Russians Suspected of Uroburos Spy Malware
judgecorp writes "While Russia's political activity is center stage, its cyber-espionage apparently continues. Russian intelligence is strongly suspected of being behind the Uroburos malware which is targeting Western governments and commercial organizations. There are Russian-language strings in the code, and it searches its victims' systems for Agent BTZ, malware used in previous attacks believed to have been carried out by Russia."
to the NSA?
So any google translating script kiddie can make malware that puts the blame on Russia by just throwing random ruskie strings in and searching for alleged russian virii?
Who came up with this scheme, the same person that talked about WMD in Iraq?
HTTP/1.1 400
Everyone is copying the US now. I wonder where Russia's GITMO will be?
That's kind of cute. I take it that for you history begins in the year 2000 and is limited to the US?
Just as an FYI, Russia (nee Soviet Union) has been involved with espionage via computer for a very long time. One famous case:
The Cuckoo's Egg: Tracking a Spy Through the Maze of Computer Espionage
much of left-wing thought is a kind of playing with fire by people who don't even know that fire is hot - George Orwell
"In Soviet Russia, computer attacks you!"
I sincerely, sincerely hope that you're joking. Whatever problems the United States may currently face, it is nothing compared to the Gulag Archipelago of the Soviet System. And I think you will find that the current regime has no problem with "extraordinary rendition" to faraway places, either.
Except that GP was not talking about copying the US' computer-based espionage operations, but the US' various illegal wars.
You know, there is a bit of a mess unfolding in Ukraine. There are pro-russian and pro-european factions and the russians are obviously supporting the former -- with a completely illegal show of force.
Less well known is that the pro-european factions supported by the West are largely far-right nationalists. Neonazis, pretty much. See, e.g. this piece by Max Blumenthal.
Gosh, thanks. That must be why the other ships call me Meatfucker -- GCU Grey Area (Eccentric)
Yep. They're the trendy bad guy this week. Also, to recap:
Protests in Ukraine = good whereas protests in Thailand = bad. It all depends no who is about to be overthrown so a puppet that is friendly to the agenda of the IMF can be installed.
The problem is that there are -so many- weak links these days. Anything, be it the application, web server, backend server, DB server, Web browser, Web browser add-ons, OS, firmware, NIC firmware, router, switch, can have a weakness that can be easily exploited to cause a lot of issues. Air-gapping will help prevent those attacks, but I'm sure if it is a big organization wanting the data, rich enough to buy 0-day exploits from an auction, they are rich enough to have "boots on the ground" in a target country to perform physical attacks (sticking a USB flash drive into a machine and letting Autorun/Autoplay do the rest, for example.)
In the '90s, the computer industry had two choices, go the secure route, or go the cheap route. It is obvious how the industry went. Even languages that could offer provable security with known states are all but dead [1], so there is no way other than just keep patching holes, to have any semblance of solid security these days.
It would be nice to start from scratch. There are still ways to have provable states and know how a program will function, even with edge/corner cases. Similar with hardware. If we go with known good embedded operating systems, an attack on an IP stack will have limited consequences.
[1]: Ada may be ugly, but it does offer provable security.
The problem is that people have forgotten the atrocities of the Soviets...all the many atrocities done by the USSR or their puppets are history virtually forgotten since the Berlin Wall fell.
Maybe that's because the Soviets/USSR doesn't exist anymore, and hasn't since 1991. If you think Putin's regime is equivalent to the USSR, then you should probably do a re-fresh of your geo-political perspective.
Instead, the focus is on how evil the US is...
You're right! Instead, let's focus on the past evils of the USSR and ignore the more recent evils of the US. Forget the NSA...KGB! US invasion of Iraq? No no no! Soviet invasion of Afghanistan! Abu Ghraib was nuthin compared to Kolyma, Norilsk, or Vorkuta!!! USA! USA! USA!
Your strategy should really improve the credibility and moral authority of the US in the eyes of the rest of the world going forward. Why didn't someone think of this earlier?!?
The problem is that American Exceptionalists pretend their shit doesn't stink. You want to talk about Stalin's gulags? Great! But then lets also talk about how the United States was formed by genocide, slavery, and conquering nations that hadn't attacked us. You want to talk current events, start by explaining how Putin is in the same universe as torturing, democracy overthrowing, murdering, invading, droning, innocent-imprisoning universe as George W. Obama?