Iran admits Flame caused substantial damage

Dubbed as most destructive cyber attack on the nation

PTI | May 30, 2012



Iran has admitted that a data-mining virus dubbed 'Flame' had caused substantial damage and massive amounts of data had been lost in what may be most destructive cyber attack on the nation.

The virus also damaged centrifuges operating at its uranium enrichment facility at Nantaz as reports said that even computers of high-ranking officials had been penetrated.

Tehran's reaction came a day after Russia-based Internet security company Kaspersky Lab uncovered the virus 'Flame' which it said attacked computers in Iran and elsewhere in Middle East and may have been designed to collect and delete sensitive information.

Iran's MAHER Center, which is part of the Islamic Republic's Communication ministry, said that the virus "has caused substantial damage" and that "massive amounts of data have been lost," Ynetnews reported.

Iranian authorities admitted that the malicious software "Flame" has attacked its computer and systems and instructed to run an urgent inspection of all cyber systems in the country.

New York Times said the computers of high-ranking Iranian officials appear to have been penetrated in what it said may be the most destructive cyberattack on Iran since the notorious Stuxnet virus, an Iranian cyberdefence organisation had confirmed.

In a message posted on its Web site, Iran's Computer Emergency Response Team Coordination Center warned that the virus was dangerous.

An expert at the organisation said that it was potentially more harmful than the 2010 Stuxnet virus, which destroyed several centrifuges used for Iran's nuclear enrichment programme.

In contrast to Stuxnet, the newly identified virus is designed not to do damage but to collect information secretly from a wide variety of sources.

Flame, which experts say could be as much as five years old, was discovered by Iranian computer experts.

Kaspersky Lab, a Russian producer of antivirus software, said in a statement that "the complexity and functionality of the newly discovered malicious program exceed those of all other cyber menaces known to date."

The virus bears special encryption hallmarks that an Iranian cyberdefence official said have strong similarities to previous Israeli malware.

"Its encryption has a special pattern which you only see coming from Israel," said Kamran Napelian, an official with Iran's Computer Emergency Response Team.

"Unfortunately, they are very powerful in the field of IT"

But Iran's telecommunications ministry also claimed that it had developed software to clean this malware.

Israel avoids comments on such matters, its involvement was hinted at by top officials there.

"Anyone who sees the Iranian threat as a significant threat ? it?s reasonable that he will take various steps, including these, to harm it," said the vice prime minister and strategic affairs minister, Moshe Yaalon, in a widely quoted interview with Israel?s Army Radio yesterday.

Napelian said that Flame seemed designed to mine data from personal computers and that it was distributed through USB sticks rather than the Internet, meaning that a USB has to be inserted manually into at least one computer in a network.

"This virus copies what you enter on your keyboard; it monitors what you see on your computer screen," Napelian said.

That includes collecting passwords, recording sounds if the computer is connected to a microphone, scanning disks for specific files and monitoring Skype.

"Those controlling the virus can direct it from a distance," he said.

"Flame is no ordinary product. This was designed to monitor selected computers."

Napelian guessed the virus had been active for the past six months and was responsible for a "massive" data loss. Iran says it has developed antivirus software to combat Flame, something that international antivirus companies have yet to do, since they have just become aware of its existence.

"One of the most alarming facts is that the Flame cyberattack campaign is currently in its active phase, and its operator is consistently surveilling infected systems, collecting information and targeting new systems to accomplish its unknown goals," Alexander Gostev, chief security expert at Kaspersky Lab, said on the company's Web site.
 

Comments

 

Other News

`Focus on infra, reforms, digital connectivity has created strong foundation for growth`

In a step towards the operationalisation of the Bharat Audyogik Vikas Yojana (BHAVYA), union minister of commerce & industry Piyush Goyal launched the BHAVYA Portal on Monday in New Delhi.   Addressing the gathering, Goyal said that the BHAVYA scheme will adopt a competit

Govt, RBI announce major reforms to attract FPI

The finance ministry on Friday announced a series of measures aimed at enhancing the ease of investment for individual Persons Resident Outside India (PROIs) and Foreign Portfolio Investors (FPIs), and to attract stable long-term foreign capital flows.   Building on the recent in

Lessons in climate adaption from world’s largest inhabited river island

Majuli Island, perched between the Brahmaputra River to the south and east, the Subansiri River to the west, and a branch of the Brahmaputra to the north, has been severely affected by recurrent flooding and intense riverbank erosion. Despite its global importance in acquiring UNESCO tentative status for

Careless whispers and the impossible trinity

Time can never mend, the careless whispers of …    As the RBI marches ahead, for the upcoming monetary policy meeting this June, whispers from the corridors echo around several policy options to defend the rupee – by deploying forex reserves, raising in

Bullet Train Project: Third mountain tunnel breakthrough achieved

A major engineering milestone has been achieved in the Mumbai–Ahmedabad Bullet Train Project with the successful breakthrough of the third mountain tunnel (MT-07) at Ambesari village in Dahanu Taluka of Palghar district, Maharashtra.   With this achievement, three mountain

Supreme Court gets five new judges

Five new judges were appointed to the Supreme Court of India on Monday. "Vide Notifications of even number dated 01.06.2026, in exercise of the powers conferred by clause (2) of Article 124 of the Constitution of India, the Hon’ble President of India is pleased to appoint (i) Shri





Archives

Current Issue

Opinion

Facebook Twitter Google Plus Linkedin Subscribe Newsletter

Twitter