The Reality is Everyone Hacks… Everyone

Eugene Kaspersky, the founder and chief executive of the world-famous cybersecurity firm that also bears his surname, has said that when it comes to state-sponsored hacking, espionage and propaganda, no country should be presumed innocent.

Since the alleged cyber-sabotage operation last year against victims including the Democratic National Committee (DNC), Hillary Clinton and John Podesta, which many claim to be linked to the Russian government, news of state-backed hacking has firmly hit the mainstream.

Many headlines went straight for the term 'election hacking'. However, according to Kaspersky, it is misinformation and propaganda that are more likely shape the outcome of any future cyber-war.

"The reality is that everyone hacks everyone," he recently said.
"I agree with the Americans that elections are critical infrastructure because the future of the country depends on that," he added. "Of course they don't want someone else to manipulate their future, as we in Russia don't want someone else to manipulate our future."

So what does the term "election hacking" mean to Kaspersky, if anything?
"There are several aspects," he explained. "First, what happened with the Democratic Party, stealing the information and releasing the information, I don't think it really damaged the reputation of the party, maybe it influenced the election outcome, but just a little.

"The second thing is the information war, the propaganda, which is not really new, but now it's in cyberspace and in cyberspace it's much easier to manipulate someone's opinion. It's easier to stay in the shadows, anonymous. It's much cheaper.

"Third, attacks on the computer systems which collect the votes. I don't know if it's possible in the UK because I don't know how it's designed, but in Russia they are partly going back to paper for remote voting - they don't trust cyber any-more."
According to Kaspersky, who spoke to IBTimes UK on 28 April at The Savoy, London, it's not only governments that are shaped by the notion that democracy is increasingly molded by the online world, but also voters. "The new generation, they don't want to vote offline," Kaspersky said.

The Kaspersky Lab chief executive indicated that with the rise of smart-phones and web-connected devices, the default expectation is now that an online option should always exist, even in the voting booth. While this is expected, he stressed than digital voting is not the answer, at least not yet.

"If you don't have 100% secure online voting it will be the end of democracy," he warned.
Over the years, Kaspersky Lab has been on the frontlines of both cyber-crime and anti-virus protection, now boasting over 400 million global users. It also regularly releases technical analysis on both cybercrime groups and state-sponsored hacking teams.

Yet despite this breadth of expertise, its founder said attribution in cyberspace remains "very tricky."
"The most spoken languages in espionage are native English, native Russian, and simplified Chinese, he explained. "We don't have the data to investigate [the biggest groups]. If they are stupid then we can, if they leave fingerprints. For professional gangs it's very hard."

In any case, his teams routinely work with law enforcement around the world to takedown cybercrime groups, one of the most famous of which was the "Lurk" gang which targeted banks. Sometimes, in the face of the odds, Kaspersky said some research still piques his experts' interest.

"When we did the research on the Bangladesh Central Bank one of my best experts spent three months to prove it was not North Korea and as a result he proved it was North Korea," he laughed. "It's not 100% proof, but there are many little finger-prints which were not completely erased."

While the sheer amount of online threats has never been greater, the cybersecurity pioneer said he believes that many humans are still a bigger problem than the devices they use. 

"How many incidents are caused by the human factor?" he asked rhetorically. "Homo-sapiens are much more dangerous than computers."

IB Times

You Might Also Read:

Russian Cyber Spies & Hackers Are The New Normal:

Wikileaks Vault 7 And The CIA Hacking Arsenal:

Kaspersky Lab Employee Arrested On Treason Charges:

 


 

« Facebook Pays For Fake News Ads In UK Press
Global C4ISR Has A Cyber Warfare Surge »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

BackupVault

BackupVault

BackupVault is a leading provider of automatic cloud backup and critical data protection against ransomware, insider attacks and hackers for businesses and organisations worldwide.

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

NATO Cooperative Cyber Defence Centre (CCDCOE)

NATO Cooperative Cyber Defence Centre (CCDCOE)

NATO CCDCOE's mission is to enhance the capability, cooperation and information sharing among NATO, NATO nations and partners in cyber defence.

Open Networking Foundation (ONF)

Open Networking Foundation (ONF)

The Open Networking Foundation (ONF) is a non-profit operator led consortium driving transformation of network infrastructure and carrier business models.

Capita

Capita

Capita is a consulting, digital services and software business, providing end-to-end enterprise IT services and solutions focused around digital transformation and innovation.

Innotec Security

Innotec Security

Innotec Security is a Spanish company specializing in cybersecurity-as-a-service, cyber resilience and cyber risk management.

Nexus Group

Nexus Group

Nexus Group develops identity solutions for physical and digital access.

Applied Risk

Applied Risk

Applied Risk is an established leader in Industrial Control Systems security, focused on critical infrastructure security and combating security breaches that pose a significant threat.

UMBRA

UMBRA

UMBRA is solely concerned with protecting governments against Nation State attacks. We are not a consumer or enterprise company.

AirEye

AirEye

AirEye is a leader in Network Airspace Protection (NAP). Block attacks against your corporate network launched from wireless devices in your corporate network airspace.

CYMOTIVE Technologies

CYMOTIVE Technologies

Combining Israeli cyber innovation with a century of German automotive engineering. CYMOTIVE operates under the assumption that connectivity is a game changer for the automotive industry.

DeNexus

DeNexus

DeNexus is the leading provider of cyber risk modeling for industrial networks. Our Mission is to build the Global Standard for Industrial Cyber Risk Quantification.

OptimEyes.ai

OptimEyes.ai

OptimEyes.ai is a unique AI-powered, on-demand SaaS solution for cyber-security, data privacy and compliance risk modeling.

Infisign

Infisign

Infisign addresses the challenges of traditional IAM systems and offers a comprehensive solution for modern identity management.

Crypto Legal

Crypto Legal

Crypto Legal is a leading UK-based law firm specialising in blockchain forensics and legal services.

ESProfiler

ESProfiler

Enterprise Security Profiler. Empowering CISOs with clarity & confidence in their security programme by visualising capabilities, usage and spend against their key threat priorities.

Invictus International Consulting

Invictus International Consulting

Invictus International Consulting are a recognized leader in full-spectrum cyber technology solutions designed to protect the security of our nation's global defense and critical infrastructure.

Mantodea Security

Mantodea Security

Mantodea Security is an industry-agnostic powerhouse backed by extensive experience and expertise in the realm of IT security.