This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.  > Find out more here

 

All the latest UK technology news, reviews and analysis

Microsoft updates certificate system to tackle Flame

by Shaun Nichols

04 Jun 2012

View Comments

  • Tweet this
Flame code uncovered by Kaspersky

Microsoft has updated its security certificate platform in response to the recent discovery of the Flame malware attack.

Microsoft said that it would be issuing the updates to prevent the use of unsigned security certificates which could be presented to users as authentic and issued by Microsoft. According to Microsoft, such techniques have been used by Flame's creators and could be adopted for other attacks.

"Our investigation has discovered some techniques used by this malware that could also be leveraged by less sophisticated attackers to launch more widespread attacks," Microsoft Security Response Center senior director Mike Reavey said in a blog posting.

"Therefore, to help protect both targeted customers and those that may be at risk in the future, we are sharing our discoveries and taking steps to mitigate the risk to customers."

Among the updates being issued by Microsoft are patches which will automatically block the certificates used in the Flame attack. Additionally, the company is removing the ability for the Terminal Server Licensing Service to issue certificates which allow for code to be signed.

"These actions will help ensure that any malware components that might have been produced by attackers using this method no longer have the ability to appear as if they were produced by Microsoft," Reavey explained.

Since its discovery in late May, the Flame malware has sent security vendors and researchers alike scrambling for answers and updates. With its massive payload and sophisticated attack techniques, Flame is widely believed to be an industrial espionage tool developed in a state-sponsored programme.

Though the risk of attack from the malware itself is seen as minimal for nearly all firms in Europe and North America, malware writers could mimic Flame's techniques for infecting systems and avoiding detection in future attacks.

Do you agree

blog comments powered by Disqus

Poll

Business security poll

How concerned are you by the rising tide of cyber threats?

16%

57%

11%

8%

8%

Popular Threads

Powered by Disqus
BlackBerry Q5

BlackBerry Q5 video demo

BlackBerry's latest smartphone is a mid-tier handset that will cost less than the Q10 and Z10

Updating your subscription status Loading

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

newsletter sign-up button

mcafee

7 requirements for hybrid web delivery

It's no longer one or other with web security; you can now have a virtualisation and SaaS hybrid model

navisite

BYOD: the implications for the IT team

BYOD is important for employee satisfaction, but poses challenges in terms of security, productivity loss and costs

C# Winforms Developer - SQL, .Net, Software Developer

C# Winforms Developer - SQL, .Net, Software Developer...

Senior Customer Experience Manager

Senior Customer Experience Manager (Service Delivery...

Systems Administrator - Unix, Linux, MySQL - Nottinghamshire

Systems Administrator - Nottinghamshire, Mansfield...

Oracle Database Administrator/ DBA - Oracle 10g/ 11g, PL/SQL

Oracle Database Administrator/ Oracle DBA - Northampton...

Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.

To send to more than one email address, simply separate each address with a comma.