Posted by: fox
« on: 11. November 2024, 04:49:00 »Sophos Pacific Rim
heise.de: "Analysis and opinion: Sophos and the broken vow"
Inside the counter-offensive tactics, techniques, and procedures used to neutralize China-based threats
heise.de: "Analysis and opinion: Sophos and the broken vow"
(...) a manufacturer has collected data from its customers' IT systems that was not used to improve them, but explicitly to detect suspicious activity. The collection of necessary telemetry data to improve the systems only served as a front for mass surveillance without cause. In specific cases of suspicion, the manufacturer then even installed special surveillance software without the knowledge of the customers and against their presumed will, which is also capable of exfiltrating any files. This is normally called malware, the hotfixes were Trojans, the kernel implanted a rootkit and the procedure corresponds to that of cybercrime gangs and state attackers.