5 ms·
>Its basically known as a fact they have loads of these exploits sitting in their toolbox ready to use when they have a enticing enough target. Do you have a s
by Moosdijk 6y ago
>Its basically known as a fact they have loads of these exploits sitting in their toolbox ready to use when they have a enticing enough target.
Do you have a source for this?
- heavyset_go 6y agoThere's a market for exploits that pays pretty well. Someone is throwing millions of dollars at them, and from what we can glean from investigations, leaks and whistle blowers, it's states that are buying them. One company in that space made world-wide news[1] by selling to governments. [1] https://en.wikipedia.org/wiki/Hacking_Team https://en.wikipedia.org/wiki/Hacking_Team
- Shared404 6y ago>[1] https://en.wikipedia.org/wiki/Hacking_Team https://en.wikipedia.org/wiki/Hacking_Team Also a good idea to DDG Phineas Phisher. You should turn up an interesting read on pastebin iirc. Edit: found it on exploit-db [0] https://www.exploit-db.com/papers/41915 https://www.exploit-db.com/papers/41915
- b06tmm 6y agoFirst time I've seen "DDG", well done.
- Shared404 6y agoThanks! I realized a while ago that I don't use google, so why should I recommend it to others, even in passing.
- cambalache 6y agoOK. But you should have said Bing
- Shared404 6y agoThe user interface I use and recommend to others is Duck Duck Go. Why would I recommend using Bing directly?
- cambalache 6y agoBecause that is the engine, the cosmetic is irrelevant. Unless you are choosing for the interface but that is not the concern of 99% of the people. We need a real independent searcher
- Shared404 6y agoI use DDG for the fact that it provides a privacy layer over Bing. There are of corse Yacy and other more independent options, but they aren't ready for most people.
- SulfurHexaFluri 6y agoThe whole NSA leaks thing proved it. They had a tool built for exploiting windows boxes which was leaked and converted in to the ransomware WannaCry which spread globally a few years ago.
- q3k 6y agoWho do you think the customers of ZDI, Zerodium, Azimuth and others are?
- loxias 6y agoGoogle "NSA TAO" -- Tailored Access Operations. AIUI, among other things they're responsible for developing, discovering, and weaponizing exploits used to access high value targets -- sometimes through fun techniques like "Quantum Insert", a sort of faster-man-in-the-middle attack. The wealth of exploits released in the equation group hack should put all doubts to rest.
- anonymousiam 6y agoSpot on. I expect this was a designed-in feature, but if I could prove it, I wouldn't be able to do so without going to jail.
- anonymousiam 6y agoFrom public sources: https://www.spiegel.de/international/world/catalog-reveals-nsa-has-back-doors-for-numerous-devices-a-940994.html https://www.spiegel.de/international/world/catalog-reveals-n...
- roywiggins 6y agohttps://en.wikipedia.org/wiki/EternalBlue https://en.wikipedia.org/wiki/EternalBlue
- deleted 6y ago[deleted]
- antegamisou 6y agoThe NSO Group, the Israeli team behind the Pegasus iOS spyware, have been accused of selling it to the UAE government. https://www.haaretz.com/middle-east-news/.premium-with-israel-s-encouragement-nso-sold-spyware-to-uae-and-other-gulf-states-1.9093465 https://www.haaretz.com/middle-east-news/.premium-with-israe...
- zahma 6y agoInterview with a nation state hacker for TAO at NSA. https://podcasts.apple.com/us/podcast/darknet-diaries/id1296350485?l=en&i=1000398842751 https://podcasts.apple.com/us/podcast/darknet-diaries/id1296... I believe they described their toolbox as metasploit on steroids. Some other episodes of darknet diaries also interview former and current government hackers.
- crtasm 6y agoOfficial website with full transcript + some nice pixel art: https://darknetdiaries.com/episode/10/ https://darknetdiaries.com/episode/10/