Live data from Hacker News

Copies of malware used by intelligence agencies to spy on journalists

wikileaks.org

41–50 of 80 posts

Re: Copies of malware used by intelligence agencies to spy on journalists

#41
post #25

Earlier quoted context omitted.

Like Julian Assange repurposing wikileaks donations into the Julian Assange sexual assault defense fund? Whatever you may think of the allegations, it has become extremely blurry as what the money donated to wikileaks' operation is actually used for, seeing as how Julian Assange wasn't supposed to be wikileaks.

Since his "sexual assault" allegations were, in essence, an orchestrated smear campaign to discredit him and by extension Wikileaks, and the health of the former depends on the latter, I see absolutely no problem here. Why do you?

> Since his "sexual assault" allegations were, in essence, an orchestrated smear campaign to discredit him and by extension Wikileaks

Is what he wants you to believe.

http://www.theguardian.com/media/2010/dec/17/julian-assange-...

By Saturday morning, 21 August, journalists were asking Assange for a reaction. At 9.15am, he tweeted: "We were warned to expect 'dirty tricks'. Now we have the first one." The following day, he tweeted: "Reminder: US intelligence planned to destroy WikiLeaks as far back as 2008."

Re: Copies of malware used by intelligence agencies to spy on journalists

#42
These periodic reminders that Internet isn't a safe place and that anyone might be spying on us probably makes a lot of people learn about security, come up with better passwords, hesitate before downloading unknown software and so on.

When people get their identities stolen, or lose all the money from their bank accounts, this might be regarded as "random" events, in the same way that most people won't get mugged and when it happens it's because of "randomly" being in the wrong place at the wrong time. But more people have experience dealing with the government, and though they believe that criminals aren't interested in them they know that the government might be, and thus the government is seen as a more tangible threat.

Is it possible that governmental surveillance is on average a good thing, since it raises people's awareness and makes them protect themselves more? Having enough money in your bank account to buy food is, after all, a more basic need in Maslow's hierarchy than not having copies of your e-mail conversations in a government database.

Re: Copies of malware used by intelligence agencies to spy on journalists

#43
post #36

I hope Norton is updating their database accordingly.

You can try and submit the files here: https://www.virustotal.com/

Pretty depressing. Only 2 out of 54 scanners currently detect something in the zips of the spyware.

https://www.virustotal.com/en-gb/file/6ee40b8e7d49f4ea70b7ce...

https://www.virustotal.com/en-gb/file/688f1e15390faf8d977351...

Re: Copies of malware used by intelligence agencies to spy on journalists

#44

Earlier quoted context omitted.

Snowden is milking the attention as well. Look at the livestream going on right now, he's discussing the information live.

You're deliberately trying to discredit a person who made available proof that the surveillance machine is out of control. While everyone else is dissecting the information and trying to digest it and working on solutions to the surveillance problem; you're obsessed with the messenger. Why?

Well, I'd agree with you, but the way you phrased it made me feel uneasy. Are you saying that source criticism in journalism is overrated, or that Assange should be an exception to the rules?

This is the Internet. Isn't there enough room here for discussions about both the message and the messenger? Or is it that when the message gets strong or important enough, the messenger gets irrelevant in comparison?

Re: Copies of malware used by intelligence agencies to spy on journalists

#45

This company makes millions upon millions of dollars from selling surveillance malware to (by the looks of the customer list) anyone who will pay. If I were to set up a company which sold similar products at similar prices, I would expect the FBI to come knocking at my door very quickly.

And they'd probably want to seize all your 0dayz to use to spy on activists too. :P

Re: Copies of malware used by intelligence agencies to spy on journalists

#46

I know many love to consider Snowden and Assange "heroes", but I think these two are people we should think outside the box on. Are they acting in the interest of everyone, themselves, or another party? The releases, interviews, and otherwise that get released seem very scripted and controlled. The propaganda machine is skilled and there may be unseen benefits to these leaks.

Nice try, GCHQ!

Re: Copies of malware used by intelligence agencies to spy on journalists

#48
post #43
post #36

Earlier quoted context omitted.

You can try and submit the files here: https://www.virustotal.com/

Pretty depressing. Only 2 out of 54 scanners currently detect something in the zips of the spyware. https://www.virustotal.com/en-gb/file/6ee40b8e7d49f4ea70b7ce... https://www.virustotal.com/en-gb/file/688f1e15390faf8d977351...

WAY too many security companies play both sides of the fence.

Re: Copies of malware used by intelligence agencies to spy on journalists

#49
post #43
post #36

Earlier quoted context omitted.

You can try and submit the files here: https://www.virustotal.com/

Pretty depressing. Only 2 out of 54 scanners currently detect something in the zips of the spyware. https://www.virustotal.com/en-gb/file/6ee40b8e7d49f4ea70b7ce... https://www.virustotal.com/en-gb/file/688f1e15390faf8d977351...

Those zips are encrypted, that's why. I have included links to the unencrypted results [1,2], with ~80% detection rate. Notable green checkmark by Microsoft, perhaps FinFisher made extra sure to not get caught by Microsoft's heuristics?

[1] https://www.virustotal.com/en-gb/file/f827c92fbe832db3f09f47...

[2] https://www.virustotal.com/en-gb/file/0b465877a998a993a64a14...

Re: Copies of malware used by intelligence agencies to spy on journalists

#50
post #19

So, it seems the NSW police here in Australia are a customer and use this. Ignore for a moment whether it's a good or bad thing that police use tools like these. What I want to know is, what happens once they "get their guy", so to speak. Does the malware stay on that computer forever, violating the privacy of family members, or other users of the computer should it be sold on and not wiped correctly? What happens if…

(I'm also in NSW)-- The list of "support requests" on the customers page suggests that the tools are used only in accordance with duly-issued warrants. Access would need to be removed once the purpose of the warrant had been fulfilled, but we may never know whether they get that right in practice. Ben Grubb has collated some background information on the operation of those laws.[1] [1] http://www.smh.com.au/it-pro/go…

I have not looked at the materials but I suspect most or all Western countries using this toolkit are using it for specific investigations where warrants have been issued.

I personally have no qualms with the FBI planting malware as just another form of surveillance (if they have a warrant to search your home and tap your phone, why shouldn't they be able to get a warrant to monitor your computer?). The problem with Gamma Group, and what I suspect is one of the core reasons for this leak, is that they happily sell their product to extremely oppressive regimes and give them personal support, knowing full well that the tools are being used to spy on and find dissidents, protesters, and political opponents.

Post reply on HN