<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.element14.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>Flame malware...good luck antivirus!</title><link>https://community.element14.com/learn/publications/w/documents/10053/flame-malware-good-luck-antivirus</link><description /><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>Flame malware...good luck antivirus!</title><link>https://community.element14.com/learn/publications/w/documents/10053/flame-malware-good-luck-antivirus</link><pubDate>Fri, 08 Oct 2021 04:56:19 GMT</pubDate><guid isPermaLink="false">93d5dcb4-84c2-446f-b2cb-99731719e767:a31c5194-5441-43b9-adfc-cd1e77f75b3d</guid><dc:creator>DebuggerGuys</dc:creator><comments>https://community.element14.com/learn/publications/w/documents/10053/flame-malware-good-luck-antivirus#comments</comments><description>Current Revision posted to Documents by DebuggerGuys on 10/8/2021 4:56:19 AM&lt;br /&gt;
&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;Today&amp;#39;s conventional software to protect PCs and assure they are out of viruses&amp;#39; reach, might be getting outmoded given the discovery made a couple of weeks ago in Middle Eastern countries Iran, Rusia and Hungary.&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;The famous discovery&amp;#39;s name is &lt;a class="jive-link-external-small" href="http://en.wikipedia.org/wiki/Flame_(malware)" rel="nofollow ugc noopener" target="_blank"&gt;Flame&lt;/a&gt;, it is a powerful malware that has been operating for at least two years on &lt;span style="text-align:-webkit-auto;"&gt;targeted cyber espionage&lt;/span&gt;, and was quickly declared by Hungary&amp;#39;s &lt;a class="jive-link-external-small" href="http://www.crysys.hu/" rel="nofollow ugc noopener" target="_blank"&gt;CrySys Lab&lt;/a&gt; as &lt;span style="text-align:-webkit-auto;"&gt;&amp;quot;the most complex malware ever found.&amp;quot; &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;But what is that makes Flame so deathly for computers and a failure for the antivirus industry?&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;The malware can spread to other systems over LAN or via USB, it copies documents and records audio, keystrokes, network traffic, and even Skype calls, and takes screenshots from infected computers. That information is passed along to one of several command-and-control servers operated by its creators, then it&lt;span style="color:#000000;text-align:-webkit-auto;"&gt; awaits further instructions from these servers. &lt;/span&gt;In all that time, no security software raises the alarm.&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;Threats are detected by comparing the code of software programs and their activity against a database of &amp;quot;signatures&amp;quot; for known malware. Security companies such as F-Secure and McAfee constantly research reports of new malware and update their lists of signatures accordingly. The result is supposed to be an impenetrable wall that keeps the bad guys out.&lt;span style="text-align:center;"&gt; &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;However, in recent years, high-profile attacks on not just the Iranian government but also the U.S. government have taken place using software that, like Flame, was able to waltz straight past signature-based software. Many technically sophisticated U.S. companies—including Google and the computer security firm &lt;a class="jive-link-external-small" href="http://www.rsa.com/go/gpage.aspx?id=44&amp;amp;activity_id=12503&amp;amp;division=rsa&amp;amp;gclid=CMaTjJHmzrACFQjf4AodmkqHVg" rel="nofollow ugc noopener" target="_blank"&gt;RSA&lt;/a&gt;—have been targeted in similar ways, with less expensive malware though, for their corporate secrets. Smaller companies are also routinely compromised, experts say.&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;span style="font-family:&amp;#39;trebuchet ms&amp;#39;, geneva;font-size:12pt;"&gt;Antivirus companies have been quick to point out that Flame is no ordinary computer virus. It came from the well-resourced world of international espionage. But such cyberweapons cause collateral damage (the &lt;a class="jive-link-external-small" href="http://en.wikipedia.org/wiki/Stuxnet" rel="nofollow ugc noopener" target="_blank"&gt;Stuxnet worm&lt;/a&gt; targeted at the Iranian nuclear program actually infected an estimated 100,000 computers), and features of their designs are being adopted by criminals and less-resourced groups.&lt;/span&gt;&lt;/p&gt;&lt;p style="margin:0;margin:0 0 15px;font-size:1.3em;font-family:Helvetica, Arial, sans-serif;text-align:-webkit-auto;"&gt;&lt;a href="http://data.whicdn.com/images/12811100/screen_large.jpg"&gt;&lt;img alt="Screen_large" class="jiveImage" src="http://data.whicdn.com/images/12811100/screen_large.jpg" /&gt;&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;

&lt;div style="font-size: 90%;"&gt;Tags: rsa, antivirus, virus, spionage, malware, flame, error&lt;/div&gt;
</description></item></channel></rss>