[Dailydave] Economic Espionage and Regin

Dave Aitel dave at immunityinc.com
Tue Nov 25 10:04:59 EST 2014


It's been catchy to look at the Snowden papers and all the trojans
coming out from "Western" governments and think that the 5 Eyes does
espionage in an unrestricted way the way the Chinese and Russian Axis
does. But they don't.

If they did, you'd see crowing reports from Kaspersky and Symantec that
they found information being stolen from Russian banks to aide UK
financial institutions. You'd see evidence in that M&A deals would be
going weirdly well for the UK using information that clearly could only
be gotten from hacking in the places Regin is found. This isn't what
you're seeing. You're seeing in Regin a focus on looking at cell towers
in areas where the UK is at war (Afghanistan).

While Regin clearly can be used to steal information, it's not stealing
information from places where economic espionage is done. This is the
opposite of what you find when you look at Russian or Chinese hacker
teams, which often are clearly using the same toolchain to gather
military intelligence and economic espionage. As I pointed out in my
Business Insider article
<http://www.businessinsider.com/expert-here-are-4-things-edward-snowden-gets-wildly-wrong-about-the-nsa-2014-10>, 
there's a big difference in the motivations and effects of the
respective teams.

Dave Aitel
Immunity, Inc.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.immunityinc.com/pipermail/dailydave/attachments/20141125/3c5e9a63/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <https://lists.immunityinc.com/pipermail/dailydave/attachments/20141125/3c5e9a63/attachment-0001.sig>


More information about the Dailydave mailing list