New Cyberweapon 'Flame': CIA and Mossad Coproduction
'Flame', the most sophisticated piece of malware to date, was discovered
by the International Telecommunication Union (ITU) and Kaspersky Lab.
This code is more complex and has more features than any known cyberweapon
and is many times larger than Stuxnet which was a compact 500K. This monster
is 20 Megabyte and has downloadable modules that can be turned on and off.
The most remarkable thing is that it remained undiscovered for two years,
which is an eternity in the antivirus world. Flame is cyber espionage code
that steals data such as computer display contents, stored files, victim
contact info and audio conversations. But wait, this Swiss army knife of
malware can also sniff network traffic, take screenshots and intercept
a keyboard. 'Flame' turns on bluetooth and tries to connect with and
steal data from bluetooth devices close to it. It redefines the concept
of cyberwar and cyber espionage, and Stuxnet, Duqu and Flame are now
three cases where the antivirus industry has failed.
This malware is different from Stuxnet and its offspring Duqu, but it
matches up with the Middle East attack area and the software
vulnerabilities it uses. 'Flame' was named after one of its modules,
and is still stealing data as you read this. Removal tools are slowly
coming available, and Iran seems to have one by now. Wired had by far
the best write-up of this, and shows a map of the area where 'Flame'
has infected computers.
Most of the articles cautiously claim this is nation-sponsored but I
will go one step further. Stuxnet and Duqu are obviously U.S. and
Israel driven, probably DOD and NSA on the U.S side. 'Flame' though,
has CIA and Mossad written all over it. Probably a project that ran
in tandem with Stuxnet and Duqu, as they had access to the same
vulnerabilities, but written and executed by the real spy agencies.
It will probably take decades before the truth comes out, but this
is my best guess. Here is the wired article:
And this is an interview with Kevin Mitnick on CNN Monday May 29th:

Quotes of the Week
"We have learned in recent years to translate almost all of political
life in terms of conspiracy. And the spy novel, as never before, really,
has come into its own." - John Le Carre
"It is only the enlightened ruler and the wise general who will use the
highest intelligence of the army for the purposes of spying, and thereby
they achieve great results." - Sun Tzu, The Art of War
Ten Years Of Windows Malware
Ed Bott wrote a truly excellent article over at ZDNet where he describes
the history of Windows Malware, which shows on the very first slide that
most malware is installed via social engineering or by using exploits that
target vulnerabilities which have already been patched. Check it out:

Safety Tips For Mobile Devices
Aware of the site? They have a good page you should
send to all employees about mobile devices: "Today's mobile devices are
as powerful and connected as any PC or laptop. Take the same precautions
on your mobile device as you do on your computer with regard to messaging
and online safety. The first step is STOP. THINK. CONNECT. Here are all
the tips. Very useful:

VIDEO The Top 5 Online Security Traps And How To Avoid Them
GFI is one of the few antivirus vendors that understands the importance
of prevention and end-user training. They produced this useful video that
in two minutes illustrates the top 5 online security traps. Worth watching
and sending to your employees. Here is the video:

Banks Warned Of Sophisticated New Online Scam
Antone Gonsalves at NetworkWorld got this story first. Here is how the
scam works, so do not fall for it. You can recognize it by the grammar
and spelling mistakes.
“The cyber-criminals are taking advantage of the text messaging German
banks use to authenticate an online transaction. When a person transfers
funds, the bank first sends a transaction authorization number (TAN) to
the customer’s mobile phone. That number has to be typed into a web form
before the transfer is completed. U.S. banks use similar authentication
for some transactions.
When a victim logs into his banks’ site, the malware displays a screen
saying the bank is performing a security check and asks that at a TAN
be punched into a form on the page. Behind the scene, the Trojan checks
the victim’s accounts for the one with the most money and then requests
a TAN from the bank, so the money can be transferred to the hackers’
account". Here is the full story:

