[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help] 

Status: Not Logged In; Sign In

MN Gunman’s Pot Use Is Further Evidence Against Rescheduling Marijuana

Intense Exercise is Best

New Cars Are George Orwell 1984 Compliant

PEGASUS EVENT 201

Over Half Of Berlin's New Police Recruits Can't Speak Basic German, Officials Admit

Thomas Massie NAMES Epstein as a CIA and Israeli Asset

How Chickens See the World (Its CRAZIER Than You Think)

You remember TommyTheMadArtist?

Joe Rogan on the Belgian Malinois

Democrat New Mexico Governor Admits National Guard Making Progress In High-Crime Albuquerque

Florida banning vaccine mandates

To Prevent Strokes, Take Potassium.

Lawyer for Epstein VICTIMS Shares Details Trump FEARED THE MOST

WW3? French Hospitals Told To Prepare For A "Major Military Engagement" Within Six Months

The Zionist Experiment Is Over

Sen. Tim Kaine: ‘Extremely Troubling’ to Say Natural Rights Are from God

Israel & The Assassination Of The Kennedy Brothers

JEWISH RITUAL MURDER (Documentary)

The Pakistani mayor of Rotherham claims she proud to be British and proud to be Pakistani.

Khe Sanh 1968 How U.S. Marines Faced the Siege in Vietnam

Did Xi's Parade Flip The Script On US Defense Of Taiwan?

Cascade Volcanoes Show Weird Pulse Without Warning – Mount Rainier Showing Signs of Trouble!

Cash Jordan: Chicago Apartments RAIDED... ICE 'Forcibly Evicts' Illegal Squatters at 3AM

We are FINALLY turning the tide on 9/11 - The TRUTH is coming out | Redacted w Clayton Morris

Netanyahu SHAKEN as New Hostage Video DESTROYS IDF Lies!

We are FINALLY turning the tide on 9/11 VIDEO

Shocking Video Shows Ukrainian Refugee Fatally Stabbed On Charlotte Train By Career Criminal

Man Identifies as Cat to Cop

his video made her stop consuming sugar.

Shot And Bothered - Restored Classic Coyote & Road Runner Looney Tunes Cartoon 1966


World News
See other World News Articles

Title: WikiLeaks Publishes CIA Hacking Tool Designed To "Impersonate" Russia's Kaspersky Lab
Source: [None]
URL Source: http://www.zerohedge.com/news/2017- ... ersonate-russias-kaspersky-lab
Published: Nov 9, 2017
Author: Tyler Durden
Post Date: 2017-11-09 13:47:18 by Horse
Keywords: None
Views: 36
Comments: 2

On September 18th, the US Senate voted to ban the use of products from the Moscow-based cyber security firm Kaspersky Lab by the federal government, citing national security risk. The vote was included as an amendment to an annual defense policy spending bill approved by the Senate on the same day and was written to bar the use of Kaspersky Lab software in government civilian and military agencies.

Alas, according to a new revelation from WikiLeaks this morning, any perceived "national security risk" from Kaspersky could have resulted from the fact that the CIA specifically designed hacking software, code-named 'Hive', which intentionally "impersonated" the Russian cyber security firm so that "if the target organization looks at the network traffic coming out of its network, it is likely to misattribute the CIA exfiltration of data to uninvolved entities whose identities have been impersonated."

Here's a summary of the hacking tool posted by WikiLeaks:

Today, 9 November 2017, WikiLeaks publishes the source code and development logs to Hive, a major component of the CIA infrastructure to control its malware.

Hive solves a critical problem for the malware operators at the CIA. Even the most sophisticated malware implant on a target computer is useless if there is no way for it to communicate with its operators in a secure manner that does not draw attention. Using Hive even if an implant is discovered on a target computer, attributing it to the CIA is difficult by just looking at the communication of the malware with other servers on the internet. Hive provides a covert communications platform for a whole range of CIA malware to send exfiltrated information to CIA servers and to receive new instructions from operators at the CIA.

The cover domain delivers 'innocent' content if somebody browses it by chance. A visitor will not suspect that it is anything else but a normal website. The only peculiarity is not visible to non-technical users - a HTTPS server option that is not widely used: Optional Client Authentication. But Hive uses the uncommon Optional Client Authentication so that the user browsing the website is not required to authenticate - it is optional. But implants talking to Hive do authenticate themselves and can therefore be detected by the Blot server. Traffic from implants is sent to an implant operator management gateway called Honeycomb (see graphic above) while all other traffic go to a cover server that delivers the insuspicious content for all other users.

Digital certificates for the authentication of implants are generated by the CIA impersonating existing entities. The three examples included in the source code build a fake certificate for the anti-virus company Kaspersky Laboratory, Moscow pretending to be signed by Thawte Premium Server CA, Cape Town. In this way, if the target organization looks at the network traffic coming out of its network, it is likely to misattribute the CIA exfiltration of data to uninvolved entities whose identities have been impersonated.

WikiLeaks ✔ @wikileaks

New WikiLeaks publication reveals CIA wrote code to impersonate Kaspersky Labs anti-virus company https://wikileaks.org/vault8/

Of course, Kaspersky Lab has been producing anti-virus software for 20 years and boasts 400 million customers around the world. Suspected of being involved in cyber espionage, the company's management has maintained that it has been "caught in the middle of a geopolitical fight" and is being "treated unfairly even though the company has never helped, nor will help, any government in the world with its cyberespionage or offensive cyber efforts"...

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

#1. To: Horse (#0)

It's a little bit beyond me, at least without further study, but the bottom line seems to be that if the CIA wanted to make it look like, to other intelligence agencies, the Russians were hacking the elections, they could do so with this technological development.

And of course it shows that the CIA has an interest in conducting covert political activity internationally.

Pinguinite  posted on  2017-11-09   13:59:24 ET  Reply   Trace   Private Reply  


#2. To: Pinguinite (#1)

I in fact have studied this and you are 100% correct. The Zionist Deep State is pure evil.


"Define yourself as one beloved by God. This is the true self. Every other identity is illusion."—Brennan Manning

Rotara  posted on  2017-11-09   14:01:36 ET  Reply   Trace   Private Reply  


TopPage UpFull ThreadPage DownBottom/Latest


[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help]