Results 1 to 15 of 15
  1. #1
    Thailand Expat

    Join Date
    Feb 2009
    Last Online
    04-11-2019 @ 05:15 AM
    Posts
    3,857

    "Super-advanced malware"

    Destroying your hard drive is the only way to stop this super-advanced malware

    Feb 17, 2015


    A cyberespionage group with a toolset similar to ones used by U.S. intelligence agencies has infiltrated key institutions in countries including Iran and Russia, utilizing a startlingly advanced form of malware that is impossible to remove once it's infected your PC.
    Kaspersky Lab released a report Monday that said the tools were created by the “Equation” group, which it stopped short of linking to the U.S. National Security Agency.
    The tools, exploits and malware used by the group—named after its penchant for encryption—have strong similarities with NSA techniques described in top-secret documents leaked in 2013.
    Countries hit the most by Equation include Iran, Russia, Pakistan, Afghanistan, India and China. Targets in those countries included the military, telecommunications, embassies, government, research institutions and Islamic scholars, Kaspersky said.



    Infirm firmware

    Kaspersky’s most striking finding is Equation’s ability to infect the firmware of a hard drive, or the low-level code that acts as an interface between hardware and software.
    The malware reprograms the hard drive’s firmware, creating hidden sectors on the drive that can only be accessed through a secret API (application programming interface). Once installed, the malware is impossible to remove: disk formatting and reinstalling the OS doesn’t affect it, and the hidden storage sector remains.





    Destroying your hard drive is the only way to stop the super-advanced Equation malware

  2. #2
    Thailand Expat
    Join Date
    Jun 2014
    Last Online
    @
    Posts
    18,022
    The end is near.

    Supposed we woke up tomorrow and all was gone.
    We'd have to get on connecting with real life.
    Most would suffer greatly, as the conditioning is so deep.

    ...oh well.

  3. #3
    Thailand Expat

    Join Date
    Feb 2009
    Last Online
    04-11-2019 @ 05:15 AM
    Posts
    3,857
    Quote Originally Posted by thaimeme View Post
    The end is near.

    Supposed we woke up tomorrow and all was gone.
    We'd have to get on connecting with real life.
    Most would suffer greatly, as the conditioning is so deep.

    ...oh well.
    I would say you need help, but it would not be of any use. I suppose I should pity you. Maybe in my next life.

  4. #4
    Member

    Join Date
    Feb 2015
    Last Online
    10-04-2015 @ 02:56 PM
    Posts
    129
    The dependency is all encompassing. Every computer in the World failing suddenly, completely and irreversibly.

    Back to pens and pencils, and talking. Welcome to Hell.

    Som nam na.

  5. #5
    Thailand Expat VocalNeal's Avatar
    Join Date
    Jul 2007
    Last Online
    Yesterday @ 07:29 PM
    Location
    The Kingdom of Lanna
    Posts
    13,012
    Quote Originally Posted by Dan View Post
    The dependency is all encompassing. Every computer in the World failing suddenly, completely and irreversibly.

    Back to pens and pencils, and talking. Welcome to the pub.

    Som nam na.
    Fixed it for ya?

    Question do SSD's use the same type of interface?

  6. #6
    Thailand Expat
    chassamui's Avatar
    Join Date
    Feb 2009
    Last Online
    @
    Location
    Bali
    Posts
    11,678
    Quote Originally Posted by thaimeme
    Supposed we woke up tomorrow and all was gone. We'd have to get on connecting with real life.
    You would not recognise real life if it bit you on the arse. How are things on planet Jeff BTW?

  7. #7
    In Uranus
    bsnub's Avatar
    Join Date
    Jun 2009
    Last Online
    @
    Posts
    30,546
    Quote Originally Posted by chassamui
    planet Jeff
    Quote Originally Posted by Dan
    Welcome to Hell.

  8. #8
    Thailand Expat
    boloa's Avatar
    Join Date
    Dec 2009
    Last Online
    @
    Location
    Surin
    Posts
    3,877
    Fanny worm ????

    Isn't that something you can catch from those dirty beach road hooker in Pattaya

  9. #9
    . Neverna's Avatar
    Join Date
    Mar 2012
    Last Online
    @
    Posts
    21,286
    Countries hit the most by Equation include Iran, Russia, Pakistan, Afghanistan, India and China. Targets in those countries included the military, telecommunications, embassies, government, research institutions and Islamic scholars, Kaspersky said.
    Must have been Israel.

  10. #10
    Thailand Expat
    robuzo's Avatar
    Join Date
    Feb 2008
    Last Online
    19-12-2015 @ 05:51 PM
    Location
    Paese dei Balocchi
    Posts
    7,847
    "Kaspersky Lab released a report Monday that said the tools were created by the “Equation” group, which it stopped short of linking to the U.S. National Security Agency." Oh come now, don't be coy. If the NSA can do it, the FSB and China's MSS can't be far behind- the Iranians surely have some clever programmers, too. Won't be long til everybody's doin' it, as Commander Cody once said. Whoo-hoo. Or maybe more like Jim Kunstler says: http://www.amazon.com/World-Made-Han.../dp/0802144012

    Not the end of the world, but definitely a huge pain in the ass.

    Musical interlude, from a time before the Internets:
    “You can lead a horticulture but you can’t make her think.” Dorothy Parker

  11. #11
    I am in Jail
    stroller's Avatar
    Join Date
    Mar 2006
    Last Online
    12-03-2019 @ 09:53 AM
    Location
    out of range
    Posts
    23,025
    The tools, exploits and malware used by the group—named after its penchant for encryption—have strong similarities with NSA techniques described in top-secret documents leaked in 2013.
    Oh dear, must have been a leak, and now they're getting a dose of their own medicine...

  12. #12
    Excommunicated baldrick's Avatar
    Join Date
    Apr 2006
    Last Online
    Today @ 02:55 AM
    Posts
    24,824
    Quote Originally Posted by FlyFree
    to infect the firmware of a hard drive
    I have flashed the firmware on a hard drive before and it was not the easiest thing to do - maybe with premade connector it would be easier , but it was not done while it was hooked to the motherboard

    Quote Originally Posted by VocalNeal
    Question do SSD's use the same type of interface?
    SSD's have firmware - all of your peripherals have

    there has been talk in the past - and proof of concept malwares that reside in the boot roms of your network interface cards
    If you torture data for enough time , you can get it to say what you want.

  13. #13
    Thailand Expat

    Join Date
    Feb 2009
    Last Online
    04-11-2019 @ 05:15 AM
    Posts
    3,857
    To the (2) geniuses with their moronic end is nigh comments. This was posted as interesting info only. Technology advances daily. The dance between the users and the abusers will continue forever.

    It helps to just pick up some of the progress in this dance along the line, so one does not have to start desperate 'Is it a virus' threads.

  14. #14
    Thailand Expat harrybarracuda's Avatar
    Join Date
    Sep 2009
    Last Online
    @
    Posts
    97,015
    Quote Originally Posted by baldrick View Post
    Quote Originally Posted by FlyFree
    to infect the firmware of a hard drive
    I have flashed the firmware on a hard drive before and it was not the easiest thing to do - maybe with premade connector it would be easier , but it was not done while it was hooked to the motherboard

    Quote Originally Posted by VocalNeal
    Question do SSD's use the same type of interface?
    SSD's have firmware - all of your peripherals have

    there has been talk in the past - and proof of concept malwares that reside in the boot roms of your network interface cards
    A couple of lads demo'd a POC of Flash drive firmware infection last year. No doubt we can look forward to a new -and expensive- range of tamper proof devices soon....

  15. #15
    Pronce. PH said so AGAIN!
    slackula's Avatar
    Join Date
    Jul 2009
    Last Online
    @
    Location
    Behind a slipping mask of sanity in Phuket.
    Posts
    9,088
    Quote Originally Posted by baldrick
    I have flashed the firmware
    TD is not your personal erotica site.

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •