Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Snake virus hits users outside Ukraine

by The Gurus
March 11, 2014
in Editor's News
Share on FacebookShare on Twitter

A widely-reported virus that has infected users in the Ukraine has been detected as widely as the UK and USA.
 
Called the “Snake” or “Uroboros” virus, it has been compared to the Stuxnet worm and the finger of blame has been pointed at Russia. According to io9.com, the virus works by giving the attacker full remote access to the compromised system and it has the ability to stay inactive for a number of days.
 
According to Jaime Blasco, director of AlienVault labs, the virus, also known as Turla, is related to another piece of malware called Agent.BTZ that was found in an USB stick in 2008 in a parking lot of a government building in the United States.
 
Analysis of the malware by BAE Systems Applied Intelligence has found that its developers operate in the same timezone as Moscow and some Russian text is embedded into the code. BAE said it identified 14 cases of Snake in Ukraine since the start of 2014, and in all there have been 32 reported cases in Ukraine since 2010, out of 56 worldwide.
 
Analysis of the malware development by BAE revealed that the malware has actually been in development since at least 2005 and the complexity, range of variants and techniques used by the malware suggests that Snake’s authors and operators are committed and well-funded professionals.
 
Tom Cross, director of research at Lancope, said that technically speaking, this is a rootkit as it is designed to enable attackers to hide on a computer network and exfiltrate data covertly. “It is not surprising to see state sponsored malware like Snake appearing on networks in Ukraine in the midst of the Crimean crisis,” he said.
 
“Malware activity is an integral part of international conflict today. Usually, malware is used by each side of a conflict to spy on the other side. Sometimes, such as in the case of Stuxnet, malware can also be used to disable critical systems and infrastructure. I’m not aware of any reports of Uroburos being used to disable critical infrastructure, but if a violent conflict breaks out in Ukraine it would not be surprising to see cyber attacks used in that capacity.”
 
Blasco said that there was no clear infection vector yet, but he suspected that a combination of Spear phishing campaigns, waterhole and strategic web compromises and even physical access to drop payloads was used.
 
Asked if he felt that the sudden prevalence of the Snake virus was tied to the current situation in Russia/Ukraine, Blasco pointed out the timing and the fact that it had been detected in Lithuania, UK, Belgium and Georgia too. “That being said” Blasco continued, “the current geopolitical situations of those countries makes them a good target to acquire geopolitical intelligence f
rom several countries (not only Russia). As we know there are several clues that points to the Russian origin of Snake.”
 
BAE called this a game changer. Martin Sutherland, managing director of BAE Systems Applied Intelligence, said: “Although there has been some awareness of the Snake malware for some years, until now the full scale of its capabilities could not be revealed, and the threat it presents is clearly something that needs to be taken much more seriously.
 
“The threat described in this report really does raise the bar in terms of what potential targets, and the security community in general, have to do to keep ahead of cyber attackers. As the Snake research clearly illustrates, the challenge of keeping confidential information safe will continue for many years to come. Hopefully, however, this research will help potential targets to better understand the nature of their threat adversary, and how they can build appropriate defences.”

Tags: attackVirus
ShareTweet
Previous Post

Accuvant to be acquired by asset management firm

Next Post

Hackers exploit WordPress security flaws to carry out cyber-attacks

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol