Flame malware used man-in-the-middle attack against Windows UpdateMicrosoft has released an emergency update for Windows, revoking digital certificates that could be used to impersonate the Windows Update security service. The Flame malware exploited flaws related to this vulnerability realizing concerns that Windows Update might be compromised to distribute malware.<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=nakedsecurity.sophos.com&blog=15254721&post=169874&subd=sophosnews&ref=&feed=1" width="1" height="1" /><img src="http://feeds.feedburner.com/~r/nakedsecurity/~4/s6LQ9h9-bjA" height="1" width="1"/>
Source:
Flame malware used man-in-the-middle attack against Windows Update