German Government's Malware Analyzed
First time accepted submitter lennier1 writes "The German hacker group CCC (Chaos Computer Club) has analyzed a piece of malware the German government uses in criminal investigations to spy on a suspect's computer. I'm sure we're all surprised that it's opening security holes for third parties, and violates a related court verdict (and several laws in general)."
"I'm sure we're all surprised that it's opening security holes for third parties, and violates a related court verdict (and several laws in general)."
No not really...
You want competant surveillance too? Sheesh, so demanding.
I'll go ahead and throw out the "if you've got nothing to hide" out there too, and see how this gets modded.
Absolute power corrupts absolutely. indymedia
I'm sure we're all surprised that it's opening security holes for third parties, and violates a related court verdict
This must be some new meaning for the word "all" that I have not come across before. Because it implies that "all" means a vanishingly small fraction of the population.
Those who can make you believe absurdities can make you commit atrocities. - Voltaire
I think there is something we don't know about. If they really got "official" version, then I am expecting that many heads in German federal government will fall.
I was going to scan the binaries with some anti-virus programs to see if their signatures were detected, but the downloaded tgz file comes up with errors when attempting to extract. Anyone else running into that problem?
Can this trojan upload child pornography (or any other incriminating files/images) to the suspects computer, to be collected as "evidence" at a later date? I suspect it can. And if this program can uninstall itself at a later date, then this is a perfect tool for "bring him in, boys". Oh George Orwell, how foresighted you were.
Seven puppies were harmed during the making of this post.
Want to play free poker? Login to
http://poker-gratuito.blogspot.com/ and find out how to do
free!
Communication uses the fixed banner string "C3PO-r2d2-POE" as handshake.
So, this could be the trojan we're looking for.
Also, the code contains a function called "_0zapftis_le_execute()".
"O'zapt is!" is the traditional opening phrase of the Munich October/Beer Festival, where the mayor taps the first barrel of beer with a hammer.
Source: http://www.ccc.de/system/uploads/76/original/staatstrojaner-report23.pdf
How can the US government keep doing stuff like ... what, it isn't the US government? Then it must be for the good of the country since only the US does stuff like this with anything other than good intentions, carry on.
This hopefully helps that state of the art anti virus software from now on will detect at least this variant of the trojan.
i have read the report linked to in the article. This report is written in german. Nothing hints in the binary itself that this is the "real thing". The analyzed binary is a windows-DLL with out exported functions. The C&C server the trojan is 207.158.22.134, which is allocated to Web Intellects in Columbus, Ohio, USA. The connection to the german government is only hearsay for now, we have to believe in it.
Yes, you too can foster Total Political Disintegration (Normal Mode), Totalitarian Rule (Easy Mode), New Nazi Order (Hard Mode), or Common Sense Government (Insane Mode) by pitting the various German political factions against one another via clever remote control of their computers at home and in the office!
Game Play includes: That's Not My Porn and Child Porn Prisoner internet insertion features, send copies of incriminating e-mails to political rivals and international newspapers, bonus mod features to hack China for bonus points or massive DOS attacks on known enemies of Anonymous (pick a target, any target), and many, many other features that have to be seen to believe. (Especially when taking remote control of laptop cameras to take pictures of Government at home and posting the more interesting captions all over the Internet.)
The German Government, working to make life more difficult for citizens and officials alike. You flew it, you blew it, you rue it. (This software law, that is.)
The Chaos Computer Club is probably not adequately characterized as a 'hacker group'. It was founded in 1981 as a computer club and, while hacking has always been their most prominent activity, they have grown not only into a nation-wide association of about 3000 members, but into an influential civil rights organization as well. Their expertise in matters of IT security is frequently called upon by public media in Germany. The CCC is well respected even by many politicians and their expertise was cited more than once by former Ferderal Minister of the Interior Gerhart Baum during the trial that ended last year with the Verfassungsgericht (federal constitutional court)'s finding that the federal anti-terror law that obliged providers to retain all telecommunications data for six months was unconstitutional. The CCC organizes the annual Chaos Communication Congress that Slashdot readers might remember as being the event where some major hacks were presented to the public: http://it.slashdot.org/story/11/01/02/0231242/detailing-the-security-risks-in-pdf-standard http://games.slashdot.org/story/10/12/29/204253/Playstation-3-Code-Signing-Cracked-For-Good http://it.slashdot.org/story/09/12/28/1931256/gsm-decryption-published http://games.slashdot.org/story/05/12/16/2157217/hacking-the-xbox The CCC is also well know for Project Blinkenlights, which grew out of the CCC but is now an independent project.
Or is it illegal for an app to find viruses that are questionably legal because he government spreads them?
Schroedinger's Brexit: The UK is both in and out of the EU at the same time!
Why don't we all ask WebIntellects what they're doing there?
United States. the political Mess Its readers and 880 w/512 Megs of supplies to private
That the Nazi Government of Fuehrer Angela Merkel is caught engaging in such Federal buffoonery is of no supprise.
The best thing to happen to the peoples of Deutshland is the nuclear bombing of the Chancellory by US Commander Jack Ripper.
Vell ... meet again ... Don't know vere ... Don't know ven. But I know ... zat ve vill meet again ... zome zunney day ....
++
does it run on Linux?
thegodmovie.com - watch it
In other news, the Piratenpartei recently made it to the Berlin City legistature with 8% of the vote and and are currently running nationally with that level of support. If they maintain this, they will be the 4th-5th largest party in Germany.
Mielipiteet omiani - Opinions personal, facts suspect.
So, if you're a criminal in Germany, all you have to do is install this software on your computer and then you have plausible deniability because anybody could have uploaded anything to your PC. Your PC could no longer be used as evidence.
Fucked that one up didn't you Germany!!!
Waterfox - a Firefox fork with legacy extension support, security updates and better privacy by default.
exporting the evidence outside of the state, country, and EU, to some random datacenter in the US, would mean a hairy pile of privacy and chain-of-custody problems for the chaps in legal?
Far more than that: it is exporting personal data outside of the country, this is against EU data protection laws. In particular the USA which has been found to NOT have a data protection standard that is good enough -- again a violation of EU data protection laws.
Sounds like they just copy/pasted subseven.
...of its own ridiculousness, they manage to pull off something even more stupid. These times the stuff you write on a postcard is better protected by German law than your private emails/data/whatever. It's like politician are afraid of the new technologies. :-/
Computer simulation made easy -- LibGeoDecomp
It called "Free Anti-virus Software". Or better yet lets have the proles pay to install our spy-ware {Norton, McA..., WindowMali...Tool, etc.)
In other news, the Piratenpartei recently made it to the Berlin City legistature with 8% of the vote and and are currently running nationally with that level of support. If they maintain this, they will be the 4th-5th largest party in Germany.
I think I see a political strategy forming...