Jump to content
livestyle

Ce ati face cu 287,000 euro

Recommended Posts

Eu as cumpara un singur program FinFisher

t is one of the more elusive commercial cyberespionage tools available. It is marketed as a way for governments to spy on criminals. And for over a year, virus hunters unsuccessfully tried to track it down. Now it is popping up across the globe, from Qatar to an Amazon server in the United States.

FinFisher is a spyware product manufactured by the Gamma Group, a British company that sells surveillance technology. It says its spyware offers “world-class offensive techniques for information gathering.” According to FinFisher’s promotional materials, the spyware can be “used to access target systems, giving full access to stored information with the ability to take control of the target system’s functions to the point of capturing encrypted data and communications.”

Security researchers who studied the spyware last month said it can grab images of users’ computer screens, record their Skype chats, remotely turn on cameras and microphones, and log keystrokes. The Gamma Group markets FinFisher as a way for government law enforcement and intelligence agencies to keep track of criminals, but the researchers’ findings suggested that it was being used more broadly.

The spyware first attracted attention in March 2011 after protesters in Egypt raided the country’s state security headquarters and found an offer to buy FinFisher for 287,000 euros, or $353,000. Then in May of this year, pro-democracy Bahraini activists, one in London, another in Washington and one in the Bahraini capital, Manama, started receiving suspicious e-mails, which they passed to a Bloomberg reporter.

Bill Marczak, a computer science graduate student, and Morgan Marquis-Boire, a security researcher with the Citizen Lab of the Munk School of Global Affairs at the University of Toronto, analyzed the e-mails and found evidence that they contained FinSpy, part of the FinFisher spyware tool kit. The term “FinSpy” itself appeared in the malware’s code.

The findings, published last month, suggested FinFisher technologies were being used for surveillance beyond suspected criminal activity. Martin J. Muench, the managing director of Gamma International, who develops the FinFisher line of products from Munich, did not respond to a request for comment, and a Gamma Group representative did not respond to e-mailed questions. Mr. Muench told Bloomberg that his company did not sell FinFisher spyware to Bahrain, and said the malware might have been a stolen demonstration copy or reverse-engineered by criminals.

But last week, security researchers at Rapid7, a security firm, took the earlier findings a step further. They studied the communication structure of the spyware and found that when they probed the I.P. address of a FinFisher-infected machine with unexpected data, it responded with a unique message: “Hallo Steffi.”

Rapid7 scanned the Internet to see if any other I.P. addresses returned the same message and found 11 I.P. addresses in 10 other countries: Indonesia, Australia, Qatar, Ethiopia, the Czech Republic, Estonia, Mongolia, Latvia, the United Arab Emirates and the United States.

The I.P. address tied to FinFisher in the United States is hosted by EC2, Amazon’s cloud storage service. Amazon did not respond to a request seeking further information about which customer was using its service to disperse the spyware. As of Monday afternoon, the spyware was still active on Amazon’s service.

Security researchers say their findings contradict Mr. Muench’s suggestion that the FinSpy samples they found were stolen demonstration copies or had been repurposed by criminals. For one thing, the researchers say the samples are too fully featured to be demonstration versions. For another, they questioned why a company that licenses its product at such a high cost would not have the ability to disable unauthorized copies remotely.

The researchers also said that the imbalance between the sophistication of the spyware and its distribution techniques contradicts Mr. Muench’s version of events. The spyware, researchers say, is highly sophisticated, particularly in its obfuscation, which circumvents more than 40 antivirus products on the market. But the unsophisticated way in which it is distributed — in suspicious e-mails rather than through sophisticated or even well-known security exploits, and from easily traceable command-and-control servers — suggests that those who engineered the spyware are much more sophisticated than those who distributed it.

“To steal a malware sample and re-engineer it with this level of encryption requires a set of skills that didn’t show up in the infection methods,” said Claudio Guarnieri, a researcher from Rapid7 who studied the samples.

Researchers said it was still unclear whether the spyware was being distributed by governments. The I.P. addresses hosting FinSpy in Australia and Bahrain can be traced to Canberra and Manama, their respective capital cities, which would seem to support that claim. But the I.P. addresses in Latvia and Indonesia, for example, are not located in their capital cities.

Link to comment
Share on other sites

De babii astia iti cumperi cateva 0-day si iti faci tu jde(zeci de) "Pesti".

Impresionanta poveste, totusi mi se pare exagerat. Daca te straduiesti putin(cam cu 2000$), poti si tu sa faci un astfel de "program devastator" (pare un simplu keylogger cu multe optiuni).

Toata "puterea" unui virus sta in raspandirea lui. Daca folosesti ultimele vulnerabilitati (java, word, yahoo XSS), ajungi la rezultate similare.

Link to comment
Share on other sites

287,000 euro? Caut trei programatori de top, ii platesc cu 10,000 pe fiecare si voi avea un produs care va surclasa fara probleme asa numitul 'FinFisher'.

:)) Tare amuzant e?ti. :)) Unde crezi tu c? g?se?ti programator de top sa îi dai 10.000 ? Poate s? le dai 287.000 la fiecare , ceea ce n-ai. :))

Link to comment
Share on other sites

Daca il angajezi pe Bill Gates Poti sa ii dai si 1.337.000$ ca tot nu obtii nimic. Ca sa poti sa faci ceva BUN trebuie sa ai ceva resurse.

OFF: Poate ca topicul asta va impulsiona rst sa creeze un astfel de soft :))

- Nu mai povestiti ce-ati face daca ati avea (Planurile de viitor , care nu corespund posibilit??ilor tale financiare, intelectuale ?i fizice, se numesc vise.)

Link to comment
Share on other sites

Toata lumea ar cumpara masini,bani,programe multe cacaturi ati da la saraci...Poi oameni faceti investiti in ceva fabrici creeati locuri de munca pentru acei saraci nu sa le dai bani degaba daca creezi un loc de munca pentru ei vor munci vor primi bani,afacerea prospera etc toata lumea manca o bucata de paine :).Si nu veniti cu prosti ca ce sa faci in romania ca nu merge nimic credeti voi asta :) cam atat pentru azi.

EDIT:

Ce fabrici poti sa faci de 280.000$ ?

Trezirea baieti! Nu mai scrieti aici dupa ce ati baut :))

ON: Mi se pare mai inteligent sa comentati cu legatura la ARTICOL. Titlul e pus doar sa atraga vizualizari!!! (Cu alte cuvine: Ne doare'm p**a de ce ai face tu)

Da adevarul ca nu ai ce face pacat de mentalitatea copiilor din ziua de azi :)

Edited by MazaBoY
Link to comment
Share on other sites

Ma a?teptam ca multi utilizatori sa posteze aici , sa descoperim si noi visuri frumoase.

Opinia mea : Dac? as avea 287,000 euro primu lucru care as face ar fii s?i num?r , sa vad dac? sunt to?i , dupa aceea imi cumpar un golf 6 (oricum mi-l cumpar si fara suma asta de pe forum) , o parte ai bag in banca si restul as investii in ceva.

Link to comment
Share on other sites


10 x http://www.emag.ro/hdd-western-digital-black-4tb-7200rpm-64mb-sata3-wd4001faex/pd/EXL7NBBBM/?ref=list_p1_l1
http://www.emag.ro/procesor-amd-fx-x8-8350-4000mhz-16mb-socket-am3-box-fd8350frhkbox/pd/ESK4KBBBM/?ref=list_p1_l1
2 x http://www.emag.ro/kit-dual-channel-kingston-16gb-2-x-8192mb-ddr3-2400mhz-khx24c11t3k2-16x/pd/E25RKBBBM/?ref=list_p1_l2
http://www.emag.ro/placa-de-baza-gigabyte-990fxa-ud3-socket-am3-ga-990fxa-ud3/pd/E8S7DBBBM/?ref=list_p1_l2
http://www.emag.ro/carcasa-cooler-master-haf-xm-neagra-cm-rc-922xm-kkn1/pd/EJVGTBBBM/?ref=list_p1_l1http://www.emag.ro/sursa-corsair-850w-atx12v-v2-31-cmpsu-850txv2/pd/E0FQ7BBBM/?ref=list_p1_l3
http://www.emag.ro/placa-video-gigabyte-nvidia-geforce-gtx670-2048mb-gddr5-256bit-dvi-hdmi-pci-e-gv-n670wf2-2gd/pd/ESWPKBBBM/?ref=list_p1_l1
http://www.emag.ro/placa-de-sunet-asus-xonar-d2x/pd/EY5RMBBBM/?ref=list_p1_l1
http://www.emag.ro/dvd-writer-asus-negru-bulk-sata-drw-24b5st-blk-b-as/pd/E81XTBBBM/?ref=list_p1_l3
http://www.emag.ro/tastatura-razer-deathstalker-usb-neagra-rz03-00800100-r3m1/pd/EG48KBBBM/?ref=list_p1_l6
http://www.emag.ro/mousepad-genius-gx-series-speed-g-31250001100/pd/E9SRTBBBM/?ref=list_p1_l9
http://www.emag.ro/mouse-optic-logitech-g600-mmo-gaming-usb-black-910-002865/pd/EM83KBBBM/?ref=list_p1_l8
http://www.emag.ro/boxe-genius-sw-hf-5-1-4500-125w-rms-wood-g-31730979100/pd/EMF6DBBBM/?ref=list_p1_l3
http://www.emag.ro/camera-web-a4tech-pk-760e/pd/EL812BBBM/?ref=list_p1_l1
http://www.emag.ro/monitor-led-dell-27-wide-dvi-hdmi-u2713hm-dl-272126906/pd/EC7KKBBBM/?ref=list_p1_l1
10 x http://www.emag.ro/server-dell-poweredge-t310-cu-procesor-intel-174-xeon-174-x3440-2-53ghz-4x1gb-2x1tb-h200-raid-sursa-2x400w-dl-271967005/pd/E4KVDBBBM/?ref=list_p1_l5

... mi-as face un super sistem ...

apoi as face contract cu o firma de cathering sa-mi aduca mancare la domiciliu pentru tot restul vietii ...

si as face contract cu rds sa-mi dea internet pentru tot restul vietii

sa fin sinceri ... ce altceva ne mai trebuie? =))

si sigur imi ramane cva de bagat in banca ... sa-mi fac alt sistem peste 5 ani .... cand asta o sa fie varza =))

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.


×
×
  • Create New...