Live data from Hacker News

CIA malware and hacking tools

wikileaks.org

251–260 of 1001 posts

Re: CIA malware and hacking tools

#251
post #243
post #204

Earlier quoted context omitted.

There also still hasn't been any public evidence that Wikileaks got their Podesta email data from Russians yet. So far we only know the DNC leaks were very likely Russian. That means until today only about ~50% of the 'election hacks' have been attributed to Russia with public evidence. Now this leak calls into question some of the evidence about the DNC hack [1]. This evidence being the malware was Russian. But ther…

The circumstantial evidence in the Podesta phishing is pretty decent, not really 'up in the air'. https://www.secureworks.com/research/threat-group-4127-targe... https://twitter.com/pwnallthethings/status/81662155364329472... (the second link is a lengthy thread)

Right, someone found a phishing link sent to Podesta that reused a GMail login page by autogenerating URLs, hundreds of hashed urls were reversed and a bunch of the target emails were people/companies of interest to Russia. I was only thinking about what the US gov released regarding the DNC leaks. I forgot about that one.

It's very possible that many people had access to Podesta's email but the timing of that phishing attempt and the Wikileaks leak was a little too convenient to ignore.

Re: CIA malware and hacking tools

#252
post #243
post #204

Earlier quoted context omitted.

There also still hasn't been any public evidence that Wikileaks got their Podesta email data from Russians yet. So far we only know the DNC leaks were very likely Russian. That means until today only about ~50% of the 'election hacks' have been attributed to Russia with public evidence. Now this leak calls into question some of the evidence about the DNC hack [1]. This evidence being the malware was Russian. But ther…

The circumstantial evidence in the Podesta phishing is pretty decent, not really 'up in the air'. https://www.secureworks.com/research/threat-group-4127-targe... https://twitter.com/pwnallthethings/status/81662155364329472... (the second link is a lengthy thread)

[deleted]

Re: CIA malware and hacking tools

#253
post #204
post #66

The CIA's Remote Devices Branch's UMBRAGE group collects and maintains a substantial library of attack techniques 'stolen' from malware produced in other states including the Russian Federation. With UMBRAGE and related projects the CIA cannot only increase its total number of attack types but also misdirect attribution by leaving behind the "fingerprints" of the groups that the attack techniques were stolen from. Th…

There also still hasn't been any public evidence that Wikileaks got their Podesta email data from Russians yet. So far we only know the DNC leaks were very likely Russian. That means until today only about ~50% of the 'election hacks' have been attributed to Russia with public evidence. Now this leak calls into question some of the evidence about the DNC hack [1]. This evidence being the malware was Russian. But ther…

Can you point to information to research about connections to the DNC hack and Russia?

Re: CIA malware and hacking tools

#254
post #66

The CIA's Remote Devices Branch's UMBRAGE group collects and maintains a substantial library of attack techniques 'stolen' from malware produced in other states including the Russian Federation. With UMBRAGE and related projects the CIA cannot only increase its total number of attack types but also misdirect attribution by leaving behind the "fingerprints" of the groups that the attack techniques were stolen from. Th…

> that "Russians" hacked the election

That's not the claim. In fact, multiple people have said that is not the claim.

The claim is that the Russians influenced the election in favor of Trump by promoting propaganda against Clinton.

Re: CIA malware and hacking tools

#255

Earlier quoted context omitted.

Lol like anyone in this field cares about copyrights. It is like suggesting that North Korea cannot build nuclear bombs because doing so would infringe US patents. Some things are above IP rules.

Think about it. Having the code copyrighted, would leave a paper trail.

Copyright is an intrinsic property of a work in every legislation I have ever heard of.

Re: CIA malware and hacking tools

#256

This may sound stupid, but I'm wondering if using Windows Phone 8 (not Windows 10 mobile) might be a strong measure for protecting oneself against such attacks. First, it's quite restricted in terms of deep system access towards devs and users. Apps are sandboxed and extremely isolated from each other. Then, its market share is so low that probably no one makes an effort to build targeted attacks towards it.

> Apps are sandboxed and extremely isolated from each other

One could make the same argument for iOS.

> Then, its market share is so low that probably no one makes an effort to build targeted attacks towards it.

No one also makes an effort to find and disclose exploits either. Security through obscurity alone is an awful idea.

Re: CIA malware and hacking tools

#257
post #53

>"As of October 2014 the CIA was also looking at infecting the vehicle control systems used by modern cars and trucks. The purpose of such control is not specified, but it would permit the CIA to engage in nearly undetectable assassinations." Reminds me of the reporter who was supposedly working on a massive investigation and then died in a flaming car crash while skipping town. Forgot his name

Michael Hastings? [0] [0] https://en.wikipedia.org/wiki/Michael_Hastings_(journalist)

While the above is certainly plausible(killing someone with a car), I highly doubt this is the case here:

https://www.metabunk.org/debunked-michael-hastings-crash-car...

Re: CIA malware and hacking tools

#258

This had the potential of being a positive development brought by Trump's election: many behaviors by the US three letter agencies that were glossed over for the past 8 years (due to the party in power being "on the right side of history") are again reprehensible and deemed a threat to be fought by the tech community.

Anyone that thinks the Trump administration is going to lead the charge on reforming these agencies is foolhardy.

Governments rely on information to function.

Once an administration comes into power and sees the amount of information provided to them through these means, there's no way they would relinquish it in any meaningful sense.

Re: CIA malware and hacking tools

#259
post #142

Earlier quoted context omitted.

> Command & Control and Listening Post software were classified, then CIA officers could be prosecuted or dismissed for violating rules that prohibit placing classified information onto the Internet. Consequently the CIA has secretly made most of its cyber spying/war code unclassified. This is almost hilarious. Not that being classified would make any difference: cyber-"weapons" have something in common with biologic…

Obviously there's a difference between cyber and conventional weapons, but imagine if the same rationale were extended to physical munitions: "We can't drop this bomb on the enemy, it contains classified technology"

Classification semantics is EVERYTHING.

Re: CIA malware and hacking tools

#260
post #123

Earlier quoted context omitted.

I'm pretty okay with wikileaks not releasing hundreds of zero day exploits into the wild en mass.

I'd like to hear a security expert's opinion on whether releasing even patched 0-days could be considered harmful ? even if the 'sploits dont work out of the box, it seems like they would still advance the state of the art, and allow moderately-skilled hackers to build on very sophisticated designs, adapt and make them effective again - "stand on the shoulders of giants" kind of thing.

Releasing the exploits is also the quickest way to get them patched.
Post reply on HN