The Reality is Everyone Hacks… Everyone

Eugene Kaspersky, the founder and chief executive of the world-famous cybersecurity firm that also bears his surname, has said that when it comes to state-sponsored hacking, espionage and propaganda, no country should be presumed innocent.

Since the alleged cyber-sabotage operation last year against victims including the Democratic National Committee (DNC), Hillary Clinton and John Podesta, which many claim to be linked to the Russian government, news of state-backed hacking has firmly hit the mainstream.

Many headlines went straight for the term 'election hacking'. However, according to Kaspersky, it is misinformation and propaganda that are more likely shape the outcome of any future cyber-war.

"The reality is that everyone hacks everyone," he recently said.
"I agree with the Americans that elections are critical infrastructure because the future of the country depends on that," he added. "Of course they don't want someone else to manipulate their future, as we in Russia don't want someone else to manipulate our future."

So what does the term "election hacking" mean to Kaspersky, if anything?
"There are several aspects," he explained. "First, what happened with the Democratic Party, stealing the information and releasing the information, I don't think it really damaged the reputation of the party, maybe it influenced the election outcome, but just a little.

"The second thing is the information war, the propaganda, which is not really new, but now it's in cyberspace and in cyberspace it's much easier to manipulate someone's opinion. It's easier to stay in the shadows, anonymous. It's much cheaper.

"Third, attacks on the computer systems which collect the votes. I don't know if it's possible in the UK because I don't know how it's designed, but in Russia they are partly going back to paper for remote voting - they don't trust cyber any-more."
According to Kaspersky, who spoke to IBTimes UK on 28 April at The Savoy, London, it's not only governments that are shaped by the notion that democracy is increasingly molded by the online world, but also voters. "The new generation, they don't want to vote offline," Kaspersky said.

The Kaspersky Lab chief executive indicated that with the rise of smart-phones and web-connected devices, the default expectation is now that an online option should always exist, even in the voting booth. While this is expected, he stressed than digital voting is not the answer, at least not yet.

"If you don't have 100% secure online voting it will be the end of democracy," he warned.
Over the years, Kaspersky Lab has been on the frontlines of both cyber-crime and anti-virus protection, now boasting over 400 million global users. It also regularly releases technical analysis on both cybercrime groups and state-sponsored hacking teams.

Yet despite this breadth of expertise, its founder said attribution in cyberspace remains "very tricky."
"The most spoken languages in espionage are native English, native Russian, and simplified Chinese, he explained. "We don't have the data to investigate [the biggest groups]. If they are stupid then we can, if they leave fingerprints. For professional gangs it's very hard."

In any case, his teams routinely work with law enforcement around the world to takedown cybercrime groups, one of the most famous of which was the "Lurk" gang which targeted banks. Sometimes, in the face of the odds, Kaspersky said some research still piques his experts' interest.

"When we did the research on the Bangladesh Central Bank one of my best experts spent three months to prove it was not North Korea and as a result he proved it was North Korea," he laughed. "It's not 100% proof, but there are many little finger-prints which were not completely erased."

While the sheer amount of online threats has never been greater, the cybersecurity pioneer said he believes that many humans are still a bigger problem than the devices they use. 

"How many incidents are caused by the human factor?" he asked rhetorically. "Homo-sapiens are much more dangerous than computers."

IB Times

You Might Also Read:

Russian Cyber Spies & Hackers Are The New Normal:

Wikileaks Vault 7 And The CIA Hacking Arsenal:

Kaspersky Lab Employee Arrested On Treason Charges:

 


 

« Facebook Pays For Fake News Ads In UK Press
Global C4ISR Has A Cyber Warfare Surge »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

Clayden Law

Clayden Law

Clayden Law advise global businesses that buy and sell technology products and services. We are experts in information technology, data privacy and cybersecurity law.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

TÜV SÜD Academy UK

TÜV SÜD Academy UK

TÜV SÜD offers expert-led cybersecurity training to help organisations safeguard their operations and data.

CSI Consulting Services

CSI Consulting Services

Get Advice From The Experts: * Training * Penetration Testing * Data Governance * GDPR Compliance. Connecting you to the best in the business.

UL Solutions

UL Solutions

UL Solutions is a safety, security and compliance consulting and certification company. Areas covered include cyber security.

ReliaQuest

ReliaQuest

ReliaQuest’s GreyMatter solution connects existing technology, people, and process – then equips security teams with unified, actionable insights across their entire environment.

Micro Strategies Inc.

Micro Strategies Inc.

Micro Strategies provides IT solutions that help businesses tackle digital transformation in style.

Slovak National Accreditation Service (SNAS)

Slovak National Accreditation Service (SNAS)

SNAS is the national accreditation body for Slovakia. The directory of members provides details of organisations offering certification services for ISO 27001.

Slovenska Akreditacija (SA)

Slovenska Akreditacija (SA)

Slovenska Akreditacija (Slovenia Accreditation) is the national standards accreditation body for Slovenia.

ConvergeOne

ConvergeOne

ConvergeOne is a leading global IT services provider of collaboration and technology solutions including cybersecurity.

TechStak

TechStak

TechStak is the easiest way for businesses to find and connect with IT Pros and other technology solution providers in their area.

Industrial Control System Information Sharing and Analysis Center (ICS-ISAC)

Industrial Control System Information Sharing and Analysis Center (ICS-ISAC)

ICS-ISAC is a non-profit, public/private Knowledge Sharing Center established to help facilities develop situational awareness in support of local, national and international security.

Aryaka

Aryaka

Aryaka’s SmartServices offer connectivity, application acceleration, security, cloud networking and insights leveraging global orchestration and provisioning.

DatChat

DatChat

DatChat Inc. is a blockchain, cybersecurity, and social media company that focuses on protecting privacy on our devices and also protecting our information after we have shared it with others.

Mosyle

Mosyle

Businesses and educational institutions rely on Mosyle to manage and secure their Apple devices and networks.

Bastion Technologies

Bastion Technologies

All your cyber defense. One platform. Keep your business assets and employees safe under one roof. Manage your cyber defense quickly, easily & efficiently.

Northern Computer

Northern Computer

Northern Computer provides comprehensive IT solutions that streamline your operations and help you achieve your business goals.

CardinalOps

CardinalOps

The CardinalOps platform continuously assesses your detection posture and eliminates coverage gaps in your existing detection stack so you can easily implement a threat-informed defense.

CHERI Alliance

CHERI Alliance

CHERI Alliance is an industry initiative spearheading the global adoption of the Capability Hardware Enhanced RISC Instructions (CHERI) security technology across the computing industry.

Hexagate

Hexagate

Hexagate is at the forefront of blockchain threat prevention and automated risk management, proactively detecting and mitigating threats to smart contracts and onchain assets.