Germany Warns About Russian Anti-Virus Software

Germany's Federal Office for Information Security (BSI) cyber security authority has warned against using anti-virus software from Russian headquartered company Kaspersky. 

The BSI issued the statement concerning the conflict in Ukraine and said that the Russian information-technology businesses could be spied on, or forced to launch cyber attacks. 

The BSI has made no allegation of current problems with Kaspersky's products, but said the conflict in Ukraine and Russian threats against the European Union, NATO and Germany brought with them the risk of cyber attacks.

Kaspersky told BBC News that this notification had been "made on political grounds" and that it had no ties to the Russian government. "A Russian IT manufacturer can carry out offensive operations itself, be forced against its will to attack target systems, or be spied on as a victim of a cyber operation without its knowledge or as a tool for attacks against its own customers," the warning said.

The BSI advises that Kaspersky anti-virus products should be replaced with alternatives, but carefully, to avoid weakening defences.

Previously in 2017, US President Trump signed legislation banning Kaspersky software's use within the American Government Also in 2017, UK's National Cyber Security Centre said it would contact all government departments with concerns over the use of Kaspersky systems products relating the issues to national security.

Following the BSI warning, Eintracht Frankfurt football club spokesman Axel Hellmann told Bloomberg: "We have notified Kaspersky management that we are terminating our sponsorship agreement effective immediately... We very much regret the development." The high profile brand sponsorship deal that Kaspersky has with the Ferrari F1 motor racing team has not been affected, to date.

Kaspersky said it would seek clarification from the BSI on its decision, which was "not based on a technical assessment of Kaspersky products" and how to address its concerns.

As a private global cyber security Kaspersky said it does not have any ties to the Russian or any other governments and that its data-processing infrastructure has been moved to Switzerland in 2018. "The security and integrity of our data services and engineering practices have been confirmed by independent third-party assessments.. We believe that peaceful dialogue is the only possible instrument for resolving conflicts," it said.

Similar remarks on Twitter by founder Eugene Kaspersky two weeks ago attracted strong criticism from various other senior industry figures. 

Background Published By BSI

“For over a decade now, information technology has been changing our lives at a rapid rate: the Internet and mobile telecommunication have become the foundation for new forms of communication, commerce, and entertainment.

“Not only private industry has successfully made use of the new technical capabilities: public administrations now use modern IT to optimise their processes and to be able to offer citizens improved services. The term “e-Government” covers numerous online activities and may make many trips to public offices unnecessary in the future.”

“However, one basic human need must not be ignored: the need for security. It takes the knowledge and action of every person involved to maintain security in society. This applies especially to IT security since the threats to security often go unnoticed at first glance and are often underestimated.

“As a national cyber security authority, the goal of the Federal Office for Information Security (BSI) is to promote IT security in Germany. The BSI is first and foremost the central IT security service provider for the federal government in Germany."

“However, we also offer our services to IT manufacturers as well as private and commercial users and providers of information technology because effective security is only possible when everyone involved contributes. “For this reason, we want to work in even closer co-operation with all those working in the IT and Internet industry in the field of IT security.”

BSI:      Twitter / Eugene Kaspersky:     Bloomberg:     BBC

You Might Also Read: 

Germany Accuses Russia Of Electoral Interference:

 

« The Global Cyber Security Market Set To Grow By $190 Billion
In Many Cases Active Directory Is The Last Line Of Defence »

Infosecurity Europe
CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Idemia

Idemia

Idemia is a global leader in security and identity solutions.

Array Networks

Array Networks

Array Networks, the network functions platform company, develops purpose-built systems for hosting virtual networking and security functions with guaranteed performance.

CommuniTake

CommuniTake

CommuniTake builds security, enablement, and management solutions to provide people and organizations with better, and more secure mobile device use.

Wayra UK

Wayra UK

Wayra UK, part of Telefónica Open Future, has been chosen to run a new cyber accelerator facility to help UK start-ups grow and take the lead in producing the next generation of cyber security systems

Cognni

Cognni

Cognni (formerly Shieldox) will make your InfoSec think like a human, right out of the box, so you can focus on the bigger picture, keeping the information flow safe.

GuardianKey

GuardianKey

GuardianKey is a solution to protect systems against authentication attacks.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

NanoLock Security

NanoLock Security

NanoLock delivers the industry’s only end-to-end platform for the IoT and connected devices ecosystem.

Asia Data Destruction (ADD)

Asia Data Destruction (ADD)

ADD is the leading IT Assets Disposal and Data Destruction Company in Thailand.

Pentera Security

Pentera Security

Pentera (formerly Pcysys) is focused on the inside threat. Our automated penetration-testing platform mimics the hacker's attack - automating the discovery of vulnerabilities.

Next47

Next47

Next47 is a global venture firm, backed by Siemens, committed to turning today's impossible ideas into tomorrow's indispensable industries.

Kape Technologies

Kape Technologies

Kape Technologies is a cybersecurity company focused on helping consumers around the world have a better digital experience with greater privacy and protection.

Wabbi

Wabbi

Wabbi’s continuous security platform centralizes, automates and orchestrates security governance and vulnerability management to empower development teams to own appsec.

Domotz

Domotz

Domotz enables IT teams to monitor and manage their networks remotely, while ensuring that the security and the operational efficiency of their organizations are properly maintained.

ELK Analytics

ELK Analytics

ELK Analytics is a specialized Managed Security Services Provider (MSSP) that focuses on endpoint security and monitoring & alerting for any type of structured or unstructured data.

Planisys

Planisys

Planisys is a cybersecurity leader specializing in cutting-edge DNS security and email security solutions.