Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

TL;DR

Our target is using a network. We need access to that network. The sysadmin has the keys to the kingdom. The sysadmin uses Facebook. Through QUANTUM INSERT, we own anybody who uses Facebook. So we just need to figure out the IP address of the sysadmin.

If they use unencrypted telnet we just hack the account and grab the telnet server's IP address whitelist. With our resources and capabilities, this is so easy that someone should write a script to automate it and do it in bulk.

If they use SSH, we do it be listening to the connection. Even though we can't decrypt communications, we can figure out which IP addresses sysadmins are logging in from.

But it's not just us who are hacking routers. We can also hack the hackers ... and the rest is redacted. Shame. That would have been REALLY interesting.



Here's a brief description of QUANTUM, for those who are unfamiliar with it:

https://en.wikipedia.org/wiki/Tailored_Access_Operations#QUA...


Jesus. There's really no way to fight it other than going full RMS, is there? Who knows how many zero-days the NSA is sitting on for all major browsers. I wonder if they can attack sites that implement full end-to-end HTTPS.


I personally consider SSL little more than a placebo at this point. Moxie Marlinspike showed at Defcon 19[1] that SSL is easily compromiseable using upstream certificate authorities. He created Convergence[2] as a potential solution to it. But nobody's using it.

I went full RMS in 2007. Uncomfortable at first, but it's really the only way to stay unmonitored. Consider avoiding the gross anti-social bits of his personality, but don't throw the baby out with the bathwater.

1. https://www.youtube.com/watch?v=pDmj_xe7EIQ

2. http://convergence.io/


Well, just watch your latency. If the rate of kozy kitten images increase, you're being hacked! ;-)


You went full RMS, man. Never go full RMS.


Brilliant, just what I was looking for, all I could find was information on a scheme where they intercept computers and bug them with radio transimitters[1]. Can anyone tell me why the two codenames are so similar? It would seem that they're wildly different exploits.

[1] http://www.ibtimes.com/nsa-quantum-program-leaked-edward-sno...


> Can anyone tell me why the two codenames are so similar? It would seem that they're wildly different exploits.

A previous article, "How the NSA Plans to Infect ‘Millions’ of Computers with Malware" [0], linked to "a classified list" [1][2] of the various "QUANTUM*" programs entitled "There is More Than One Way to QUANTUM".

If I'm understanding your question correctly, the table in [1] and [2] should illustrate the (similarities and) differences.

[0]: https://firstlook.org/theintercept/article/2014/03/12/nsa-pl...

[1]: (TS/SI) https://s3.amazonaws.com/s3.documentcloud.org/documents/1076... (PDF)

[2]: (TS/SI) http://i.imgur.com/ZxVAnju.png (a screenshot of the slide in [1], for those who may prefer to avoid PDFs)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: