Nation-state sponsored: Flame Malware

Wow, Flame (malware).

• Most advanced malware to date.

• Likely nation-state sponsored.

• Create fake but valid certificates.

• hijacks Microsoft update.

• User level program can't even see it.

• Can record audio, screenshots, keyboard activity and network traffic.[6] The program also records Skype conversations and can turn infected computers into Bluetooth beacons which attempt to download contact information from nearby Bluetooth-enabled devices.

• Remotely controlled. Including a command to self-destruct.

• Target seems to be Iran.

Who wrote it? We did! (suspects: one of {Israel, USA, China}.)

Popular posts from this blog

Browser User Agent Strings 2012

11 Years of Writing About Emacs

does md5 creates more randomness?