Feeds

NSA writes more potent malware than hacker

Spooky project plots zero day defences

Internet Security Threat Report 2014

A project aimed at developing defences against malware that attacks unpatched vulnerabilities involved tests on samples developed by the NSA.

The ultra-secretive US spy agency supplied network testing firm Iometrix with eight worms as part of its plans to develop what it describes as the industry's first Zero-day Attack Test Platform.

Richard Dagnell, VP of sales and marketing at Iometrix, said the six month project also featured tests involving two worm samples developed by a convicted hacker. The potency of the malware supplied by the NSA far exceeded that created by the hacker.

"We hired someone to create worms from scratch. A freelancer, who did the same sort of work for NASA, and was imprisoned for seven years for hacking offences," Dagnell said.

Iometrix's Zero-day Attack Test Platform detected both of the samples of malicious code developed by the hacker, but only three of the eight malware samples supplied by the NSA. Dagnell said the six month project was offered to the firm out of the blue and came to an end in March. Although not wholly successful the detection of half the attacks thrown against Iometrix's platform showed its work was progressing along the right lines, Dagnell added.

Other security experts were more skeptical about whether it was taking the right approach.

"You don't need to write viruses to test security technologies. There's no shortage of new malware. Also you examine existing stuff and study techniques," said Graham Cluley, senior technology consultant at Sophos. ®

Internet Security Threat Report 2014

Whitepapers

Driving business with continuous operational intelligence
Introducing an innovative approach offered by ExtraHop for producing continuous operational intelligence.
The total economic impact of Druva inSync
Examining the ROI enterprises may realize by implementing inSync, as they look to improve backup and recovery of endpoint data in a cost-effective manner.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Simplify SSL certificate management across the enterprise
Simple steps to take control of SSL across the enterprise, and recommendations for a management platform for full visibility and single-point of control for these Certificates.