In what is surely one of the most astounding intelligence own goals in living memory, the CIA structured its classification regime such that for the most market valuable part of "Vault 7" — the CIA's weaponized malware (implants + zero days), Listening Posts (LP), and Command and Control (C2) systems — the agency has little legal recourse. The CIA made these systems unclassified. Why the CIA chose to make its cyberar…
That passage is just dumb. Copyright would not stop hackers from using the tool once it is leaked.
CIA malware and hacking tools
341–350 of 1001 posts
Re: CIA malware and hacking tools
#342I wonder how many of the exploits/tools released are still usable today. Also, the actual video press release had to be rescheduled due to their video stream being attacked.[0] "NOTICE: As Mr. Assange's Perscipe+Facebook video stream links are under attack his video press conference will be rescheduled." [0]: https://twitter.com/wikileaks/status/839104886625157120
Re: CIA malware and hacking tools
#343Earlier quoted context omitted.
Unfortunately for this we aren't going to get some 1080p video of someone in a mask sneaking into the DNC server room, just the fact that the 17 agencies all agree based on what they've seen believe that to be the case. Unfortunately everyone these days think everything is a conspiracy or has to have HD recordings of something they think happened as public evidence or it is false, but that's not how the world really…
The thing is, "17 agencies agree" doesn't really mean anything, if the evidence that all 17 agencies are relying on is a single report from a private security company hired by the DNC, and not independent investigation. If all of those agencies had looked at the original evidence themselves, the story would be different.
Re: CIA malware and hacking tools
#344Earlier quoted context omitted.
> Command & Control and Listening Post software were classified, then CIA officers could be prosecuted or dismissed for violating rules that prohibit placing classified information onto the Internet. Consequently the CIA has secretly made most of its cyber spying/war code unclassified. This is almost hilarious. Not that being classified would make any difference: cyber-"weapons" have something in common with biologic…
Obviously there's a difference between cyber and conventional weapons, but imagine if the same rationale were extended to physical munitions: "We can't drop this bomb on the enemy, it contains classified technology"
Re: CIA malware and hacking tools
#345This had the potential of being a positive development brought by Trump's election: many behaviors by the US three letter agencies that were glossed over for the past 8 years (due to the party in power being "on the right side of history") are again reprehensible and deemed a threat to be fought by the tech community.
Personally, I'd rather live in a world dominated by America/Europe than one dominated by Russia or China. All parties have lengthy histories of atrocious behaviour but the US/Europe doesn't have a "Great Firewall" and critics of our leadership are not disappeared (yet?). I just hope "If you want a vision of the future, imagine a boot stamping on a human face - forever." remains fictional....
Re: CIA malware and hacking tools
#346Earlier quoted context omitted.
> The US chemical weapons program is downright frightening. Was : they committed to destroying those weapons, and have been doing so for 24 years. They were 89.75% complete in 2012. The video you linked was from 1973. https://en.wikipedia.org/wiki/United_States_chemical_weapons...
Just like they committed to revealing exploits to the tech industry instead of hoarding them?
I think you're letting your cynicism get in the way of truth and understanding.
The US has signed and ratified a treaty committing to destroy all chemical weapons and never produce them again [1], and it has built the infrastructure to do so [2] [3].
It's conspiracy-nut territory to think the US is simultaneously stockpiling chemical weapons in some super-secret program without good evidence for it.
[1] https://en.wikipedia.org/wiki/Chemical_Weapons_Convention
Re: CIA malware and hacking tools
#347Quit with the fucking conspiracy theories. Seriously -- can we get a fucking mod in here to get rid of this shit.
You're commenting on a release that includes CIA guidelines for structuring file metadata specifically to avoid US attribution... And arguing that questioning the integrity of file metadata is a conspiracy theory... https://wikileaks.org/ciav7p1/cms/page_14587109.html
Re: CIA malware and hacking tools
#348Earlier quoted context omitted.
Unfortunately for this we aren't going to get some 1080p video of someone in a mask sneaking into the DNC server room, just the fact that the 17 agencies all agree based on what they've seen believe that to be the case. Unfortunately everyone these days think everything is a conspiracy or has to have HD recordings of something they think happened as public evidence or it is false, but that's not how the world really…
>" just the fact that the 17 agencies all agree based on what they've seen believe that to be the case." This simply isn't true. The whole "17 agencies" thing is a talking point that first came up in one of Hillary Clinton's debates and gets repeated without challenge. The "17 agencies" didn't all independently make their own assesments about what happened and decided it was the Russians. Instead, James Clapper (at t…
The folks asking the questions had security clearance and could have asked the question during a classified briefing but they chose not to.
Re: CIA malware and hacking tools
#349OS-level backdoors can be easily patched. Unlike hardware based backdoors, curtesy of Intel AMT.
And yet the leaked tools don't seem to have much in the way of hardware-based exploits, which might say something about the feasibility of this kind of thing on actual systems. Obviously it can be done, but it were as pervasive as the tinfoil hatters believe, surely it would have shown up here. No?