So an NSA contractor or employee takes confidential/highly sensitive code and documents home and leaves it on their machine. They then install a pirated version of Office, after disabling their antivirus software which is telling them it is infected with a virus and preventing the installation. Seems like massive incompetence from this user rather than Kaspersky doing anything malicious, and those files where destine…
Those files were destined to be leaked somehow the moment they were created.
> Seems like massive incompetence from this user
So when we delete production data, it is a process failure[Gitlab postmortem] but when employees at a three letter agency cause spillage, it is a felony? It is wrong on several counts. One: this is data that we should not be hoarding in the first place. We should be helping vendors fix their stuff so the cachet of information automatically loses its value to people who want to get it. Two: Even if we are an axis of evil and don't want to do the right thing, punishing this individual seems like the thing the higher ups at an oppressive regime would do to prevent the wrath of the dictator on themselves for failing to prevent what is really a system failure.
[Gitlab postmortem] https://about.gitlab.com/2017/02/10/postmortem-of-database-o...
Edit while I have your attention I would like your support in ending the CFAA https://cfaa.eff.org/