"Flame" can sabotage computers, attack Iran - expert

Advertisement
By Reuters | Updated: 22 June 2012 12:29 IST
The powerful Flame computer virus is not only capable of espionage but it can also sabotage computer systems and likely was used to attack Iran in April, according to a leading security company, Symantec Corp.

Iran had previously blamed Flame for causing data loss on computers in the country's main oil export terminal and Oil Ministry. But prior to Symantec's discovery, cyber experts had only unearthed evidence that proved Flame could spy on conversations on the computers it infects and steal data.

Symantec researcher Vikram Thakur said on Thursday that the company has now identified a component of Flame that allows operators to delete files from computers, which means it can cause critical programs to fail or completely disable operating systems.

"These guys have the capability to delete everything on the computer," Thakur said. "This is not something that is theoretical. It is absolutely there."

Flame was deployed at least five years ago and is the most sophisticated cyber spying program ever discovered. Researchers have been racing to better understand its capabilities ever since Moscow-based Kaspersky Lab uncovered Flame last month after the security firm was asked by a United Nations agency to look for a virus that Iran said had sabotaged its computers, deleting valuable data.

Last week, researchers at Kaspersky Lab linked some of the software code in Flame to the Stuxnet cyber weapon, which was widely believed to have been used by the United States and Israel to attack Iran's nuclear program. Symantec later also said Stuxnet and Flame shared some code.

Current and former U.S. and Western national security officials told Reuters this week that the United States played a role in creating Flame. The Washington Post reported that U.S. and Israel jointly developed Flame and used it to collect intelligence to help slow Iran's nuclear program.

Iran complained about the threat of cyber attacks again on Thursday, saying it had detected plans by the United States, Israel and Britain to launch a "massive" strike after the breakdown of talks over Tehran's nuclear activities. It was not clear if the cyber attack referred to Flame, or a new virus.

Symantec declined to comment on who the firm believes is behind Flame.

INFRASTRUCTURE AT RISK

If Symantec's conclusions are validated, that means Flame could be used as a weapon to attack computers that run critical infrastructure systems, including dams, chemical plants and manufacturing facilities, security specialists said.

Boldizs~CHECK~r Bencsath, an expert on cyber warfare with Hungary's Laboratory of Cryptography and System Security, said there was at least a 70 percent chance that Flame was used to attack Iran in April.

"Of course it can be used for sabotage," said Bencsath, who began investigating Flame several weeks before it was first reported to the public. "It may have been used to attack critical infrastructure and it may be used in the future."

Sean McGurk, a former Department of Homeland Security official who helped direct the U.S. effort to protect critical infrastructure from cyber attacks, said that Flame was not the first piece of malicious software designed to sabotage systems by deleting data.

What makes it unique, he said, is that the data-wiping module works alongside a suite of other programs including the espionage tools that have previously been identified.

"It could render computing devices useless," said McGurk, who is now chief executive of a consulting firm known as NExt Generation Micro LLC.

That presents a threat, he said, because computers are used in all sorts of industrial control systems, affecting everything from critical processes at manufacturing plants to the pressure inside water networks. "Cyber elements can have catastrophic impacts," he said.

Neil Fisher, vice president for global security solutions at Unisys, said Symantec's findings - if verified - mean that Flame could be "highly dangerous."

Copyright Thomson Reuters 2012

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Flame computer virus, Iran
Advertisement
Popular Mobile Brands
  1. Lava Agni 4 Price Range, Features Leaked; Will Launch in These Colourways
  2. Motorola Edge 70 Launched With Snapdragon 7 Gen 4 SoC, Slim 5.99mm Profile
  3. Moto G57 Power, Moto G57 Launched With Snapdragon 6s Gen 4 Chipset
  4. Samsung Galaxy S26 Ultra Spotted in Leaked Renders With Rounder Corners
  5. Moto G67 Power 5G Launched in India With 7,000mAh Battery: See Price
  6. Moto G Play (2026), Moto G (2026) With Dimensity 6300 SoC Launched
  7. Mirai Hindi OTT Release Date: When and Where to Teja Sajja's Superhero Drama Online
  8. Realme UI 7.0 Launched With Light Glass Design, AI Features
  1. WhatsApp Working on 'Strict Account Settings' Feature to Protect Users From Cyberattacks: Report
  2. Samsung Galaxy XR Headset Will Reportedly Launch in Additional Markets in 2026
  3. Moto G57 Power With 7,000mAh Battery Launched Alongside Moto G57: Price, Specifications
  4. Steam Deck Gets a Display-Off Low-Power Mode for Downloads Three Years After Launch
  5. Snapdragon 8 Elite Gen 6 Leak Hints at Two Variants Including 'Pro' Model
  6. Realme Will Try to Absorb Increased Cost of Components Ahead of Upcoming Product Launches, Executive Says
  7. Motorola Edge 70 Launched With Snapdragon 7 Gen 4 Chipset, Slim 5.99mm Profile: Price, Specifications
  8. Researchers Unveil How Atomic Entanglement Enhances Light Bursts
  9. Lava Agni 4 Confirmed to Launch in Two Colourways; Tipster Leaks Price Range, Key Features
  10. Google Proposes Play Store Reforms in Settlement With Fortnite Maker Epic Games
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.