Sophisticated REGIN Spying Malware Instigated By U.S.?
Christl Leong | | Nov 24, 2014 12:51 AM EST |
(Photo : Reuters) DDoS remains a favorite attack tool.
Cyber-security firm Symantec Corp. has discovered a sophisticated malware called "Regin" that acts as a stealth data collection and surveillance tool, likely to have been developed by a technologically-advanced "nation state."
The report, published on Sunday, comes from the same Symantec team that aided the discovery of the computer worm Stuxnet in 2010. Dubbed by Wired.com as the world's first digital weapon, Stuxnet is believed to have been created by the United States in collaboration with Israel aimed at sabotaging Iran's nuclear program.
Like Us on Facebook
Symantec analysts have declined to speculate on the malware's origins, only saying that the best clues lie on the locations the infections have cropped up and where they have not.
Over 50 percent of the infections - which breached government and business organizations, researchers, and private individuals - were detected in Russia and Saudi Arabia. The rest was spread out across Mexico, Ireland, Afghanistan, Austria, Belgium, India, Iran and Pakistan.
No detections have so far been detected in the U.S.
Regin is a highly complex malware that demonstrates a rare level of technical competence with its broad range of capabilities that grants its controller with a "powerful framework for mass surveillance," according to the report.
Symantec researcher Liam O'Murchu suggested the technology was from a highly-advanced government, noting Regin's extensive spying initiatives that date back to 2008, possibly even as early as 2006.
Earliest Regin spying operations were detected in 2008. The activity seemed to have stopped in 2011 but resumed two years after in 2013, the report detailed.
Widespread speculation points Regin's origins to the U.S. National Security Agency or the Central Intelligence Agency, possibly in collaboration with Israel, given the list of infected countries. However, observers are also quick to point out China as a viable candidate.
The malware appears to target Microsoft Windows systems. It is carried out in five stages, with only the first one being detectable. Subsequent stages follow, which are opened and executed with sophisticated decryption, much like Stuxnet.
Almost half of the infections were found at Internet Service Providers, particularly their customers, including those of telecommunication, hospitality, energy, airline and research companies.
An isolated incident coursing the malware through Yahoo Instant Messenger were also found. Symantec posits the victims had been tricked with phishing methods.
O'Murchu claims the pieces of Regin are still undiscovered and circulating. He hopes its recent discovery and publication of its findings would drive further research on the malware.
TagsRegin, spyware, cyber spying, Malware, NSA, CIA, Stuxnet, U.S., Cyber Security
©2015 Chinatopix All rights reserved. Do not reproduce without permission
EDITOR'S PICKS
-
Did the Trump administration just announce plans for a trade war with ‘hostile’ China and Russia?
-
US Senate passes Taiwan travel bill slammed by China
-
As Yan Sihong’s family grieves, here are other Chinese students who went missing abroad. Some have never been found
-
Beijing blasts Western critics who ‘smear China’ with the term sharp power
-
China Envoy Seeks to Defuse Tensions With U.S. as a Trade War Brews
-
Singapore's Deputy PM Provides Bitcoin Vote of Confidence Amid China's Blanket Bans
-
China warns investors over risks in overseas virtual currency trading
-
Chinese government most trustworthy: survey
-
Kashima Antlers On Course For Back-To-Back Titles
MOST POPULAR
LATEST NEWS
Zhou Yongkang: China's Former Security Chief Sentenced to Life in Prison
China's former Chief of the Ministry of Public Security, Zhou Yongkang, has been given a life sentence after he was found guilty of abusing his office, bribery and deliberately ... Full Article
TRENDING STORY
-
China Pork Prices Expected to Stabilize As The Supplies Recover
-
Elephone P9000 Smartphone is now on Sale on Amazon India
-
There's a Big Chance Cliffhangers Won't Still Be Resolved When Grey's Anatomy Season 13 Returns
-
Supreme Court Ruled on Samsung vs Apple Dispute for Patent Infringement
-
Microsoft Surface Pro 5 Rumors and Release Date: What is the Latest?