Posted on 10/19/2017 9:14:32 PM PDT by nickcarraway
'This is something new for CSE,' says the agency, which is trying to shed its old reputation
Canada's electronic spy agency says it is taking the "unprecedented step" of releasing one of its own cyber defence tools to the public, in a bid to help companies and organizations better defend their computers and networks against malicious threats.
The Communications Security Establishment (CSE) rarely goes into detail about its activities both offensive and defensive and much of what is known about the agency's activities have come from leaked documents obtained by U.S. National Security Agency whistleblower Edward Snowden and published in recent years.
But as of late, CSE has acknowledged it needs to do a better job of explaining to Canadians exactly what it does. Today, it is pulling back the curtain on an open-source malware analysis tool called Assemblyline that CSE says is used to protect the Canadian government's sprawling infrastructure each day.
"It's a tool that helps our analysts know what to look at, because it's overwhelming for the number of people we have to be able to protect things," Scott Jones, who heads the agency's IT security efforts, said in an interview with CBC News.
'Super secret spy' reputation
On the one hand, open sourcing Assemblyline's code is a savvy act of public relations, and Jones readily admits the agency is trying to shed its "super secret spy agency" reputation in the interest of greater transparency.
But on the other, the agency is acknowledging that, given the widening range of digital threats affecting Canadians and Canadian businesses, it believes it has a more public role to play in cyber defence than it has in the past.
"This is something new for CSE," he says. It's a fact not lost on longtime agency observers.
"They're pushing the envelope in a way they haven't quite before," said Bill Robinson, an independent researcher who has studied CSE's activities for more than two decades, and recently joined the University of Toronto's Citizen Lab as a fellow. "It's a big a change, a sea change for them in that way."
The step may be unprecedented for CSE, but not for its partners in the Five Eyes an intelligence-sharing alliance involving Australia, Canada, New Zealand, the United Kingdom and the United States.
Both the NSA and the U.K.'s Government Communications Headquarters (GCHQ) have maintained active projects on the code sharing repository GitHub in recent years.
'A gift' for companies
Assemblyline is described by CSE as akin to a conveyor belt: files go in, and a handful of small helper applications automatically comb through each one in search of malicious clues. On the way out, every file is given a score, which lets analysts sort old, familiar threats from the new and novel attacks that typically require a closer, more manual approach to analysis.
"There's only so many ways you can hide malware within a Word document," said John O'Brien, who leads the development of the tool, which first started in 2010. "So by looking for the hallmark of that type of an attack, that can give us an indication that there's something in here that's just off."
Cybersecurity researcher Olivier Bilodeau says although there is overlap between Assemblyline and existing tools, CSE's contribution is that it has cobbled together many of the tools that malware researchers already use into one platform, like a Swiss Army Knife for malware analysis that anyone can modify and improve. And it has demonstrated that Assemblyline can scale to handle networks as large as the government's.
Bilodeau who leads cybersecurity research at the Montreal security company GoSecure, and has developed a malware research toolbox of his own says those attributes could make it easier for large organizations such as banks to do more of the kind of specialized work that his company does.
"They usually spend a lot of time fighting the malware, but not a lot of time investing in malware fighting infrastructure," he said. "So this is definitely a gift for them."
Spying on spies
The possibility that CSE's own tool could be used to detect spy software of its own design, or that of its partners, is not lost upon the agency.
"Whatever it detects, whether it be cybercrime or [nation] states, or anybody else that are doing things well that's a good thing, because it's made the community smarter in terms of defence," said Jones.
Nor does he believe that releasing Assemblyline to the public will make it easier for adversaries to harm the government, or understand how CSE hunts for threats quite the opposite, in fact.
"We believe that the benefits far outweigh any risks and that we can still use this to be ahead of the threat that's out there."
Be wary of spooks bearing gifts? All your back doors are belong to them?
It’s called Trojan horse.
Beware of hosers bearing gifts.
I was amazed it took that many posts for your comment to appear. The instant I read that headline I asked why in the world would I want to load something from any government spy agency?
Must have something to do with the latest DirecTV commercial.
https://www.youtube.com/watch?v=0RpmwqaxrwA
the Canadians have an intelligence agency?>>>>>>>>>
EH ?????
( can’t blame you, we elected the liberal fascist Trudeau)
Anything from the Canadian Liberal Fascist Government likely IS malware designed to spy on personal, private communications
of people who gratuitously install it.
I am one Canadian who wouldn’t touch that government software with a ten foot pole, let alone a keyboard.
Canadians have an intelligence agency? Im surprised. LOL
The step may be unprecedented for CSE, but not for its partners in the Five Eyes an intelligence-sharing alliance involving Australia, Canada, New Zealand, the United Kingdom and the United States.
Probably, a large part of their spying efforts have been spent spying on Americans, Brits, Aussies and some NZ spying.
Like the Brit version of our NSA, DCHQ, spent a lot of time and money spying on candidate Trump and president elect Trump.
For more on 5 Eyes go to this Google Search:
Yeah, the Princess Pat’s are one of the world’s greatest infantry forces.
Ed
They sure look alike. Its time for a Fred Nerks comparative ear analysis!

your wish is my command...
That's his mother...
The ears say it all.
That’s the father of the PM of Canada on the right.
Mamma Trudeau liked a little strange on the side.


He also seems to be considerably taller than his mother, Pierre, and his brother...
Justin Trudeau was born in 1971.
So unless Fidel was extremely potent, it's unlike that Justin is really his son.
The surprising thing is that Justin Trudeau may actually be Pierre Trudeau's son, since Justin was born about 9 months after Pierre and Margaret were married.
He wouldn't be the only son to be taller than either of his parents.
Informative article here, which acknowledges that Justin Trudeau does have a resemblance to Castro, but also that young Pierre and young Fidel also had some resemblance to each other.
Justin Castro, has a nice ring to it.
LOL! Spoilsport...
The web has it that Pierre Trudeau resembled Castro. Which might just be a way of saying that the Kenyan goat herder was the spitting image of Malcolm Little.
Which might just be a way of saying that the Kenyan goat herder was the spitting image of Malcolm Little.>>>>>>>>>>>>>>>>>>>>>>>>>
Elizabeth Trutwin, a master channeller, insists that it is a fact, and has been yelling it out for years:
https://pathwaytoascension.wordpress.com/2015/02/01/malcolm-x-president-obamas-biological-father/
But the recently developed science of facial recognition, as it is related to computer based scanning security software, indicates the father son relationship between Malcolm X and Obama.
It is possible that Margaret Trudeau met Castro in 1969 0r so.
She graduated fronm University in 1968 and could have been travelling for a year. But the fact is that Trudeau’s ears are a perfect match with Fidel’s.
The question is how did then Margaret Sinclair tap into the Castro gene pool? It would be interesting to compare the Castro/Sinclair travel time lines for 1969.
This has not been done IMHO.

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.