Flame, a massive malware package targeting computers in the Middle East, is spreading itself using bogus Windows updates. The malware is creating bogus certificates that allow it to fool Windows into thinking that certain components of Flame are Microsoft products. Microsoft issued a security advisory and a patch revoking the compromised certificates on Sunday. Flame may still have some tricks embedded in its code, Kaspersky Lab’s Alex Gostev said. Microsoft acknowledged that because Flame is being used in sophisticated, targeted attacks the vast majority of customers aren’t at risk.”]

