Flame virus spread through rogue Microsoft security certificates
Microsoft revealed yesterday that the infamous Flame virus gained a foothold by spoofing one of its own security certificates.
Specifically, the virus tapped into rogue certificates for Microsoft's Terminal Server that appeared to be signed by the company and were therefore seen as legitimate. In response, Microsoft has taken several measures, including the release of a Windows patch to fix the security hole in Terminal Server, a feature that allows for remote desktop connections. The company detailed the discovery in a blog posted yesterday.
We have discovered through our analysis that some components of the malware have been signed … Read more