Live data from Hacker News

Ghidra: A software reverse engineering suite of tools developed by the NSA

ghidra-sre.org

101–110 of 147 posts

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#101
post #2

It is open source software and it can reverse engineer programs from a lot of different systems. Some people may be worried about installing a piece of software on their computer that comes from the NSA. I don't think that there are real reasons to worry. One of the tasks of the NSA is defending against cyber attacks. Having more people with good tools helps the defense. Also, you can be pretty certain that some secu…

> Besides, if the NSA really wants to install some software on your computer, they can probably do it themselves without your involvement.

Running Linux with very few binblobs, I expect they will not be able to.

Running any OS published by $tax_evading_big_corp, I expect they can.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#102
post #101
post #2

It is open source software and it can reverse engineer programs from a lot of different systems. Some people may be worried about installing a piece of software on their computer that comes from the NSA. I don't think that there are real reasons to worry. One of the tasks of the NSA is defending against cyber attacks. Having more people with good tools helps the defense. Also, you can be pretty certain that some secu…

> Besides, if the NSA really wants to install some software on your computer, they can probably do it themselves without your involvement. Running Linux with very few binblobs, I expect they will not be able to. Running any OS published by $tax_evading_big_corp, I expect they can.

Have you seen the crazy stuff the NSA does?

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#103

Earlier quoted context omitted.

If they could install a virus on Iran's air-gapped uranium centrifuge industrial control systems, I'm pretty sure they could get one on your computer.

Bribing people in generally corrupt and poor countries to smuggle a USB stick is kind a different than just breaking into random persons home in a country with relatively low corruption. Latter might actually be more difficult. Obviously depends on what your end goal is

There is no evidence that the victims were bribed in that attack

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#104
post #62

Earlier quoted context omitted.

"There is a lot of bluffing when it comes to cyber security." I wish this topic received more discussion.

Yes we can talk about that, let's start with the FSB an why they are always so stupid ;) to left the compilation time with the working-hours of moscow and the cyrillic keyboard in the compiled binary.

It’s almost as if it’s not the FSB… but somebody making it look like it was… (See the Vault7 leak attribution masking)

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#105
post #75
post #66

Earlier quoted context omitted.

>NSA isn’t some magical unicorn With unlimited money and the given job to crack encryption, hack into systems and secure the networks of the wealthiest nation and only superpower on earth atm. It IS pretty much a unicorn, and i am pretty sure they are +20 years in the future technology-wise, and with that: >>Arthur C. Clarke — 'Magic's just science that we don't understand yet.' So yes Magic Unicorn describes the NSA…

Yeah, that's bullshit. For NSA-proof personal tech stack you'd rely more on tamper-evident blocks that's all. Also, security in depth and security through obscurity are much more applicable if you're a person and not an organization. Finally, +20 years head start does not mean much if you distrohop and FOMO into bleeding edge stuff like a tech podcaster.

Yeah this is bullshit. There is no demonstrated NSA proof setup. If they haven’t broken in to something, they aren’t telling us about it.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#106
post #88
post #84

Earlier quoted context omitted.

>one can change distributions faster than NSA can break them Oh man i don't know what to say. Does one distrohop the ssd/efi/net/wireless/keyboard/etc-firmware too? One distrohoped for 15 years and that vuln existed all the time..but hey it would be just that one...it's an exception right? ;) https://securityaffairs.co/wordpress/115565/security/linux-k... How many completely different browsers exist? And how many loc…

Buddy, I'm not gonna follow this thread anymore because you seem to be baiting me to read you a lecture on OPSEC, security in depth and compartmentalization.

Buddy, your distro hopping advice is advice so bad, that the most charitable interpretation is you have no idea what you’re talking about.

Seriously? Distro hop? My brain hurts, I need coffee.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#107

Earlier quoted context omitted.

but literally the most important when you need to attack air gapped machine

No, it's not the most important. The most important was clearly obtaining the PLC zero days to infect the physical machines. It's unclear to me why you choose to be so explicitly obtuse but in any case, for your own personal edification, feel free to read some details on how it went down - [0] https://www.wikiwand.com/en/Stuxnet [1] https://www.wired.com/2014/11/countdown-to-zero-day-stuxnet/ [1] https://www.hsdl.org…

Zero day is worth nothing if you don't have someone to plug it in, but sure, be pissy about it.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#108
post #94

Earlier quoted context omitted.

Bribing people in generally corrupt and poor countries to smuggle a USB stick is kind a different than just breaking into random persons home in a country with relatively low corruption. Latter might actually be more difficult. Obviously depends on what your end goal is

It's best not to assume a physical presence is required. Who is to say that the people at Let's Encrypt, NoScript, any of the firmwares' authors, or many other places weren't compromised years ago? It's sometimes worthwhile to reflect on where trust is placed.

It would be hell of a trick to inflitrate air gapped machine without physical presence.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#109

Earlier quoted context omitted.

What’s with the doomer mentality. NSA isn’t some magical unicorn that can just walk through everything

They kind of are though. If you have a LOT of money, time, and personnel -- and they do -- you can find a lot of vulnerabilities.

Yes and we've seen their shit get leaked over the years. From that we can see clear patterns in what they view as valuable and where they spend their significant, but still limited focus.

Re: Ghidra: A software reverse engineering suite of tools developed by the NSA

#110
post #101

Earlier quoted context omitted.

> Besides, if the NSA really wants to install some software on your computer, they can probably do it themselves without your involvement. Running Linux with very few binblobs, I expect they will not be able to. Running any OS published by $tax_evading_big_corp, I expect they can.

Have you seen the crazy stuff the NSA does?

Link please? I know they collect data, and have Windows backdoors.
Post reply on HN