4 ms·
What criteria is used to determine that malware could only possibly have been made by a nation state? If all it takes is specialist teams and a budget in the mi
by DavidWanjiru 10y ago
What criteria is used to determine that malware could only possibly have been made by a nation state? If all it takes is specialist teams and a budget in the millions of dollars (presumably, had it been 10s or 100s of millions, that's what they'd call it), lot's of private entities can pull that together, can't they?
- bradford 10y agoThey probably could, but would they? At least in the US, publicly traded tech companies are accountable to shareholders: There's some transparency in the accounting, and it's hard for them to throw millions of dollars at a problem before shareholders start asking tough questions.
- DavidWanjiru 10y agoBut a military contractor type of company has lots of obfuscation leeway with "top secret" type of things, doesn't it? And I'd imagine a defence contractor is the type of company that would be interested in the kind of info this kind of malware can gather.
- SCHiM 10y agoThere is some evidence that CITIC Group, a Chinese company, is heavily involved in corporate espionage and the manipulation of foreign nations. There's no particular reason that other large companies, no matter their home countries, could not also be engaged in these types of activities.
- emmelaich 10y agolink: http://www.securityweek.com/chinese-attackers-conduct-cyberespionage-economic-gain http://www.securityweek.com/chinese-attackers-conduct-cybere...
- ryanlol 10y agoThey simply pretend that all skilled attackers are state actors. Due to how the industry works, they're usually correct.
- wepple 10y agoMy gut feel is that governments have a much more significant ability to do things such as: "hey, we're going to do this thing and you're not entitled to ask about it" than private sector.