TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Nokia 'paid millions to software blackmailers six years ago'

117 pointsby rpledgealmost 11 years ago

9 comments

swatthatflyalmost 11 years ago
I always wondered how you do paperwork for something like this. It must be a nightmare from an accountant perspective. What is the bill code for "blackmail" when you file the income tax and you write a 6 figure expense. In the end your cash has to balance out, you cannot not declare it. Anybody with experience in something like this?
评论 #7905756 未加载
评论 #7905722 未加载
a2techalmost 11 years ago
&#x27;the money was delivered but the police lost track of the culprits&#x27;<p>A solid showing by the Helsinki police
评论 #7905993 未加载
评论 #7905638 未加载
评论 #7905766 未加载
评论 #7905725 未加载
评论 #7908593 未加载
评论 #7905764 未加载
0x0almost 11 years ago
That&#x27;s absolutely insane! Even after paying the ransom, how could they be sure noone were still sitting on the keys? Assuming it&#x27;s code signing keys, it sounds incredibly irresponsible to not (force) update all devices anyways.<p>Is really the only thing protecting the safety of those devices the promise of a blackmailer to not abuse the private keys they were sitting on?<p>... makes me wonder what else we don&#x27;t know about all the other vendors...
评论 #7906105 未加载
评论 #7907188 未加载
fidotronalmost 11 years ago
I can fully see how this could happen. Too many companies don&#x27;t understand the value of keys like this, and won&#x27;t until they have a similar situation.<p>I wonder how exactly the criminals came to have them in the first place, but would be willing to bet it was ultimately incompetence by someone at Nokia.
评论 #7908820 未加载
评论 #7910540 未加载
broolstorycoalmost 11 years ago
Ah yes, the good old days when software extortionists demanded cash in parking lots. To me Bitcoin seems much older than it actually is.
pdenyaalmost 11 years ago
Wow, that&#x27;s rough. Not much you can do against a vulnerability that&#x27;ll destroy the trust of your entire customer base. A DDOS is one thing but I probably would have paid the millions in this case.
评论 #7905739 未加载
cornholioalmost 11 years ago
&gt; Had it done so anyone could then have written additional code for Symbian including possible malware which would have been indistinguishable from the legitimate part of the software.<p>Like a rootkit then ? It&#x27;s a classic case of robbing the mob, as in &#x27;the people who actually own the phone you think you&#x27;ve bought&#x27;.
fucktheidalmost 11 years ago
they got the buckets, they got the source, they are anonymous.... release the code!
hyperion2010almost 11 years ago
I&#x27;m trying to imagine this happening to someone like Red Hat.<p>BM: &quot;We have the keys to your software repos give us money or we leak.&quot; RH: &quot;Here&#x27;s a tarball of the sources it make your life easier, knock yourselves out! Maybe we&#x27;ll even get some new developers!&quot;<p>Obviously there are reason&#x27;s why companies choose to keep their software closed source, but sometimes I wonder.
评论 #7905831 未加载
评论 #7905905 未加载
评论 #7909060 未加载
评论 #7905995 未加载