Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

alp227

(32,037 posts)
Thu May 31, 2012, 01:03 AM May 2012

Researchers Find Clues in Malware

Source: NYT

Security experts have only begun examining the thousands of lines of code that make up Flame, an extensive, data-mining computer virus that has been designed to steal information from computers across the Middle East, but already digital clues point to its creators and capabilities.

Researchers at Kaspersky Lab, which first reported the virus Monday, believe Flame was written by a different group of programmers from those who had created other malware directed at computers in the Middle East, particularly those in Iran. But Flame appears to be part of the state-sponsored campaign that spied on and eventually set back Iran’s nuclear program in 2010, when a digital attack destroyed roughly a fifth of Iran’s nuclear centrifuges.

“We believe Flame was written by a different team of programmers but commissioned by the same larger entity,” Roel Schouwenberg, a security researcher at Kaspersky Labs, said in an interview Wednesday. But he would not say which governments he was speaking of.

Flame, these researchers say, shares several notable features with two other major programs that targeted Iran in recent years. The first virus, Duqu, was a reconnaissance tool that researchers say was used to copy blueprints of Iran’s nuclear program. The second, Stuxnet, was designed to attack industrial control systems and specifically calibrated to spin Iranian centrifuges out of control.

Read more: http://www.nytimes.com/2012/05/31/technology/researchers-link-flame-virus-to-stuxnet-and-duqu.html

7 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Researchers Find Clues in Malware (Original Post) alp227 May 2012 OP
"...digital evidence that point to a joint American-Israeli effort ..." progressoid May 2012 #1
According to the article drm604 May 2012 #2
The program doesn't stop working on Saturday, so it can't be Israeli. n/t Ian David May 2012 #3
OMG, you can be such a dick. But funny. nt DCKit May 2012 #4
Not the first time I've been told that. n/t Ian David May 2012 #5
Actually, drm604 May 2012 #6
Oh, shit. Sounds like they're busted. n/t Ian David May 2012 #7

drm604

(16,230 posts)
2. According to the article
Thu May 31, 2012, 07:31 AM
May 2012

it contained numerous references to American movie characters. That seems kind of stupid. If I was involved in something like this, I'd use some sort of random character string generator to generate the names of variables, etc. in order to avoid cultural imprints. This almost makes me wonder if someone wasn't trying to make it look like Americans were involved.

That said, it's not hard to believe that the US could have been involved.

drm604

(16,230 posts)
6. Actually,
Thu May 31, 2012, 10:32 AM
May 2012

the article states that researchers have determined that the programmers were not active between sundown on Fridays and sundown on Saturdays.

Latest Discussions»Latest Breaking News»Researchers Find Clues in...