Live data from Hacker News

An inside look at NSA tactics, techniques and procedures from China's lens

inversecos.com

61–70 of 76 posts

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#61
> 98% of all the attacks occurred during 9am – 4pm EST (US working hours). > There were zero cyber-attacks on Saturdays and Sundays with all attacks centralised between Mon-Fri. > No attacks occurred during Memorial Day and Independence Day holidays which were unique American holidays. > No attacks occurred during Christmas.

Come on guys, if Satoshi can cover his timezones tracks, so can you.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#62
post #24

> Chinese cyber organizations openly acknowledge and publicize their partnerships. This openness was particularly interesting to observe and may be influenced by cultural factors, such as the Confucian emphasis on shared knowledge and a political framework that encourages collective efforts. I or anyone outside obviously cannot verify the technical details. However, the above statement struck as particularly uninform…

> source: I regularly work with engineers from that culture and studied relevant geopolitics.

that's the problem

in 1990-2010, >80% chinese influencers are liberals

after 2010, it went down to after 2020, and most important, there's a very higher proportion of software engineers are liberals, which is easy to understand since we are followers of western

but things are changing now, when you talk with a young chinese developer now, there's a good chance that he/she is a commie

there's a simple way to validate this, if a chinese developer willing to discuss abt politics with you and 'admire the free speech and discussion traditionally prized in the Western culture', he/she is a liberal,

if he/she avoids talking abt politics with you, it's not because he/she fears to talk abt this, it's because he/she is too polite to share different opinions as yours

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#63
post #24

> Chinese cyber organizations openly acknowledge and publicize their partnerships. This openness was particularly interesting to observe and may be influenced by cultural factors, such as the Confucian emphasis on shared knowledge and a political framework that encourages collective efforts. I or anyone outside obviously cannot verify the technical details. However, the above statement struck as particularly uninform…

> As any engineer in East Asia can tell you, there is nothing especially collaborative about tech in Confucian culture IIRC, Bunnie (Huang) mentioned how freely data flows in Shenzhen for hardware hacking, versus pulling teeth trying to get data sheets for components from western component makers. > source: I regularly work with engineers from that culture and studied relevant geopolitics. (Winces)

> IIRC, Bunnie (Huang) mentioned how freely data flows in Shenzhen for hardware hacking, versus pulling teeth trying to get data sheets for components from western component makers.

That’s like pointing to torrent sites as proof that US media companies are open to sharing their content.

Most of the hardware details being shared in shenhzen are stolen from western firms that have no way to enforce their IP.

It’s why you can get your iPhone storage upgraded for pennies on the dollar.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#64
post #57

> The Northwestern Polytechnical University had allegedly suffered multiple breaches throughout the years where several pieces of malware uncovered in prior investigations (prior to Shadow Broker’s leak) were allegedly the same tools described in the Shadow Broker’s leak. What is Shadow Broker, does anyone know?

> What is Shadow Broker, does anyone know?

Nyet

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#65
post #63

Earlier quoted context omitted.

> As any engineer in East Asia can tell you, there is nothing especially collaborative about tech in Confucian culture IIRC, Bunnie (Huang) mentioned how freely data flows in Shenzhen for hardware hacking, versus pulling teeth trying to get data sheets for components from western component makers. > source: I regularly work with engineers from that culture and studied relevant geopolitics. (Winces)

> IIRC, Bunnie (Huang) mentioned how freely data flows in Shenzhen for hardware hacking, versus pulling teeth trying to get data sheets for components from western component makers. That’s like pointing to torrent sites as proof that US media companies are open to sharing their content. Most of the hardware details being shared in shenhzen are stolen from western firms that have no way to enforce their IP. It’s why y…

> It’s why you can get your iPhone storage upgraded for pennies on the dollar.

??? How is this related to anything IP? To get your iPhone storage upgraded, you just need to blow off the old NAND Flash and "solder" new ones. Their pinouts are in public standards and every storage vendor in this world uses the same one.

And they did this for pennies because, of course, contrary to what Apple wants people to believe, flash storage does not cost much and even with the cost of all the dirty work it's still not much.

Or do you mean that they are violating Apple's IP rights by modifying their own devices? That's just... bullshit.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#66
post #19
post #4

> No attacks occurred during Memorial Day and Independence Day holidays which were unique American holidays. Simple but effective. A good non-NSA agency should also learn from this to be able to effectively false-flag as NSA, as long as they are flexible enough to allow off-hours and overtime pay and remember to respect the US federal holidays. > Two zero-days were used to breach any company with SunOS-exposed system…

>A good non-NSA agency should also learn from this to be able to effectively false-flag as NSA It seems like such a lapse in tradecraft that, absent other indicators, I would just assume it's a crude false flag attempt.

Honestly they might also totally not care about it. They might want to avoid detection while the hack is working but what is the point of covering their tracks after the thing is discovered?

It's not like China will sue them, and not like both sides can easily say that it is just reciprocal.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#67
> Second date has capabilities of network eavesdropping, MiTM, and code injection

This is probably a dumb question but doesn't that require an SSL cert? Obviously the NSA can get someone to issue a cert for a domain they don't own but wouldn't that be visible?

Couldn't you have every user device log the SSL certs it sees to detect this attack? What about CT?

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#68

Earlier quoted context omitted.

> how freely data flows in Shenzhen for hardware hacking, versus pulling teeth trying to get data sheets for components from western component makers. That's different though. Shenzhen is where electronics factories are; they get the datasheets from western companies, but because said western companies can't really enforce their IP over there, the locals get to ignore it and use the datasheets however it's convenient…

One other question is: how accurate are the data sheets in Shenzhen as opposed to in the US? I can't speak to China, but in the US if you publish a spec for a component and then don't deliver within that spec, you will get sued, and you will lose.

They are making these chips, so I'd say quite accurate, or else someone in the US will get sued by someone else in the US.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#69
post #62
post #24

> Chinese cyber organizations openly acknowledge and publicize their partnerships. This openness was particularly interesting to observe and may be influenced by cultural factors, such as the Confucian emphasis on shared knowledge and a political framework that encourages collective efforts. I or anyone outside obviously cannot verify the technical details. However, the above statement struck as particularly uninform…

> source: I regularly work with engineers from that culture and studied relevant geopolitics. that's the problem in 1990-2010, >80% chinese influencers are liberals after 2010, it went down to after 2020, and most important, there's a very higher proportion of software engineers are liberals, which is easy to understand since we are followers of western but things are changing now, when you talk with a young chinese…

Considering iPhone sales still sky high kinda doubt for now. Maybe in a few years.

Re: An inside look at NSA tactics, techniques and procedures from China's lens

#70
post #69
post #62

Earlier quoted context omitted.

> source: I regularly work with engineers from that culture and studied relevant geopolitics. that's the problem in 1990-2010, >80% chinese influencers are liberals after 2010, it went down to after 2020, and most important, there's a very higher proportion of software engineers are liberals, which is easy to understand since we are followers of western but things are changing now, when you talk with a young chinese…

Considering iPhone sales still sky high kinda doubt for now. Maybe in a few years.

[dead]
Post reply on HN