Live data from Hacker News

German Government Agency warns about using Kaspersky

bsi.bund.de

71–80 of 147 posts

Re: German Government Agency warns about using Kaspersky

#72

Seeing that the west just killed off payments in the Moscow metro, stopped security patches for Cisco networking equipment etc. etc. There is a bit of projection going on: We fear that Russia might do to us, what we just did to them. But what is the end result of this? Any "potential enemy of the west" will have to do their own tech, and we will only use our own stuff. Sounds like a bad trade for us; instead of selli…

It would be a legit thought if Kaspersky (company and the owner) wouldn't have direct connections to FSB.

In the same manner, you can easily connect any of the big US tech companies to the US intelligence services or military.

Re: German Government Agency warns about using Kaspersky

#73

Earlier quoted context omitted.

It would be a legit thought if Kaspersky (company and the owner) wouldn't have direct connections to FSB.

In the same manner, you can easily connect any of the big US tech companies to the US intelligence services or military.

When I see the evidence. Party in sauna with the hookers was a quite “specific” sort of connection between E. Kaspersky and FSB officers.

Re: German Government Agency warns about using Kaspersky

#74

Earlier quoted context omitted.

I'm anxious to see what the Steam Deck, one of the first popular, user accessible Linux computers, will do to the Linux landscape. For ages now, Linux has been relatively virus free because let's be honest, Linux is either used by just a few nerds (who are often just a tad harder to trick than the tech illiterate) or by servers, for which entirely different classes of malware exists. With effectively no antivirus pro…

The biggest benefit to being "virus free" (even though it's not), is the package management. On windows, most software installs, updates, etc., rely on you executing a random .exe file, downloaded from some random page online, while on linux, you trust the team of maintainers (who usually know what they're doing) to keep repositories relatively safe. The same idea came for apple and google, and their software stores,…

Did apple really fuck up or are they actually succeeding with iOS being the most "safe" mainstream end-user operating system by far. Arguably they fucked up by bungling the Mac App Store so running executables downloaded from the web and software updating itself is still common.

Re: German Government Agency warns about using Kaspersky

#75
post #70
post #38

It’s been interesting to note how Kaspersky has been responding to the scrutiny. It’s almost always the same - ”we have been audited a huge amount of times and no-one has ever found anything!” It’s suspicious because as someone who is a vendor of risk management, they’re leaving out the gaping hole fact which is that software is updateable and oftentimes AV will do so automatically. Potent risk is pretty huge. Same a…

> Same applies also to the Huawei discourse. How? Huawei routers and switches don't auto-update.

Their whole range of management software do.

Re: German Government Agency warns about using Kaspersky

#76
post #68
post #50

Earlier quoted context omitted.

Most insurances expect you to have an AV installed.

Sometimes even on Linux servers, where the best an AV can do is take CPU and IO so that there's less for the malware.

McAfee is a magical product indeed. Not only does it ensure your Intel CPU is always enjoying the benefits of TurboBoost, but it also provides a faithful emulation of a 5400 RPM drive when using tmpfs. Marvelous technology. (And if you have a kernel-level problem, don't worry - the enterprise support you're paying so much for won't answer your calls, because McAffe taints the kernel).

Re: German Government Agency warns about using Kaspersky

#77

Earlier quoted context omitted.

In the same manner, you can easily connect any of the big US tech companies to the US intelligence services or military.

When I see the evidence. Party in sauna with the hookers was a quite “specific” sort of connection between E. Kaspersky and FSB officers.

No post body was provided.

Re: German Government Agency warns about using Kaspersky

#78
post #56

Earlier quoted context omitted.

Congratulations, me too. But that didn't help me with the linux driver issues for my laptop. Nor does linux run adobe animate, or a bunch of other software.

Good work! The only "correct" approach is telling Adobe that they need to provide native ports of their software or switching to other software. Regarding laptops, buy business laptops (Lenovo ThinkPad, Dell Developer Edition) or laptops made from vendors with a focus on Linux (Purism, System 76, Tuxedo) and stick with internals from AMD or Intel. So it boils down to knowing things before and giving the right compani…

Lenovo gets a lot of love from linux users for their laptops, but they've repeatedly shipped malware infested systems. Sometimes they did it in exchange for money, sometimes they wrote the malware themselves. I wouldn't recommend anyone go near them. I mean, hardware that'll play nice with linux is nice, but we're not lacking for alternatives these days.

If a company who acts as horribly as Lenovo does can still be recommended even in tech circles it makes me wonder what a company would have to do before their reputation suffers for the general public.

Re: German Government Agency warns about using Kaspersky

#79
post #17

I will go on the record here and one-up them, warning against the use of any antivirus product. SO many vulns and gaping, smoking holes in that kind of software over the years, it's not even funny. Faux-security is what most vendors are peddling. https://twitter.com/GossiTheDog/status/1427935182200492039 is one of my favourite bugs from recent years. I acknowledge this bug is not specific to an antivirus product (but…

It's definitely reasonable at this point to just skip using AV. It won't protect users from bad security habits and it tends to make your system performance worse even if it doesn't have vulnerabilities. I have Windows Defender enabled on my machines since it comes with the OS (and work policy requires it), but I definitely had to exclude most of my work folders to be able to get work done. It would be nice to have s…

A new [0] feature in Windows is "protected folders", which denies access to specific folders (user-configurable) by default to applications, and the user needs to actively allow them access. The downside is that it's all or nothing, meaning that a given app either has access to none of those folders or to all of them.

You can do something similar with SELinux and AppArmor, and I think recent versions of macOS also have something similar.

---

[0] new to me, I'm only an occasional Windows user, for gaming, so it may have been there for a long time

Post reply on HN