back to article Latest FinFisher spyware upgrades 'particularly worrying,' says Kaspersky

Kaspersky has presented the findings of an eight-month probe into the FinFisher spyware toolset – including the discovery of a UEFI "bootkit" infection method and "advanced anti-analysis methods" such as "four-layer obfuscation." FinFisher, also known as FinSpy, is a product from Anglo-German spy firm Gamma International and …

  1. Zippy´s Sausage Factory
    Devil

    Kaspersky publish things like this...

    ...and for some reason most Western governments say "don't install that it's Russian".

    Bit odd that. Wonder if there might be another reason for it?

    1. Geez Money

      Re: Kaspersky publish things like this...

      Kaspersky is probably the only paid for security solution that's worth paying for from what I've seen.

    2. Anonymous Coward
      Anonymous Coward

      Re: Kaspersky publish things like this...

      If you were really cynical, you might suggest that Kaspersky are funded by the Russian government to identify and deconstruct best-of-breed infiltration tools so that the FSB can incorporate the findings in their own toolset.

      1. ThatOne Silver badge
        Stop

        Re: Kaspersky publish things like this...

        While there is certainly a Russian organization analyzing foreign spy software (like there is an American one), advertising publicly its conclusions would be abysmally counterproductive! It would be like telling the enemy you've cracked his code, which will only result in him changing codes, making your success irrelevant.

        Sorry, no sinister commie plot here...

  2. cornetman Silver badge

    I'm puzzled as to why the activities of this company are not illegal in either the UK or Germany.

    Surely producing software that has the express intention of illegal intrusion into computer systems is an offence that should be worth jail time to someone?

    1. Geez Money

      "BuT wE oNlY mArKeT tO pOlIcE"

    2. elsergiovolador Silver badge

      We have a two tier legal system. Some laws only apply to the pleb.

      1. Snake Silver badge

        Two-tier legal system

        But remember: We the voters keep voting them in...

        Year after year after year...

        1. elsergiovolador Silver badge

          Re: Two-tier legal system

          That's why we can vote...

          1. Anonymous Coward
            Anonymous Coward

            Re: Two-tier legal system

            Cos if voting had any real affect, then we wouldn’t be allowed to

            1. amanfromMars 1 Silver badge

              Re: Two-tier legal system

              Cos if voting had any real affect, then we wouldn’t be allowed to .... FlamingDeath

              Sir Winston Churchill, PBUH, the last effective UKGBNI dictator, was not an enthusiast of democracy, realising as he clearly did, the inherent systemic flaw which rendered it a project never to be a prime contender for excellence in both private and public service.

              The best argument against democracy is a five-minute conversation with the average voter. ........ Winston Churchill

              And with education severely compromised practically everywhere, is that situation exacerbated and problems are increased and made worse ‽ .

        2. Anonymous Coward
          Anonymous Coward

          Re: Two-tier legal system

          "Whoever you vote for, the Goverment wins"

          The conspiracy theorists believe that there is a level above every Gov.

          I'm starting to feel the same way.

          1. amanfromMars 1 Silver badge

            Re: Two-tier legal system

            The conspiracy theorists believe that there is a level above every Gov.

            I'm starting to feel the same way. ...... Anonymous Coward

            And to not realise there are any number of much higher and more efficient and/or ruthlessly extravagant levels way above and far beyond the reach of any Gov. has one blissfully unaware of much more than just who and/or what is deciding both the nature and fate of future human existence.

            Such though is maybe a blessing in disguise given the toll such machinations exact on the less than well enough prepared for the experience and tasks which be forging ahead.

        3. eldoc

          Re: Two-tier legal system

          No, some of us do. The rest of us actually have no say at all thanks to the UK's 19th century electoral system.

        4. Irongut Silver badge

          Re: Two-tier legal system

          You may keep voting them in.

          I have yet to vote in a UK government and I've voted in every General Election for the last 30 years.

    3. ThatOne Silver badge
      Devil

      > I'm puzzled as to why the activities of this company are not illegal

      Same reason arms manufacturers aren't illegal. In both cases the detention and use is limited to those who make those laws, and they won't, well, shoot themselves in the foot... They need those "tools" to keep a lid on whoever tries to challenge them.

      You would do the same, wouldn't you...

    4. Anonymous Coward
      Anonymous Coward

      re. I'm puzzled as to why

      ah, don't be silly, because our services, working for the force of Good, use this solution and so, as in the past cases, when stink was too strong, it would be 'against the public interest to persue the matter further'. Do as I say, don't do as I do.

  3. amanfromMars 1 Silver badge

    I agree, and knowledge sets one free .... however, if ever spun in a malcontented light ....

    "I believe complex threats such as FinFisher demonstrate the importance for security researchers to cooperate and exchange knowledge," Kuznetsov concluded,

    As remarkably effective as that simple collaboration is/may be, such a call for crack hacking teams aka security researchers to forge ahead JOINT Venturing is surely bound to tickle the fancy of the LEO* community and proscriptive justice system .... Ambulant Chasers ..... viewing the ACT**ion as a threat very likely to reveal some very dodgy, mostly unpleasant and inequitable secrets which their services are being used and abused and misused to protect and prevent from becoming general public knowledge.

    LEO* .... Law Enforcement Office

    ACT**... Advanced Cyber Threat

  4. naive

    Which western company was it who proposed UEFI

    claiming it would be a secure way to boot ?.

  5. Anonymous Coward
    Anonymous Coward

    "supplied exclusively to law enforcement and intelligence agencies"

    Translation: "supplied exclusively to political manipulators and assassins".

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon