TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Shopping for Spy Gear: Catalog Advertises N.S.A. Toolbox

258 pointsby slashdotaccountover 11 years ago

16 comments

ihswover 11 years ago
Somehow I doubt Al Qaeda is using Juniper, but our allies (read: economic adversaries) are.<p>I hope the companies listed -- Dell, Cisco, Juniper, IBM, Western Digital, Seagate, Maxtor, et al -- are happy with themselves. The government&#x27;s mantra has historically been similar to that of Microsoft&#x27;s: embrace, extend, extinguish. The US Government is no different and they&#x27;ll happily throw every company under the bus for the smallest advantage over their adversaries.<p>America&#x27;s rivalry with China is continually climbing higher and higher, and we&#x27;re getting dragged along whether we like it or not. The unshakable intertwining of private and public industries, the scorched-earth economic policies where private industry is consumed for the benefit of the public, the unlimited spying powers -- all to stay ahead of China.<p>The real kicker is that this kind of spying power compounds on itself -- as soon as we get Juniper gear exploited then we can move onto infiltrating Seagate&#x27;s intranets, and then we can use Seagate exploits to more easily dig into hard-drives accessible by us&#x2F;in custody by us. We may never be able to make a distinction between which tech companies have been exploited and which are wilfully&#x2F;maliciously passing vulnerability information to the US Government.
评论 #6980493 未加载
评论 #6982087 未加载
评论 #6982731 未加载
评论 #6981537 未加载
malandrewover 11 years ago
This new information puts American companies at even more risk of lost sales since given two companies, American Company and Foreign Company, the NSA is always going to have a massive advantage in penetrating the American company to get as much information they want to produce these backdoors. Whenever they fail to remotely access the company networks containing the IP for all the equipment they want to target, they have many more options available to physically access the network of these companies, possibly going as far as having a mole working at the companies, exfiltrating the IP they need to produce the tools in the catalog or even deliberately putting in backdoors.<p>This is probably the most damning information I&#x27;ve seen of NSA activities. This is anti-American activity since it clearly harms US economic interests. This coupled with the policy that spying on foreigners is fair-game is enough reason to give any foreign government or company enough reason never to purchase equipment from US tech companies.<p>As an engineer in the US, this makes my blood boil. I really hope that this new information generates more interest in open-source network software and hardware.
评论 #6981860 未加载
评论 #6982977 未加载
评论 #6981683 未加载
w1ntermuteover 11 years ago
After all these years of free software proponents advocating for open source BIOSes and getting mocked for their supposed impracticality, we see the truth.
评论 #6979817 未加载
评论 #6979638 未加载
评论 #6979720 未加载
fabian2kover 11 years ago
The NSA must have an enormous pile of unkown exploits to facilitate all that. I wonder how they prevent other US agencies and government networks to be vulnerable to the exploits the NSA uses itself, or if they even bother trying to do that.<p>Leaving pretty much the entire IT infrastructure vulnerable seems like a very dangerous strategy.
评论 #6979565 未加载
评论 #6979614 未加载
评论 #6980252 未加载
评论 #6979900 未加载
mmaunderover 11 years ago
The damage that this does to US software and hardware manufacturers and service providers like hosting companies is incalculable. The NSA is providing a strong ongoing incentive to buy your hardware offshore and host your servers offshore. As an American entrepreneur I&#x27;m horrified by the long term implications of this. It seems for all the mathematicians they employ they&#x27;re unable to see that the long term cost of these programs far outweighs the short term benefits.
评论 #6981198 未加载
评论 #6982563 未加载
评论 #6981055 未加载
评论 #6982608 未加载
f_salmonover 11 years ago
This is it.<p>Literally everything is infected.<p>Again, either the NSA goes (and you know that won&#x27;t happen) or information technology goes or democracy as we know it goes.<p>Everyone, take your pick now.
评论 #6980846 未加载
评论 #6980538 未加载
superuser2over 11 years ago
So essentially an internal, military-grade Metasploit.<p>It&#x27;s not surprising that NSA would develop and maintain a strong repertoire of exploits for popular infrastructure. What else did you think an organization tasked &quot;to produce foreign signals intelligence information&quot; was doing with all those computer security experts on staff?<p>Is there evidence that NSA was <i>planting</i> backdoors or that US tech firms were cooperating? Isn&#x27;t it more likely that NSA was simply discovering (and possibly purchasing) 0-days just like everyone else?<p>They can do that with foreign equipment just as easily. Switching to non-US hardware is just irrational.
confluenceover 11 years ago
Stallman was right. Again. <a href="http://stallman.org/stallman-computing.html" rel="nofollow">http:&#x2F;&#x2F;stallman.org&#x2F;stallman-computing.html</a><p>Trust nothing. Everything is a lie.
K0nservover 11 years ago
Anyone have a copy of the suposed catalog? I didn&#x27;t find a source in the article.
评论 #6979967 未加载
评论 #6979926 未加载
blhackover 11 years ago
How on earth could this possibly be verified?<p>If I was the NSA right now, I would be &quot;leaking&quot; tons of fake, and fantastic, stories about myself in order to discredit any legitimate concerns.<p>I can imagine the talking heads now &quot;well what else were these conspiracy theorists wrong about? Personally I&#x27;m glad somebody is out the protecting our freedom.&quot;<p>etc.
评论 #6980108 未加载
Zaephyrover 11 years ago
This sorts news makes me shake my head. The scammers are trying to get in, the NSA is in, and now every other state security organisation will feel if they don&#x27;t try to get in they will be falling behind.<p>All I want is to do is keep clients safe and out of all this cross-fire.
1457389over 11 years ago
With a proper oversight regime and individualized warrants, I can see this being an acceptable use of NSA power. With the absurd degree of intrusive latitude the NSA possesses now, it just makes it easier for them to violate civil liberties on a massive scale. Very few people can avoid being compromised by backdoors in these devices and companies, the same way very few people can avoid the physical threat of government aggression. The difference is that the latter has a far more robust system of controls to ensure it is used judiciously and ethically. Until the former has the same, we need to do everything we can to limit or invalidate the NSA&#x27;s power.
adamorsover 11 years ago
How did this get submitted when the exact same link was posted 2 hours ago? <a href="https://news.ycombinator.com/item?id=6979240" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=6979240</a>
评论 #6979556 未加载
评论 #6979559 未加载
评论 #6979542 未加载
weppleover 11 years ago
This article feels like it may be somewhat misleading around the use of the term &quot;back door&quot;.<p>If the NSA has infact backdoored all of those products, kudos for keeping it quiet for this long!<p>if however these products have vulnerabilities in them, like all software does, and the NSA have access to these vulnerabilities (like numerous other people do), it&#x27;s not quite as devious.<p>In that case they didn&#x27;t have a super-secret backdoor installed with no-one noticing, but in fact discovered that the window wasn&#x27;t locked, and kept that a secret.
dansoover 11 years ago
Mostly OT: besides the technical details, I&#x27;m interested in seeing the actual descriptive text for these items. In my mind, the tone would be something similar to this parody <a href="http://www.teamfortress.com/sniper_vs_spy/day04_english.htm" rel="nofollow">http:&#x2F;&#x2F;www.teamfortress.com&#x2F;sniper_vs_spy&#x2F;day04_english.htm</a>
jawertyover 11 years ago
Can&#x27;t wait to get Google Glass...
评论 #6981649 未加载