skip to main content

A virus to fear

Cyberspace espionage has been ratcheted up by a significant notch if this piece, "Flame Thrower" on FP, is correct.    We should all be concerned as Governments around the world harness technology to snoop on what their citizens are talking about (via phone) or emailing (via their computer, tablet or smartphone).

"Welcome to the new frontier of cyber-espionage, and remember this name: "Flame" -- a mysterious new cyber spy tool that hit the headlines on Monday, May 28. Its code is 20 times larger than Stuxnet, the mysterious computer worm that temporarily crippled Iran's Siemens nuclear centrifuges, and it "might be the most sophisticated cyber weapon yet unleashed" according to Kaspersky Lab, a Russian-based cybersecurity firm. Kaspersky published the findings of its analysis on Monday in addition to the Iranian Computer Emergency Response Team (CERT) and Budapest University. Most of the infected systems are located in the Middle East, with Iran, Israel, Palestine, Sudan, Syria, Lebanon, and Hungary topping the list. Flame stands out in the various ways through which it "exfiltrates" data, including surreptitiously recorded audio data captured by internal microphones. However, unlike Stuxnet, Flame was designed to spy -- not destroy.
 

The variety of spy tools that Flame employs is astonishing. According to Kaspersky, "of course, other malware exists which can record audio, but key here is Flame's completeness -- the ability to steal data in so many different ways." It also takes snapshots of instant messages and records a user's keystrokes. Flame is remotely controlled through a command and control server and it's highly dynamic. In other words, it has been updated remotely since it was first launched at least as early as March 2010 and its "creators are constantly introducing changes into different modules" which expand its functionality. Now that it has been detected, the Iranian CERT apparently offers infected users a removal tool.

According to the Washington Post, some analysts see the United States and Israel behind Flame. Kaspersky will only go so far as to say that it's likely the work of a nation-state rather than a private entity or hacking group because of the sophistication and the geographic location of the infected systems, For now, the perpetrator's identity remains unknown. Flame was designed to avoid being detected, hiding in large amounts of code and using a programming language unusual for malware. Victims include individuals, private companies, educational institutions, and state-related organizations. Other details are also unclear at this point, however, such as how Flame accesses a system in the first place. Kaspersky considers Flame an operation likely to have been run in tandem with Stuxnet."

Comments

Popular posts from this blog

Robert Fisk's predictions for the Middle East in 2013

There is no gain-saying that Robert Fisk, fiercely independent and feisty to boot, is the veteran journalist and author covering the Middle East. Who doesn't he know or hasn't he met over the years in reporting from Beirut - where he lives?  In his latest op-ed piece for The Independent he lays out his predictions for the Middle East for 2013. Read the piece in full, here - well worthwhile - but an extract... "Never make predictions in the Middle East. My crystal ball broke long ago. But predicting the region has an honourable pedigree. “An Arab movement, newly-risen, is looming in the distance,” a French traveller to the Gulf and Baghdad wrote in 1883, “and a race hitherto downtrodden will presently claim its due place in the destinies of Islam.” A year earlier, a British diplomat in Jeddah confided that “it is within my knowledge... that the idea of freedom does at present agitate some minds even in Mecca...” So let’s say this for 2013: the “Arab Awakening” (the t...

The NPT (Nuclear Non-Proliferation Treaty) goes on hold.....because of one non-Treaty member (Israel)

Isn't there something radically wrong here?    Israel, a non-signatory to the NPT has, evidently, been the cause for those countries that are Treaty members, notably Canada, the US and the UK, after 4 weeks of negotiation, effectively blocking off any meaningful progress in ensuring the non-proliferation of nuclear weapons.    IPS reports ..... "After nearly four weeks of negotiations, the Nuclear Non-Proliferation Treaty (NPT) Review Conference ended in a predictable outcome: a text overwhelmingly reflecting the views and interests of the nuclear-armed states and some of their nuclear-dependent allies. “The process to develop the draft Review Conference outcome document was anti-democratic and nontransparent,” Ray Acheson, director, Reaching Critical Will, Women’s International League for Peace and Freedom (WILPF), told IPS. “This Review Conference has demonstrated beyond any doubt that continuing to rely on the nuclear-armed states or their nuclear-de...

#1 Prize for a bizarre story.....and lying!

No comment called for in this piece from CommonDreams: Another young black man: The strange sad case of 21-year-old Chavis Carter. Police in Jonesboro, Arkansas  stopped  him and two friends, found some marijuana, searched put Carter, then put him handcuffed  behind his back  into their patrol car, where they say he  shot himself  in the head with a gun they failed to find. The FBI is investigating. Police Chief Michael Yates, who stands behind his officers' story,  says in an interview  that the death is "definitely bizarre and defies logic at first glance." You think?