'Project Sauron' malware hidden for five years
A sophisticated form of malware known as Project Sauron went undetected for five years at a string of organizations, the BBC reports quoting security researchers.
The malware may have been designed by a state-sponsored group.
It can disguise itself as benign files and does not operate in predictable ways, making it harder to detect.
Experts from Kaspersky Lab and Symantec said it allows the attacker to spy on infected computers.
In September last year, Kaspersky first detected the malware on an unspecified "government organisation" network.
Since then, the firm claims to have found evidence of Project Sauron at more than 30 organisations in Russia, Iran and Rwanda.
These were generally government, scientific, military, telecoms and financial organisations, according to Kaspersky.
Project Sauron is able to disguise itself in a wide variety of ways - as files with names similar to those published by organisations like Microsoft, for example, and does not always use the same methods for sending data back to the attacker.
"The attackers clearly understand that we as researchers are always looking for patterns," the company notes in its report. "Remove the patterns and the operation will be harder to discover."
The malware can steal files, log all keystrokes and open a "back door" allowing wide-ranging access to the compromised computer, according to Symantec.
One aspect of Project Sauron that demonstrates the malware's sophistication is its ability to steal sensitive data - such as encryption keys - from computers that are not actually connected to the internet.
This is known as "jumping the air-gap".
For this, Project Sauron relies on an infected USB drive being inserted into the target computer.
A hidden cache of files on the drive is then able to deposit malware on to that PC.
It is not yet clear how the attackers would have used this method to control an air-gapped computer, but they believe it might have been via a "zero day" - previously undetected - exploit that they have not yet found.
"We believe it was probably deployed in rare, hard-to-catch instances," notes the Kaspersky report.
Project Sauron is characteristic of state-sponsored style malware, according to cybersecurity expert Graham Cluley.
"These are very stealthy, insidious attacks that can lurk in the background for years gathering information," he told the BBC.
"We have seen the steady progression and evolution of these sorts of attacks. As governments try to protect themselves and get clued up, it is essentially an arms race."
Videos
Interview with Francis Malige, EBRD Managing Director
Armenians Commemorating 106th Anniversary of Genocide
Biden Under Pressure to Recognize Armenian Genocide - KTLA 5 News
Governance and Oversight Capacities Account for Our Bank's Robust Management System - Philip Lynch, Independent Board Member at Ameriabank
'Mr. President, It Is Now in Your Power to Right Decades of Denial' - US Congressman Adam Schiff Urges Joe Biden to Recognize Armenian Genocide
Armenians of Nagorno-Karabakh in Despair After Trauma of Military Defeat - France 24
Interview with Kakhaber Kiknavelidze, an Independent Member of Ameriabank Board of Directors
Only Terrorists Keep Hostages, Putting Forward Preconditions for Their Release - Edmon Marukyan
Rep Adam Schiff Says Congress Should Recognize Artsakh
UN's Guterres Issues Global Appeal to Make 2021 'Year of Healing'
NASA's Mars 2020 Perseverance Rover Landing Animations
Azerbaijan Uses Prohibited Phosphorus Chemical Munitions - Defense Army Video
Artsakh Defense Army Units Neutralizing Azerbaijani Arms Supplies
Artsakh Defense Army Units Neutralizing Azerbaijani Drone
Nagorno-Karabakh's Status Has Been At the Heart of Our Approach - Zohrab Mnatsakanyan
Artsakh Defense Army Releases Video Featuring Damaged Azerbaijani Military Equipment
Artsakh Defense Army Units Inflicting Manpower Losses on Azerbaijan
Gas Pipeline Damaged in Azerbaijani Fire Targeting Nagorno-Karabakh's Capital
President Armen Sarkissian Meets Emmanuel Macron at Élysée Palace
Artsakh Defense Army Neutralizes Azerbaijani Military Hardware
Artsakh Defense Army Units Neutralizing Azerbaijani Military Infrastructures
President Armen Sarkissian Meets with NATO Secretary-General in Brussels
Buildings and Homes Lying in Ruins in Nagorno-Karabakh's Capital After Azerbaijani Shelling
Artsakh Defense Army's Precision Fire Gives Deadly Blow to Enemy
Artsakh Defense Army Units Destroying Azerbaijani Tank
Zohrab Mnatsakanyan: Ceasefire Does not Mandate Azerbaijan to Kill Civilians and Hit Civilian Settlements
Armenians Protest Outside Turkrish Embassy in Los Angeles
Losses in Azerbaijan's Military Featured in Defense Army Footage
Artsakh Defense Army Neutralizing Adversary's Transport Column
Turkey openly backs Azerbaijan 'far more aggressively than in the past' - ABC News on Syrian mercenaries fighting in Karabakh
Iconic Armenian Church Hit in Azerbaijani Attacks in Nagorno-Karabakh City (photos)
Artsakh Defense Army Continues High-Precision Strikes
War Situation in Karabakh on European Parliament's Agenda
Call for Urgent Action: Armenian Journalist Brings Intn'l Colleagues' Attention to Situation iin Artsakh After Azerbaijani Attacks
Turkey's Support to Syrian Mercenaries Fighting Against Artsakh: Facts About Azerbaijani Aggression
Nagorno-Karabakh's Capital Under Azerbaijani Strikes
Armenian Armed Forces Neutralize Azerbaijani Defense Positions
ArmenianTroops Destroy Azerbaijani Armored Fighting Vehicle on Frontline
There is a solid evidence that Azerbaijan has launched a thoroughly planned attack on the NKR
EU calls for Immediate End to Hostilities over Nagorno-Karabakh
- 15:20 • 24.05.21 Interview with Francis Malige, EBRD Managing Director
- 11:39 • 24.04.21 Armenians Commemorating 106th Anniversary of Genocide
- 09:40 • 23.04.21 Biden Under Pressure to Recognize Armenian Genocide - KTLA 5 News
- 15:34 • 22.04.21 Governance and Oversight Capacities Account for Our Bank's Robust Management System - Philip Lynch, Independent Board Member at Ameriabank
- 14:09 • 21.04.21 'Mr. President, It Is Now in Your Power to Right Decades of Denial' - US Congressman Adam Schiff Urges Joe Biden to Recognize Armenian Genocide
- 12:37 • 03.04.21 Armenians of Nagorno-Karabakh in Despair After Trauma of Military Defeat - France 24
- 17:33 • 11.03.21 Interview with Kakhaber Kiknavelidze, an Independent Member of Ameriabank Board of Directors
- 17:57 • 26.01.21 Only Terrorists Keep Hostages, Putting Forward Preconditions for Their Release - Edmon Marukyan
- 13:33 • 22.01.21 Rep Adam Schiff Says Congress Should Recognize Artsakh
- 09:42 • 29.12.20 UN's Guterres Issues Global Appeal to Make 2021 'Year of Healing'
- 18:41 • 24.12.20 NASA's Mars 2020 Perseverance Rover Landing Animations
- 13:33 • 31.10.20 Azerbaijan Uses Prohibited Phosphorus Chemical Munitions - Defense Army Video
- 16:37 • 30.10.20 Artsakh Defense Army Units Neutralizing Azerbaijani Arms Supplies
- 11:25 • 28.10.20 Artsakh Defense Army Units Neutralizing Azerbaijani Drone
- 13:45 • 24.10.20 Nagorno-Karabakh's Status Has Been At the Heart of Our Approach - Zohrab Mnatsakanyan
- 11:51 • 24.10.20 Artsakh Defense Army Releases Video Featuring Damaged Azerbaijani Military Equipment
- 11:40 • 24.10.20 Artsakh Defense Army Units Inflicting Manpower Losses on Azerbaijan
- 10:39 • 24.10.20 Gas Pipeline Damaged in Azerbaijani Fire Targeting Nagorno-Karabakh's Capital
- 12:41 • 23.10.20 President Armen Sarkissian Meets Emmanuel Macron at Élysée Palace
- 12:16 • 23.10.20 Artsakh Defense Army Neutralizes Azerbaijani Military Hardware
- 12:02 • 22.10.20 Artsakh Defense Army Units Neutralizing Azerbaijani Military Infrastructures
- 10:35 • 22.10.20 President Armen Sarkissian Meets with NATO Secretary-General in Brussels
- 10:51 • 17.10.20 Buildings and Homes Lying in Ruins in Nagorno-Karabakh's Capital After Azerbaijani Shelling
- 15:09 • 15.10.20 Artsakh Defense Army's Precision Fire Gives Deadly Blow to Enemy
- 13:13 • 13.10.20 Artsakh Defense Army Units Destroying Azerbaijani Tank
- 12:56 • 12.10.20 Zohrab Mnatsakanyan: Ceasefire Does not Mandate Azerbaijan to Kill Civilians and Hit Civilian Settlements
- 12:23 • 12.10.20 Armenians Protest Outside Turkrish Embassy in Los Angeles
- 17:23 • 09.10.20 Losses in Azerbaijan's Military Featured in Defense Army Footage
- 15:53 • 09.10.20 Artsakh Defense Army Neutralizing Adversary's Transport Column
- 14:11 • 09.10.20 Turkey openly backs Azerbaijan 'far more aggressively than in the past' - ABC News on Syrian mercenaries fighting in Karabakh
- 15:52 • 08.10.20 Iconic Armenian Church Hit in Azerbaijani Attacks in Nagorno-Karabakh City (photos)
- 10:57 • 08.10.20 Artsakh Defense Army Continues High-Precision Strikes
- 14:24 • 07.10.20 War Situation in Karabakh on European Parliament's Agenda
- 19:31 • 05.10.20 Call for Urgent Action: Armenian Journalist Brings Intn'l Colleagues' Attention to Situation iin Artsakh After Azerbaijani Attacks
- 16:17 • 04.10.20 Turkey's Support to Syrian Mercenaries Fighting Against Artsakh: Facts About Azerbaijani Aggression
- 12:39 • 04.10.20 Nagorno-Karabakh's Capital Under Azerbaijani Strikes
- 13:49 • 03.10.20 Armenian Armed Forces Neutralize Azerbaijani Defense Positions
- 10:12 • 29.09.20 ArmenianTroops Destroy Azerbaijani Armored Fighting Vehicle on Frontline
- 23:42 • 28.09.20 There is a solid evidence that Azerbaijan has launched a thoroughly planned attack on the NKR
- 18:45 • 28.09.20 EU calls for Immediate End to Hostilities over Nagorno-Karabakh
Most popular articles Today Yesterday For a week
-
Science/tech 16:55 • 18/11 The Results of the 19th Annual International Microelectronics Olympiad Summarized in Yerevan This year's Olympiad was conducted in two stages, with 332 participants from 16 countries, including the UAE, USA, Brazil, Israel, Italy, Lebanon, Armenia, Jordan, Sri Lanka, Chile, Peru, Portugal, Russia, Serbia, Vietnam, and France.
-
Event 11:07 • 19/11 “New Career Opportunities and Perspectives”: a career fair will be organized for people of Artsakh The main goal of the event is to support the socio-economic integration of Artsakh residents displaced by the conflict into Armenian society. It aims to enhance their competitiveness in the labor market and address employment challenges.
Economy
-
16:51 • 11.11.24 New features for Armeconombank’s Premium cardholders
-
12:16 • 08.11.24 Ucom and Sunchild NGO install another solar plant in Areni
Event
-
14:40 • 19.11.24 Ucom’s 5G network launched in 11 new cities
Science/tech
-
14:18 • 08.05.24 AstraZeneca withdrawing Covid vaccine worldwide