Sunday, March 16, 2014

Cyberespionage gets interesting - Agent.btz worm may have some cousins circulating the Internet.



I am confident that cyber espionage is going to be one area that is going  to get more intersting and SCARY.


According to the Article:

Agent.btz may have some cousins circulating the Internet, namely the recently-revealed Turla malware - also known as Snake - as well as the infamous Flame, Gauss and Red October malware.

The Agent.btz worm has a long history in cyberattacks. In 2008, it was at the center of an incident eventually dubbed "the most significant breach of U.S. military computers ever" by former Deputy Defense Secretary William J. Lynn III

Turla has also been linked to attacks in the United States, as well as attacks on other countries such as the Ukraine.

The Red October developers must have known about Agent.btz's functionality, as their USB stealer module searches for the worm's data containers. Those containers hold information about infected systems and activity logs.

Both the notorious Flame and Gauss malware use similar naming conventions as Agent.btz, such as '*.ocx' files and 'thumb*.db'.



The following link has more information:


No comments:

Post a Comment