Live data from Hacker News

FireEye Shares Details of Recent Cyber Attack

fireeye.com

71–80 of 251 posts

Re: FireEye Shares Details of Recent Cyber Attack

#71
If FireEye, ostensibly full of competent people, can be hacked, what hope does the government have for protecting access to legally mandated backdoors in encryption? The silver lining of these events is it shows how ridiculous mandating backdoors would be. It’s begging other nations to attack us.

Re: FireEye Shares Details of Recent Cyber Attack

#74
post #69

Why build hacking tools when you can steal them? Or at least get an idea of what tools your target company was red teamed with.

Why spy on your own citizens when that makes them blackmail-able by foreign nation states?

Seriously, the quickest, cheapest, easiest way to spy on someone (edit= everyone) in the US (or any 5 eyes) is through our own "security" agencies, but I'm going to go with stupidity rather than malice on the NSA's part.

Re: FireEye Shares Details of Recent Cyber Attack

#75

Does a story like this negativity impact FireEye's security credibility?

I've been out of the security game for years now, but I would say no. A security company is still a company. And companies are vulnerable to security threats from nation states.

It probably depends whether (and how) they confirm it was a nation state, though.

Re: FireEye Shares Details of Recent Cyber Attack

#77

Does a story like this negativity impact FireEye's security credibility?

How they handle it will impact their credibility more than anything. Honestly a company that gets popped and responds with urgency, gravity, transparency and integrity might even come out ahead.

Re: FireEye Shares Details of Recent Cyber Attack

#78
> FireEye CEO Mandia wrote that none of the red team tools exploited so-called “zero-day vulnerabilities,” meaning the relevant flaws should already be public.

Seems like a massive amount of energy to devote to stealing tools, that by and large, probably have public equivalents sitting around on GitHub.

Re: FireEye Shares Details of Recent Cyber Attack

#79

It will be interesting to see if the tools are also published online en masse, similar to what happened with the NSA's hacking tools.

I hope so. Between the cia, russia, nsa, and other private company dumps, it's been a fun time to be in the industry. I can't find these yet anywhere.
Post reply on HN