Emeritus, Contributor
- Apr 2, 2012
- 7,197
How the hot malware burned a new hole in Redmond's backside
Microsoft has "hardened" its Windows Update system after researchers discovered the Flame virus can infect PCs by offering itself as an update masquerading as official Microsoft software.
The sophisticated worm has been hurtling through computers in the Middle East and beyond for up to two years before being unearthed by security experts late last month. Now it has emerged that the malware uses a skeleton-key-like certificate found in Microsoft's Terminal Services Licensing server to sign its malicious code and trick Windows machines into trusting and installing its executables.