TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Flame: Massive cyber-attack discovered, researchers say

158 点作者 Juha将近 13 年前

15 条评论

swatkat将近 13 年前
Kaspersky blog has more info: <a href="http://www.securelist.com/en/blog/208193522/The_Flame_Questions_and_Answers" rel="nofollow">http://www.securelist.com/en/blog/208193522/The_Flame_Questi...</a>
评论 #4033892 未加载
评论 #4033748 未加载
评论 #4033688 未加载
haberman将近 13 年前
<i>The reason why Flame is [20MB] is because it includes many different libraries, such as for compression (zlib, libbz2, ppmd) and database manipulation (sqlite3), together with a LUA virtual machine.</i><p>SQLite is 500kB, Lua is 150kb, zlib is 80kB, libbz2 is 60kB. Together this comes to less than 1MB, not 20MB. You would need an awful lot of libraries like this to get anywhere close to 20MB.
评论 #4034831 未加载
评论 #4035840 未加载
thursley将近 13 年前
More technical details (pdf) on: <a href="http://www.crysys.hu/skywiper/skywiper.pdf" rel="nofollow">http://www.crysys.hu/skywiper/skywiper.pdf</a><p>Although the naming differs it has been noted on several blogs that it is the same malware.
评论 #4033804 未加载
评论 #4034459 未加载
radagaisus将近 13 年前
&#62;&#62; Our estimation of development ‘cost’ in LUA is over 3000 lines of code, which for an average developer should take about a month to create and debug.<p>They should do project estimation instead of Security Analysis.
munin将近 13 年前
"It’s easier to hide a small file than a larger module." my mind is blown. small files are not like small rocks. it's a computer!
评论 #4034622 未加载
count将近 13 年前
Didn't Sub7 do all of that back in the 90s?
评论 #4033658 未加载
评论 #4034091 未加载
tomrod将近 13 年前
Man, I love hearing the nitty-gritty security details. More like this, please!
评论 #4033684 未加载
vecinu将近 13 年前
I assume we are going to see a complicated and interesting dissection a la Stuxnet? The Stuxnet TED talk [0] was really interesting, I ended up giving a talk to my department at work afterwards.<p>[0] - <a href="http://www.youtube.com/watch?v=CS01Hmjv1pQ" rel="nofollow">http://www.youtube.com/watch?v=CS01Hmjv1pQ</a>
评论 #4033890 未加载
mikegirouard将近 13 年前
&#62; "Currently there are three known classes of players who develop malware and spyware: hacktivists, cybercriminals and nation states."<p>Surely that can't be all-inclusive… is it?
评论 #4034739 未加载
tlack将近 13 年前
I'd love to know more about the command and control servers. If any of them involve paid hosting that might help to out the guilty party.
评论 #4033732 未加载
评论 #4034094 未加载
评论 #4036067 未加载
LiquidSummer将近 13 年前
I'm fed up by these technically lacking stories that don't give you the details but tell you that its "complex". While I realise that the BBC website is aimed towards the general public I think that it would be beneficial to include at least some technical details.
评论 #4033716 未加载
评论 #4033725 未加载
NelsonMinar将近 13 年前
The Wired ThreatLevel article is a good alternative summary to the BBC article. <a href="http://www.wired.com/threatlevel/2012/05/flame/" rel="nofollow">http://www.wired.com/threatlevel/2012/05/flame/</a>
DrummerHead将近 13 年前
Those paragraphs are so short that it makes me angry.
gcb将近 13 年前
Their conclusion that because it doesn't steal money it can't belong to cybercriminals is bogus and show how little they understand of the industry.<p>I've heard of researchers from one company dumpster diving the competition. A worm (as amateur as a 20mb one ) could easily be the work of those kind. But i think it gets less press than "evil country" "omg world cyber war" ...not that it may not be happening anyway.
fishcakes将近 13 年前
We should just convert the comments to a poll. Who is behind this?
评论 #4034145 未加载
评论 #4033924 未加载
评论 #4035237 未加载
评论 #4033926 未加载
评论 #4033927 未加载
评论 #4034131 未加载
评论 #4033923 未加载
评论 #4035513 未加载