Navigation
Recherche
|
Government Spyware Vendor Left Customer, Victim Data Online for Everyone To See
mercredi 24 octobre 2018, 20:17 , par Slashdot
The Germany-based spyware startup Wolf Intelligence exposed its own data, including surveillance target's information, passports scans of its founder and family, and recordings of meetings. From a report: A startup that claims to sell surveillance and hacking technologies to governments around the world left nearly all its data -- including information taken from infected targets and victims -- exposed online, according to a security firm who found the data. Wolf Intelligence, a Germany-based spyware company that made headlines for sending a bodyguard to Mauritania and prompting an international incident after the local government detained the bodyguard as collateral for a deal went wrong, left a trove of its own data exposed online. The leak exposed 20 gigabytes of data, including recordings of meetings with customers, a scan of a passport belonging to the company's founder, and scans of the founder's credit cards, and surveillance targets' data, according to researchers. Security researchers from CSIS Security discovered the data on an unprotected command and control server and a public Google Drive folder. The researchers showed screenshots of the leaked data during a talk at the Virus Bulletin conference in Montreal, which Motherboard attended. 'This is a very stupid story in the sense that you would think that a company actually selling surveillance tools like this would know more about operational security,' CSIS co-founder Peter Kruse told Motherboard in an interview. 'They exposed themselves -- literally everything was available publicly on the internet.'
Read more of this story at Slashdot.
rss.slashdot.org/~r/Slashdot/slashdot/~3/EE1x7Dmd1VQ/government-spyware-vendor-left-customer-victim-...
|
56 sources (32 en français)
Date Actuelle
jeu. 21 nov. - 16:34 CET
|