Comments on: Interconnection of Gauss with Stuxnet, Duqu & Flame http://www.welivesecurity.com/2012/08/15/interconnection-of-gauss-with-stuxnet-duqu-flame/ News, Views, and Insight from the ESET Security Community Mon, 03 Feb 2014 08:49:00 +0000 hourly 1 http://wordpress.org/?v=3.7 By: Sidd http://www.welivesecurity.com/2012/08/15/interconnection-of-gauss-with-stuxnet-duqu-flame/#comment-1059 Thu, 16 Aug 2012 18:17:06 +0000 http://blog.eset.com/?p=14775#comment-1059 Hi. Any headway in deciphering the payload?

]]>
By: Richard Steven Hack http://www.welivesecurity.com/2012/08/15/interconnection-of-gauss-with-stuxnet-duqu-flame/#comment-1058 Wed, 15 Aug 2012 20:30:11 +0000 http://blog.eset.com/?p=14775#comment-1058 If Gauss is being used to track Hizballah banking in Lebanon, as has been suggested, then it almost certainly originates from the same sources (if not the same teams) as the others, i.e., Israel and the US.

I’d like to see some analysis on exactly where this malware has been detected and what it explicitly looks for, i.e., is there any indication that it looks for specific types or sources or destinations for banking transactions as opposed to wholesale scooping up of such info.

]]>