WikiLeaks Releases Alleged Documents on CIA Hacking

WikiLeaks Releases Alleged Documents on CIA Hacking

WikiLeaks released thousands of documents that it said described the sophisticated software tools the Central Intelligence Agency uses to break into smartphones, computers and even internet-connected televisions, on Tuesday March 7.

The documents, which have not been confirmed as authentic to the CIA, include 7,818 web pages with 942 attachments, WikiLeaks said. The group has named the collection of released documents, “Vault 7.”

The source of the documents was not named, although it did say that Vault 7 had been “circulated among former U.S. government hackers and contractors in an unauthorized manner, one of whom has provided WikiLeaks with portions of the archive.”

The documents are dated from 2013 to 2016 and WikiLeaks has described them as “the largest ever publication of confidential documents on the agency.”

On Tuesday, a former intelligence officer who reviewed the documents said some of the code names for CIA programs, an organization chart and the description of a CIA hacking base seemed to be genuine.

Information released in these documents hint that CIA agents and allied intelligence services have been able to bypass encryption on popular phone and messaging services such as Signal, WhatsApp and Telegram.

In addition to the encryption hack, the documents also talk of a program code-named, “Weeping Angel” which uses a Samsung smart TV as covert listening devices. According to the WikiLeaks documents, even when the TV appears to be turned off, it is still on and listening to the conversations around it to send to CIA servers. The release said this program was created in cooperation with British intelligence.

Another program detailed in the documents is Umbrage, a voluminous library of cyberattack techniques that the CIA has collected from malware produced by other countries. Based on the leaked documents, CIA agents are able to mask the origin of some of its cyberattacks and confuse forensic investigators.

If proven to be authentic, the Vault 7 archive will fall into the same category as the biggest leaks of classified information in recent years, including the quarter million diplomatic cables taken by Chelsea Manning, the former Amry intelligence anyalyst and given to WikiLeaks in 2010, and the hundreds of thousands of documents taken from the National Security Agency by Edward Snowden and given to journalists in 2013.

Featured

  • Maximizing Your Security Budget This Year

    Perimeter Security Standards for Multi-Site Businesses

    When you run or own a business that has multiple locations, it is important to set clear perimeter security standards. By doing this, it allows you to assess and mitigate any potential threats or risks at each site or location efficiently and effectively. Read Now

  • New Research Shows a Continuing Increase in Ransomware Victims

    GuidePoint Security recently announced the release of GuidePoint Research and Intelligence Team’s (GRIT) Q1 2024 Ransomware Report. In addition to revealing a nearly 20% year-over-year increase in the number of ransomware victims, the GRIT Q1 2024 Ransomware Report observes major shifts in the behavioral patterns of ransomware groups following law enforcement activity – including the continued targeting of previously “off-limits” organizations and industries, such as emergency hospitals. Read Now

  • OpenAI's GPT-4 Is Capable of Autonomously Exploiting Zero-Day Vulnerabilities

    According to a new study from four computer scientists at the University of Illinois Urbana-Champaign, OpenAI’s paid chatbot, GPT-4, is capable of autonomously exploiting zero-day vulnerabilities without any human assistance. Read Now

  • Getting in Someone’s Face

    There was a time, not so long ago, when the tradeshow industry must have thought COVID-19 might wipe out face-to-face meetings. It sure seemed that way about three years ago. Read Now

    • Industry Events
    • ISC West

Featured Cybersecurity

Webinars

New Products

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance. 3

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions. 3

  • HD2055 Modular Barricade

    Delta Scientific’s electric HD2055 modular shallow foundation barricade is tested to ASTM M50/P1 with negative penetration from the vehicle upon impact. With a shallow foundation of only 24 inches, the HD2055 can be installed without worrying about buried power lines and other below grade obstructions. The modular make-up of the barrier also allows you to cover wider roadways by adding additional modules to the system. The HD2055 boasts an Emergency Fast Operation of 1.5 seconds giving the guard ample time to deploy under a high threat situation. 3