Iran General NewsIran, other Mideast states hit by computer virus

Iran, other Mideast states hit by computer virus

-

AP: Iran and other Middle East countries have been hit with a cunning computer virus that can eavesdrop on computer users and their co-workers and filch information from nearby cellphones. The Associated Press

By AMY TEIBEL,  – 12 hours ago

LONDON (AP) — Iran and other Middle East countries have been hit with a cunning computer virus that can eavesdrop on computer users and their co-workers and filch information from nearby cellphones, cybersecurity experts said Tuesday. And suspicion immediately fell on Israel as the culprit.

The Russian Internet security firm Kaspersky Lab ZAO said the “Flame” virus is unprecedented in size and complexity, with researcher Roel Schouwenberg marveling at its versatility.

“It can be used to spy on everything that a user is doing,” he said.

Computers in Iran appear to have been particularly affected, and Kaspersky’s conclusion that the virus was crafted at the behest of a national government fueled speculation it could be part of an Israeli-backed campaign of electronic sabotage against the Jewish state’s archenemy.

The virus can activate a computer’s audio systems to listen in on Skype calls or office chatter. It can also take screenshots, log keystrokes and — in one of its more novel functions— steal data from Bluetooth-enabled cellphones.

Schouwenberg said there is evidence to suggest that the people behind Flame also helped craft Stuxnet, a virus that is believed to have attacked nuclear centrifuges in Iran in 2010. Many suspect Stuxnet was the work of Israeli intelligence.

Tehran has not said whether it lost any data to Flame, but a unit of the Iranian communications and information technology ministry said it has produced an anti-virus capable of identifying and removing Flame from its computers.

Israel’s vice premier did little to deflect suspicion about the country’s possible involvement in the cyberattack.

“Whoever sees the Iranian threat as a significant threat is likely to take various steps, including these, to hobble it,” Moshe Yaalon told Army Radio when asked about Flame. “Israel is blessed with high technology, and we boast tools that open all sorts of opportunities for us.”

Researchers not involved in Flame’s discovery were more skeptical of its sophistication than Kaspersky, with Richard Bejtlich of Virginia-based Mandiant saying the virus appeared similar to spyware used by the German government to monitor criminal suspects.

“There have been tools like this employed by high-end teams for many years,” he said.

Colorado-based Webroot said the virus wasn’t as complex or as stealthy as Stuxnet and was “a relatively easy threat to identify.”

Flame is unusually large. Malicious programs collected by the British security firm Sophos averaged about 340 kilobytes in 2010, the same year that Kaspersky believes Flame first started spreading. Flame is 20 megabytes — nearly 60 times that figure.

Alan Woodward, a professor of computing at the University of Surrey in England, said functions can be added or subtracted to the virus depending on what kind of espionage is desired, not unlike the way apps can be downloaded to a smartphone.

He was particularly struck by Flame’s ability to turn an infected computer into a kind of “industrial vacuum cleaner,” copying data from vulnerable cellphones or other Bluetooth wireless devices left near it.

“I don’t believe I’ve seen it before,” he said.

Udi Mokady, chief executive of Cyber-Ark, an Israeli developer of information security, said he believes four countries, in no particular order, have the know-how to develop so sophisticated a weapon: Israel, the U.S., China and Russia.

“It was 20 times more sophisticated than Stuxnet,” with thousands of lines of code that took a large team, ample funding and months, if not years, to develop, he said. “It’s a live program that communicates back to its master. It asks, ‘Where should I go? What should I do now?’ It’s really almost like a science fiction movie.”

It’s not clear exactly what the virus was targeting. Kaspersky said it detected the program in hundreds of computers, mainly in Iran but also in Israel, the Palestinian territories, Sudan, Syria, Lebanon, Saudi Arabia and Egypt.

The company would not give details on the victims except to say that they “range from individuals to certain state-related organizations or educational institutions.”

Schouwenberg said stolen data was being sent to some 80 different servers, something that would give the virus’ controllers time to adjust their tactics if they were discovered.

As for Flame’s purpose, “maybe it’s just espionage,” he said. “Maybe it’s also sabotage.”

Teibel reported from Jerusalem. Associated Press writers Diaa Hadid in Jerusalem and Lolita Baldor in Washington also contributed to this report.

Latest news

Iran’s Regime Sentences Singer Toomaj Salehi to Death

Amir Reisian, Toomaj Salehi’s lawyer, says the so-called “Revolutionary Court” in an "unprecedented" move has sentenced this dissident singer...

Iran Faces Severe Medicine Shortage and Lack of Government Funding

The Health and Treatment Commission of Iranian regime’s Majlis (parliament) recently released a report highlighting the dire situation of...

U.S. House of Representatives and Senate Approve Measures Targeting Iran’s Regime

In a resolute move showcasing bipartisan unity towards addressing the Iranian regime's actions, the United States House of Representatives...

Grossi: Iran Weeks Away from Having Enough Enriched Uranium for Atomic Bomb

Rafael Grossi, the Director General of the International Atomic Energy Agency (IAEA), has stated that Iran is just weeks...

In the past two years, 8 million people added to Iran’s poor population

According to information analyzed by the state-run Etemad newspaper regarding poverty rate data, a 10% increase in the poverty...

Iran: 9 Prisoners Executed in One Day

The Iranian regime executed five prisoners in Kerman prison and two prisoners in Chabahar prison on April 21. At...

Must read

The war in Lebanon: Israeli prelude, Iranian finale

RIA Novosti : Moscow, Aug 11 - Lebanon, a...

Iran’a Al Alam TV says dropped by Arab satellites

Reuters: Iran's Arabic-language television network Al Alam said on...

You might also likeRELATED
Recommended to you