Skip to content
EntityQ911654· pop 11· linked from 317 articles

Duqu is a collection of computer malware discovered on 1 September 2011, thought by Kaspersky Labs to be related to the Stuxnet worm and to have been created by Unit 8200. The Laboratory of Cryptography and System Security (CrySyS Lab) of the Budapest University of Technology and Economics in Hungary discovered the threat, analysed the malware, and wrote a 60-page report naming the threat Duqu. Duqu got its name from the prefix "~DQ" it gives to the names of files it creates.

~7 min read

Article

8 sections
Contents
  • History
  • Nomenclature
  • Relationship to Stuxnet
  • Microsoft Word zero-day exploit
  • Purpose
  • Command and control servers
  • See also
  • References

Duqu is a collection of computer malware discovered on 1 September 2011, thought by Kaspersky Labs to be related to the Stuxnet worm and to have been created by Unit 8200. The Laboratory of Cryptography and System Security (CrySyS Lab) of the Budapest University of Technology and Economics in Hungary discovered the threat, analysed the malware, and wrote a 60-page report naming the threat Duqu. Duqu got its name from the prefix "~DQ" it gives to the names of files it creates.

==History== In April 2011, Iranian authorities announced that computers there had been struck by a second digital attack in the wake of Stuxnet and gave this new attack the name Stars virus. Iran did not release any samples of the malware for outside researchers to examine.

Connections

Categories