Hooking Candiru: Another mercenary spyware vendor comes into focus
citizenlab.ca
citizenlab.ca
And I doubt this can be addressed without decreasing complexity.
Anything from MS, Google, and Apple cannot be trusted.
Open source has one really good benefit, Having more eyes on the code, which means less likely a bug goes undetected. It also means reduced effort for finding bugs. Though imo Linux is arguably more safer because if it's smaller surface area.
I think Linux (with additions like AppArmor/SELinux) is definitely more than enough for most high profile people. That coupled with Good Security practices (not running untrusted binaries, using end-to-end encrypted mediums for communication) imo should deter 99.9% of those surveillance attacks.
This a million times.
The concept is so simple it doesn't even need proof or examples as solid arguments, but just in case, here's one: the famous Interbase backdoor.
Interbase was a database engine by Borland. In 1994 some developer added a hardcoded credential backdoor to ease development, but forgot to remove it in production. The backdoor wasn't malicious, yet still dangerous as it gave administrator privileges to anyone; it went unnoticed for about seven years and multiple versions of the product. In mid 2000, Borland released Interbase as Open Source, and within six months the vulnerability was discovered and fixed.
https://www.schneier.com/essays/archives/2001/03/back_door_s...
The reason Candiru works is because Windows machines are general computing devices which give users almost complete access to the machine.
If you want a machine that malware cannot spy on, you want something non-general and locked down, like an Chromebook or iPhone or some other system with secure boot and mandatory code signing. There must be an authority that decides, “this is password stealer that must be blocked” vs “this is keyboard autocomplete handler and can be allowed”.
This requires standardized interfaces, code signing systems, auto updates, solid security boundaries, distributed app whitelists - lots of complex stuff. You can decrease complexity a bit, but if you go too far, you will end up with systems which are easy to compromise and hard to heal.
Another article on this also showed pricing reported by Citizen Lab, $1.8 per 10 devices if this is true this market will be exploding unless it will be heavily regulated..
https://blogs.microsoft.com/on-the-issues/2021/07/15/cyberwe...
>We believe Sourgum is an Israel-based private sector offensive actor or PSOA.
https://www.business-humanrights.org/en/latest-news/nso-grou...
The held include activists, reputed professors from IIT.
https://citizenlab.ca/?s=koregaon
https://www.washingtonpost.com/world/2021/04/20/india-bhima-... (paywalled)
https://www.washingtonpost.com/world/2021/07/06/bhima-korega... (paywalled)
https://www.washingtonpost.com/context/new-forensics-report-... (downloadable report)
This really gives you a perspective on how big this company is, having the resources and incentive to do these exploits instead of reporting it.
(instead of: https://www.bloomberg.com/news/articles/2021-07-15/israeli-f... )