Jump to content

Kaspersky Lab Hacked

 

One of the leading anti-virus software providers has revealed that its own systems were recently compromised by hackers.

Kaspersky Lab said it believed the attack was designed to spy on its newest technologies.

 

Kaspersky Lab has apparently been hacked. The breach was first detected in early spring. Kaspersky says that the attackers accessed files but the files were not critical. The malware does not write to any disk, but rather the computer's memory. The hack consisted of 3 previously unknown techniques and is one of the most sophisticated hacks ever. 

 

 

Kaspersky Lab said that it had detected the breach in the "early spring", and described it as "one of the most sophisticated campaigns ever seen".

The malware does not write any files to disk, but instead resides in affected computers' memory, making it relatively hard to detect.

 

 

 

"This highly sophisticated attack used up to three zero-day [previously unknown] exploits, which is very impressive - the costs must have been very high," commented Costin Raiu, director of Kaspersky Lab's global research and analysis team.

 

I am personally curious as to the source of attack. The funding for such an attack must have been incredible. 

Sources: 

http://www.bbc.com/news/technology-33083050

 

https://blog.kaspersky.co.uk/kaspersky-statement-duqu-attack/

Link to comment
Share on other sites

Link to post
Share on other sites

Probably the NSA or GCHQ trying to find out if Kaspersky is already onto the successor for Regin. 

 

InB4 they blame Russia, China or North Korea.

Link to comment
Share on other sites

Link to post
Share on other sites

Was this the Duqu 2.0 attack that they reported on earlier today? The one that was used to spy on the iran nuclear agreement talks?

Ketchup is better than mustard.

GUI is better than Command Line Interface.

Dubs are better than subs

Link to comment
Share on other sites

Link to post
Share on other sites

Was this the Duqu 2.0 attack that they reported on earlier today? The one that was used to spy on the iran nuclear agreement talks?

 

yes

Link to comment
Share on other sites

Link to post
Share on other sites

Probably the NSA or GCHQ trying to find out if Kaspersky is already onto the successor for Regin. 

 

InB4 they blame Russia, China or North Korea.

Probably not China, because they are more interested in the low hanging fruit - faster profits.

 

But Russia?  No reason why it wouldn't be them, and plenty of reasons why it would.  You do know they (Kaspersky) are based in Moscow?

 

It is also entirely possible the whole thing is a false flag operation by Kaspersky looking for any change in access patterns/hack attempts after they released the report.

Link to comment
Share on other sites

Link to post
Share on other sites

3 Zero day exploits. Zero day exploits are like the nukes of the programming world, and 3 of them is pretty significant. The last time there was an attack with that many zero day exploits (4 to be exact) it was the Stuxnet virus that destroyed a bunch of Iran's nuclear centrifuges.

I am conducting some polls regarding your opinion of large technology companies. I would appreciate your response. 

Microsoft Apple Valve Google Facebook Oculus HTC AMD Intel Nvidia

I'm using this data to judge this site's biases so people can post in a more objective way.

Link to comment
Share on other sites

Link to post
Share on other sites

Dam, and I use them since my school gives them out for free for current student.

Link to comment
Share on other sites

Link to post
Share on other sites

Dam, and I use them since my school gives them out for free for current student.

They said that the information the hackers obtained does not affect users. You should still be okay. 

Link to comment
Share on other sites

Link to post
Share on other sites

Dam, and I use them since my school gives them out for free for current student.

 

Kaspersky are good enough that they were able to detect it in their own system heuristically, before any real harm was done. Other companies like Symantec are probably infected without knowing it. I'm kidding of course, Symantec have a definition for it already.

R9 3900XT | Tomahawk B550 | Ventus OC RTX 3090 | Photon 1050W | 32GB DDR4 | TUF GT501 Case | Vizio 4K 50'' HDR

 

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×