Data Storage Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
News & Information for Data Storage Professionals
Brocade delivers
cloud-optimized networking solutions
to deploy, manage, and scale networks.

www.brocade.com
Thursday, May 23rd 
Panasonic Toughbook® mobile computers
Home
Data Centers
Storage Solutions
Storage Networks
Data Storage Issues
Data Security
Enterprise I.T.
DST Press Releases
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Advertisement

Data Security

Meet Flame's Malicious Little Brother, miniFlame

Meet Flame
October 15, 2012 1:34PM

Bookmark and Share
Kaspersky Labs found that miniFlame is based on the same architectural platform as Flame, and that it operates in cyber espionage as a backdoor for data theft and for access to infected systems. Six variations of miniFlame have been found so far, and its development is thought to have started as early as 2007 and continued through 2011.

Brocade delivers a comprehensive cloud-optimized networking portfolio of products and open-architecture solutions to simplify and accelerate the deployment of cloud computing and provide maximum deployment flexibility with plug-in scalability. Click here to learn more.

Here comes miniFlame. On Monday, security firm Kaspersky Labs announced that it had discovered, and dubbed with that name, a small and "highly flexible" malicious spy program for grabbing data Relevant Products/Services and controlling systems.

"Spy," in this case, doesn't mean eavesdropping on your transactions with your local bank, but actual country-to-country espionage, as miniFlame's big brother, Flame, reportedly did. Also known as SPE, miniFlame was originally identified by Kaspersky experts in July as a module within Flame.

Interoperable Tool

Last month, Kaspersky conducted a deeper analysis of Flame, after the discovery of another apparently state-sponsored malware it called Gauss. Kaspersky found that the miniFlame module was, in fact, an interoperable tool that could serve either as independent malware, or as a plug-in for either Flame or Gauss. This analysis led to the conclusion by Kaspersky that there had been co-operation, at least, between the creators of Flame and Gauss.

Kaspersky's chief security expert, Alexander Gostev, said in a statement that miniFlame is "a high precision attack tool," and that it is probably used in a "second wave of a cyberattack." According to the security firm, miniFlame was most likely deployed for extremely targeted cyber espionage, was probably used inside machines already infected by Flame or Gauss, and has probably infected 10 to 20 machines.

The most likely scenario, Gostev said, is Flame or Gauss is used "to infect as many victims as possible to collect large quantities of information." After the data has been retrieved and reviewed, he surmised, miniFlame "is installed in order to conduct more in-depth surveillance and cyber-espionage.

Kaspersky also found that miniFlame is based on the same architectural platform as Flame, and that it operates as a backdoor for data theft and for access to infected systems. Six variations of miniFlame have been found so far, and its development is thought to have started as early as 2007 and continued through 2011.

'Most Sophisticated Cyber Weapon'

In early May, the existence of the Flame virus was first revealed by security experts, which they described as one of the most complex viruses ever found. It's not clear who created it, or for what purpose, but most experts believe it was targeted specifically at computers in Iran and possibly other Middle Eastern countries. The virus' creator has been attributed, without confirmation, to either the United States or Israel, or both.

Later in May, Microsoft Relevant Products/Services announced that it was increasing security on its Windows Update software Relevant Products/Services, which apparently had been used to distribute the Flame virus. The technology giant said that whoever built Flame had designed it to look like a legitimate download to the receiving computer Relevant Products/Services or computers. Apparently, Flame intercepted requests to Microsoft Update by uninfected computers, and then delivered its virus to those computers.

Kaspersky Labs, which helped discover Flame, has written on its SecureList blog that Flame "is one of the most interesting and complex malicious programs we have ever seen."

In short, the Labs wrote, while the previous Stuxnet and Duqu were super-virus weapons that "raised the stakes," Flame is possibly "the most sophisticated cyber weapon yet released."

Tell Us What You Think
Comment:

Name:

Advertisement

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  HP PCs Aim for Flexibility, Mobility
  Twitter Hoping To Halt Hack Attacks
  Nvidia GPU Boosts Citrix XenDesktop
  Security Alert: New Trojan Attacking
  Blue Coat Beefs Up Big Data Security

 Technology Marketplace

BYOD & MDM
Forrester Research Inc., Report: BYOD from AT&T. Make everyone more efficient.
 
Cloud & Virtualization
Brocade technologies help enable the full benefits of virtualization.
Riverbed Stingray Traffic Manager on Amazon Web Services
 
Contact Centers
Unlock the potential in your people with Microsoft Dynamics
Unlock the potential in your people with Microsoft Dynamics
 
Customer Service
Unlock the potential in your people with Microsoft Dynamics
Unlock the potential in your people with Microsoft Dynamics
 
Data Security
Simpana® 10 software: an exponential leap forward
 
Data Storage
Brocade makes it easier to deploy, manage, and scale networks.
 
Enterprise Software
Simpana® 10 software: an exponential leap forward
 
Hardware
Rugged and reliable Panasonic Toughbook® mobile computers.
 
Laptops & Tablets
Rugged and reliable Panasonic Toughbook® mobile computers.
 
Mobile Gadgets
Rugged and reliable Panasonic Toughbook® mobile computers.
 
Network Security
Brocade makes it easier to deploy, manage, and scale networks.
 
Navigation
Data Storage Today
Home/Top News | Data Centers | Storage Solutions | Storage Networks | Data Storage Issues | Data Security | Enterprise I.T.
DST Press Releases
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2013 Data Storage Today. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.