TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

NSA-linked Bvp47 Linux backdoor widely undetected for 10 years

35 pointsby thinkmassiveabout 3 years ago

5 comments

phendrenad2about 3 years ago
Terminology nitpick: This isn't a backdoor. This is an APT. (Otherwise, we need a new term for "code with an intentional security hole", which isn't what's happening here).
评论 #30453704 未加载
0cVlTeIATBsabout 3 years ago
The press release: <a href="https:&#x2F;&#x2F;www.pangulab.cn&#x2F;en&#x2F;post&#x2F;the_bvp47_a_top-tier_backdoor_of_us_nsa_equation_group&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.pangulab.cn&#x2F;en&#x2F;post&#x2F;the_bvp47_a_top-tier_backdoo...</a> The report: <a href="https:&#x2F;&#x2F;www.pangulab.cn&#x2F;files&#x2F;The_Bvp47_a_top-tier_backdoor_of_us_nsa_equation_group.en.pdf" rel="nofollow">https:&#x2F;&#x2F;www.pangulab.cn&#x2F;files&#x2F;The_Bvp47_a_top-tier_backdoor_...</a><p>This is an analysis of a file they obtained in 2013, which has elements that were revealed in the Shadow Brokers files. The list of victims is from those files, too, from 2017.
UltraViolenceabout 3 years ago
There&#x27;s almost never an indication how the backdoor is installed. Is there an internet exploitable vulnerability in the TCP&#x2F;IP stack?<p>Most home routers these days have firewalls enabled and no amount of NSA technical wizardry is going to get past those.
评论 #30451852 未加载
评论 #30451781 未加载
willyywtabout 3 years ago
The title is ambiguious: &quot;Bvp47 Linux backdoor&quot; means &quot;a virus called Bvp47 is a Linux backdoor&quot;, not &quot;Linux has a backdoor which is named Bvp47&quot;<p>The &quot;backdoor&quot; is refered from the pangulab report[1] but I think it actually means &quot;virus&quot; in common sense. (Maybe security people speek different technical jargons than linux users?)<p>[1] <a href="https:&#x2F;&#x2F;www.pangulab.cn&#x2F;files&#x2F;The_Bvp47_a_top-tier_backdoor_of_us_nsa_equation_group.en.pdf" rel="nofollow">https:&#x2F;&#x2F;www.pangulab.cn&#x2F;files&#x2F;The_Bvp47_a_top-tier_backdoor_...</a>
aborsyabout 3 years ago
&gt;&gt; In the case of the Bvp47 Linux backdoor, Pangu Lab researchers say that it was used on targets in the telecom, military, higher-education, economic, and science sectors<p>So basically NSA spies also on scientists and their research.