39 karma · joined October 31, 2013
https://twitter.com/esizkur/status/389226368514289664
https://twitter.com/0x0000EBFE/status/394216393282830336
He doesn't even have a way to test whether or not a machine is "infected". He claims that it's based on problems booting from a CD and/or hearing audio interference. Extremely dubious.
No, they aren't. Not by a long shot. They sound vaguely similar to some that are however, so people are overlooking the details that would take this from advanced malware to hollywood fantasy.
The entire audio channel theory is based on a simple twitter suggestion from a third party, and Dragos saying it must be correct because he has also been unable to remove audio interference from his home audio system.
He has yet to provide anyone else with anything but perfectly clean files, with signed and matching hashes from clean Windows 8 installations.
Although some of the methods he claims are rooted in things that have been demonstrated as a proof-of-concept in previous research, his claims represent added twists in ways that are very difficult to swallow. More importantly, it's based on assumptions, and not anything that has actually been analyzed.
(For what it's worth, I analyze malware professionally)