Friday, 17 January 2014

Kaspersky banks on London business folk to save the world

Eugene Kaspersky office opening
Building the UK's cyber security skill base and economy has been an ongoing goal of the UK government and its Cyber Security Strategy.
As such, many were no doubt pleased when Russian advanced persistent threat-buster and protector of all things nuclear, Kaspersky Labs opened a new 200-person office in London, promising that it will play a pivotal role in its crusade to "save the world from hackers".
Company founder and cyber-doomsday prophet, Eugene Kaspersky was on hand at the London launch – attended by V3 and all the other security movers and shakers – and went so far as to list the office as one of the firm's new command centres.
"Our mission is [to] save the world - it's really simple and easy to remember," he said. "This office space will be responsible not just for Great Britain's operations, but also for Europe and a little bit of global. We're recognising London as a great place, as an international city, where its easier to find the right people for our business that can help us to protect our customers and to save the world."
However, despite his bold statement, speaking to V3, Kaspersky said it wouldn't be superhero white hats that would lead the fight in the London office, but some of the UK's "best and brightest" pencil pushers and salesmen.
"This office will mainly be responsible for the sales and marketing team. Here it will be for Britain and Europe. This is a great city as it's global and its easier to find people that can work internationally than it is in places like Moscow, Germany and France. This is one of the main reasons we moved the command centre of our European operation to London," Kaspersky said.
Confused? So were we. How can salesmen save the world? However, the UK's going through a pretty big cyber skills drought at the moment, and pretty much every company and government agency is reporting difficulty finding cyber-savvy recruits. Even the newly launched National Crime Agency recently had to recruit unskilled people for its cyber team on specialist "training" scheme contracts late last year.
As a consequence it's actually probably a good thing Kaspersky's going to stick with its tried-and-tested Russian security gurus when it comes to actually taking on the malware-makers, as Mr Kaspersky explained.
"Most of our research and development is still based in Russia because the Russian engineers are the best. We're happy with Russian engineers and we know many British companies are happy with Russian engineers as well. It's the same in Silicon Valley and Israel. Everybody wants the best and that's them," he said.
Luckily, for any aspirational British white hat, Kaspersky did confirm he's on the hunt for a new member to his elite Global Research and Analysis Team (Great), so all is not lost for wannabe UK cyber experts.
"We have our security experts team and that's very international, we have people from everywhere in there. So we are looking for UK security experts as well, but only the best of the best," he told V3.
However, to any budding cyber expert looking to get into the team, be warned, you'll have some pretty big shoes to fill. For those who don't remember Great is an award-winning team responsible for finding and dissecting numerous bits of top-end malware, including the notorious Flame, Red October and Icefog campaigns.
Jobs will be needed, though, especially if 2013 is anything to go by. Last year saw an influx of advanced threats and if current forecasts are anything to go by, things are only going to get worse in 2014.
With this in mind – while we're still a little disappointed the London office won't be doing research and development – we can't help but wish the London marketers and any Brit lucky enough to get onto Kaspersky's elite team the best of luck.

PRISM: NSA snoops analysed 200 million text messages a day

A man in an alleyway using a mobile phone
The NSA has been collecting and analysing nearly 200 million text messages a day from around the world since at least 2008, leaked PRISM documents have revealed.
The Guardian revealed the operation, codenamed Dishfire, when it published slides from its official SMS Text Messages: A Goldmine to Exploit presentation leaked by whistleblower and ex-CIA analyst Edward Snowden.
The documents, which can now be viewed publicly online, show the US government intercepted SMS messages since at least 2008. At its peak in April 2011 the campaign was shown to intercept 194 million messages a day.
While this is a lot, Ovum estimates the daily number of text messages sent is 16.3 billion, so it represents only a fraction of the daily total.
The leaked documents showed the Dishfire campaign collected numerous types of data in its heyday. One slide showed that in a 24-hour period the campaign collected 1,658,025 roaming notification messages, more than 800,000 pieces of financial data and the co-ordinates of more than 76,000 messages.
The Guardian reported that further guidance documents for the UK GCHQ about the campaign revealed that the breadth and depth of information collected and stored during Dishfire forced the NSA to create an automated scanning tool, codenamed Prefer. The tool reportedly allowed the NSA to extract key metadata from the information to "enhance [its] current analytics".
An NSA spokeswoman attempted to downplay the significance of the snooping to the Guardian, saying the tool was only used against "valid foreign intelligence targets". At the time of publishing the US Department of Defense and the Department of Homeland Security had not responded to V3's request for comment on the report.
British law does not allow law enforcement to monitor text messages without a warrant, however the Guardian reported receiving documents proving that it did use at least some Dishfire data.
A Cabinet Office spokesperson told V3 while it could not comment on the the Guardian’s report directly, if GCHQ officers had used NSA data, they did so legally.

"It is a longstanding policy that we do not comment on intelligence matters. Furthermore, all of GCHQ's work is carried out in accordance with a strict legal and policy framework which ensures that our activities are authorised, necessary and proportionate, and that there is rigorous oversight,” they said.

It is currently unclear how much UK data was collected by Dishfire and at the time of publishing network carriers Three, EE and Vodafone had not responded to V3's request for comment.
Dishfire is the latest in a long line of revelations regarding the NSA's spy campaigns. Snowden leaked documents earlier in January showing that the NSA hacked over 100,000 computers based in countries around the world as part of its PRISM campaign, installing malicious code to turn them into covert cyber spying tools.