Flame

  • First known sample

    2007
  • Discovery

    2012
  • Number of targets

    1000-3000
  • Current status

    Inactive since 2013
  • Type

    Complex cyberattack platform
  • Targeted platforms

    Windows
  • TOP targeted countries

    Egypt , Europe , Iran , Israel , Lebanon , Palestine , Saudi Arabia , Sudan , Syria , Ukraine
  • Connected attacks

  • The way of propagation

    LAN spreading , USB cables
  • Purpose/Functions

    Cyberespionage
  • Special features
    A complex attack toolkit with worm-like features
  • Targets

    Academia/Research , Government entities , Specific individuals
  • Artefacts/Attribution
    ~DF Team, related with Stuxnet/Duqu developers
  • Description

    One of the most complex and sophisticated cyber-espionage toolkits ever discovered that attacked organizations across the Middle East from 2007 to 2013. It acted as a backdoor, a Trojan, and a worm with up to 20 different plug-ins. Most likely nation state-sponsored, the cyber-attack platform did not target any specific industry.

    Additional information