Posted on 08/15/2016 7:55:13 PM PDT by Mozilla
Has the NSA just been hacked? Security experts speaking with FORBES think its possible, after a group published malware and attack code allegedly belonging to the Equation Group, a crew linked to the US intelligence agency. But while many believe the leak looks legitimate, the hackers could have pulled off a very clever ruse. ---
Two days ago, on August 13, a group calling themselves The Shadow Brokers released files on Github, claiming they came from the Equation Group. The files included code allegedly designed to exploit firewalls from American manufacturers Cisco, Juniper and Fortinet . One Chinese company, Topsec, was also an Equation target, according to the leaks. None of the manufacturers had responded to requests for comment at the time of publication.
The hackers released 60 per cent of the files they claimed to have taken from the Equation Group. The Shadow Brokers said they would release the remaining data to the highest bidder in a Bitcoin auction (theyve received two bids so far). If they received an extraordinary 1,000,000 Bitcoins, worth roughly $560 million, they would release all the files.
(Excerpt) Read more at forbes.com ...
I meant GitHub.
Funny. I want them out of my private life.
So if nsa is hacked, everybody’s everything is up for grabs.
Yep, lower friction....
Go, Galt, GO!
The TSA agrees.
I believe this is the 2nd if not third posting of this.
>> I meant GitHub.
The politically correct GitHub is anything but gritty.
Have they located ILLary’s 30,000 emails?
The best thing may be to put links in all the versions, to one another.
Sometimes multiple posts really DO help with notoriety.
Are you media? You are taking my comments out of context. Whatever, enjoy the feeling. Have a good night.
torpedo scandal
Those rarely mention how the dearth of 1920's - 1930's funding for military R&D also led to Congressional micromanagement of, and corruption in, funding of military R&D. Basically the US Navy's civilian manufacturing staff for torpedoes were heavily Congressional patronage appointees who were undisciplined and didn't give a hoot for quality control.
American defense procurement is getting that bad or worse, and this particularly applies to "black" budget procurement when the consequences of failure are so indirect as to be impossible to attribute to a given item. I.e., the hardware and software procurement for electronic security is very subject to Congressional meddling and mandates, and getting worse all the time. The contracts are micromanaged by Congress based on campaign contributions, aka kickbacks, by generous contractors to deserving Senators and Congressmen.
Who share with each other. Congressional committee chairs and even appointments are determined based on bribery. There are even on-line pricelists. See the photographs in Peter Schweizer's _Extortion_ here:
https://www.amazon.com/gp/product/0544103343/ref=oh_aui_search_detailpage?ie=UTF8&psc=1
This will only get worse until we lose a city to terrorist nukes or lose a war, etc.
In the meantime the best electronic security in the US is found in the financial industry and very wealthy individuals. One of latter is Donald Trump, who is very aware of this issue.
You ought to go find an issue.
I have no direct knowledge of the inner workings at NSA but... Seems to me they are such a big and obvious target, and such a massive and well funded target, and a group who has INFOSEC as one of their primary missions... Do you really think they rely on regular old commercial grade firewalls that anyone and everyone has access to, and could explore and exploit vulnerabilities in?
If it were me, the commercial firewalls would just be the outer layer. Just there to keep the common riff-raff out. I'd use them to identify the good hackers that could get through them. The guys I wanted to backtrace. Inside I'd use another layer of custom, home-made firewalls that no-one had ever seen before and thus had little or no idea how to hack through. But all the while they tried, I'd be watching and learning about them. If I were really mean, I'd make these look like a second line of commercial firewalls. Just a little bait and misdirection.
The hackers released 60 per cent of the files they claimed to have taken from the Equation Group.
ie. 60% of the honeypot that was left for them. Now here's the real conundrum for anyone interested in those files. Are they the real thing? Or are they part of an elaborate trap. If you get them, and in any way use or act on the information within, will that send up a red flag that you're the one with the files? Kind of blows your anonymity. But if you don't act on the information, then what good is having it? Paying for it? Taking the risks of getting it? Release them to the Internet, that way your interest is lost in the noise of a zillion other people. But if it is common knowledge, where's your advantage in having it too?
It's a good thing I'm just a simple engineer. I'd hate to have to make those kinds of calls.
Didn’t Snowden release a communication a week or so ago, something about “it’s time?”
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.