Wednesday, May 31, 2023

Ring to pay $5.8M - Staff & Contractors - Snooping on Videos

Ring, the Amazon-owned maker of video surveillance devices, will pay $5.8 million over claims brought by the Federal Trade Commission that Ring employees and contractors had broad and unrestricted access to customers’ videos for years.

The settlement was filed in the U.S. District Court for the District of Columbia on Wednesday. The FTC confirmed the settlement a short time later. News of the settlement was first reported by Reuters.

The FTC said that Ring employees and contractors were able to view, download, and transfer customers’ sensitive video data for their own purposes as a result of “dangerously over-broad access and lax attitude toward privacy and security.”

According to the FTC’s complaint, Ring gave “every employee — as well as hundreds of Ukraine-based third-party contractors — full access to every customer video, regardless of whether the employee or contractor actually needed that access to perform his or her job function.” The FTC also said that Ring staff and contractors “could also readily download any customer’s videos and then view, share, or disclose those videos at will.”

The FTC alleged on at least two occasions Ring employees improperly accessed the private Ring videos of women. In one of the cases, the FTC said the employee’s spying went on for months, undetected by Ring. more

Taiwan Raids 8 Companies for Alleged Tech Espionage

The Ministry of Justice Investigation Bureau (MJIB) raided eight technology companies
with ties to China between May 22-25 for allegedly seeking to steal technology from Taiwanese companies and poach IT staff.

To counter attempts by China to engage in industrial espionage, the MJIB sent 112 investigators to raid eight companies allegedly posing as firms backed by Taiwanese or foreign investors, reported CNA. After investigators searched 25 locations in Taipei City, New Taipei City, Hsinchu City, Hsinchu County, Chiayi County, and Taichung City, a total of 49 individuals were taken in for questioning...

The bureau vowed to continue cracking down on the illegal poaching of talent and theft of trade secrets to maintain the country's competitive advantage. more

Delete Alert - Android App iRecorder has Morphed Into Spyware

A screen recording app available in the Google Play store that was installed over 50,000 times functioned normally for months before it started spying on users, researchers say.


The app, iRecorder – Screen Recorder, was first uploaded to the Google Play store on September 19, 2021, according to Lukas Stefanko, a malware researcher with cybersecurity firm ESET.

Stefanko said that the app had no harmful features until a later update changed the code, likely in August 2022. After that date, malicious code allowed bad actors to make secret audio recordings and secretly transfer images, videos, saved web pages, and other files off of devices, according to ESET. 

Anyone who had downloaded the app before August 2022, might still have been exposed if they updated the app manually or automatically. It’s not yet clear if the developer or another actor is responsible for the update that converted the app into a Trojan horse.

The app is no longer available in the Google Play store, TechCrunch reports, but if you already have it on your phone you should uninstall it and clear the app’s files. more

White House Plumbers...

...A Delightfully Funny Retelling of the Watergate Scandal

The Watergate scandal is not exactly new territory for screenwriters. From the 1976 classic All the President’s Men to, just last year, the excellent Gaslit, the story of the bungled covert operations that led to the resignation of President Richard Nixon in 1974 has been raked over time and time again.

So White House Plumbers, created by Alex Gregory and Peter Huyck – two writers who have previously worked on Veep and David Letterman’s 90s Late Show – needed to be pretty good to justify its existence. Thankfully, it was.

The five-episode comedy drama focuses on E Howard Hunt (Woody Harrelson) and G Gordon Liddy (Justin Theroux), ex CIA and FBI agents respectively, who were hired by Nixon’s White House to run a dirty tricks unit. more

Deepfake Social Engineering Scams

Deepfake social engineering scams have become an increasingly scary trend among cybercriminals to socially engineer victims into submission. 

The threat actors are using Artificial Intelligence (AI) and Machine Learning (ML) voice cloning tools to disperse misinformation for cybercriminal scams. 

It doesn’t take much for an audio recording of a voice – only about 10 to 20 seconds – to make a decent reproduction. The audio clip extracts unique details of the victim’s voice. A threat actor can simply call a victim and pretend to be a salesperson, for example, to capture enough of the audio to make it work. more

Here are some actual deepfake audio recordings – some humorous, some cool, but all that in some form can be used maliciously:
• CNN reporter calls his parents using a deepfake voice. (CNN)
• No, Tom Cruise isn’t on TikTok. It’s a deepfake. (CNN)
• Twenty of the best deepfake examples that terrified and amused the internet. (Creative Bloq)

Alleged Russian 'Spy' Whale Spotted in Sweden

An alleged former Russian spy whale has been spotted off the coast of Sweden... 

Having spent years travelling slowly southwards from Norway's far north, the whale has sped up his movements out of Norwegian waters in recent months. 

OneWhale said the reason behind his sudden hastiness was unclear... 

He was discovered wearing a harness fitted with a GoPro camera mount and clips bearing the inscription "Equipment of St Petersburg". more

Spying in Alaska

Chinese citizens posing as tourists but suspected of being spies have made several attempts in recent years to gain access to military facilities in this vast state studded with sensitive bases, according to U.S. officials...

Many of the encounters have been chalked up to innocent mistakes by foreign visitors intent on viewing the Northern Lights and other attractions in Alaska, officials say. Other attempts to enter U.S. military bases, however, seem to be probes to learn about U.S. military capabilities in Alaska, according to multiple soldiers familiar with the incidents but who were not authorized to speak publicly about them.

Not everyone who appear to be tourists in Alaska, are, in fact tourists, one Army officer said. Instead, they are foreign spies. more

Wednesday, May 3, 2023

Spies: The Epic Intelligence War Between East and West (book)

Coming, June 6th, 2023
SPIES, by  Calder Walton  (pre-order)
Spies is the history of the secret war that Russia and the West have been waging for a century. Espionage, sabotage, and subversion were the Kremlin’s means to equalize the imbalance of resources between the East and West before, during, and after the Cold War. There was nothing “unprecedented” about Russian meddling in the 2016 US presidential election. It was simply business as usual, new means used for old ends.

The Cold War started long before 1945. But the West fought back after World War II, mounting its own shadow war, using disinformation, vast intelligence networks, and new technologies against the Soviet Union. Spies is an inspiring, engrossing story of the best and worst of mankind: bravery and honor, treachery and betrayal. The narrative shifts across continents and decades, from the freezing streets of St. Petersburg in 1917 to the bloody beaches of Normandy; from coups in faraway lands to present-day Moscow were troll farms, synthetic bots, and weaponized cyber-attacks being launched on the woefully unprepared West. It is about the rise and fall of eastern superpowers: Russia’s past and present and the global ascendance of China.

Mining hitherto secret archives in multiple languages, Calder Walton shows that the Cold War started earlier than commonly assumed, that it continued even after the Soviet Union’s collapse in 1991, and that Britain and America’s clandestine struggle with the Soviet government provides key lessons for countering China today. This fresh reading of history, combined with practical takeaways for our current great power struggles, make Spies a unique and essential addition to the history of the Cold War and the unrolling conflict between the United States and China that will dominate the 21st century. more

Tuesday, May 2, 2023

Australian Spy Camera Ads from the 1880's

Not very covert by today's standards, but interesting.

The Dog Cam... Send the dog into an area by himself, blow the dog whistle, dog wags tail connected to the shutter. Fingers crossed, you got the shot.

















The Pot Shot... or, The Detective Camera. Lens peeks through a buttonhole. The bull taking a shot at the photographer, taking a shot of the kangaroo is a bit of a non sequitur. 



Spy News: Qatar Deep Six'es Sub Company & Some Employees

Qatar Shuts Down Submarine Company Dahra After Alleged Espionage
The submarine was shut down by Qatar due to many of its employees being accused of spying for Israel in August 2022. Reports say that 75 employees have been impacted, most of which were former Indian Navy officials, were asked to go home. more
But not all...
Qatar Is Sentencing Eight Officials Of This Submarine Company To Death
The investigation into Dahra Global commenced last August when Qatari intelligence agencies detained eight ex-Indian Navy personnel holding senior positions within the company...Qatari authorities claim to possess electronic evidence supporting their allegations of wrongdoing. more

The White House Plumbers, or The Buttcrack Buggers

This five-part limited series imagines the behind-the-scenes story of how Nixon’s political saboteurs, E. Howard Hunt (Woody Harrelson) and G. Gordon Liddy (Justin Theroux), accidentally toppled the presidency they were zealously trying to protect… and their families along with it. 


Chronicling actions on the ground, this satirical drama begins in 1971 when the White House hires Hunt and Liddy, former CIA and FBI, respectively, to investigate the Pentagon Papers leak. After failing upward, the unlikely pair lands on the Committee to Re-Elect the President, plotting several unbelievable covert ops – including bugging the Democratic National Committee offices at the Watergate complex. Proving that fact is sometimes stranger than fiction, White House Plumbers sheds light on the lesser-known series of events that led to one of the greatest political scandals in American history.

From the producers of Succession and Veep...White House Plumbers comes to HBO Max on May 1, 2023. more

China’s ‘Men in Black’ v. Foreign Corporate Sleuths

In China, foreign consultants are learning to expect a knock on the door. 
First, police raided the Beijing office of US due diligence group Mintz in March. Weeks later, there was a similar visit to the Shanghai premises of Bain, the blue-chip US consultancy. Police have also visited one of the China offices of expert network Capvision, according to at least four people familiar with the matter, as part of an emerging number of raids on international consultancies operating in the world’s second-largest economy...

While Bain is known for its management consulting work, the incidents at Mintz and Capvision — a network whose members are available for chats with clients about an industry they have worked in — have thrown the spotlight on the world of corporate investigations in China, which also includes companies such as Control Risks, Kroll, FTI and Blackpeak... Even in ordinary times, due diligence is inherently risky in China. more
---
One person prevented from leaving China this year is a Singaporean executive at the US due-diligence firm Mintz Group, after a raid in March that led to its Beijing office being shut down, according to three people familiar with the matter. The company, the executive and China’s Public Security Bureau did not respond to requests for comment. more

The First Digital Security Rule of Traveling

(We know our clients already know this, but reminders help.)

The first digital security rule of traveling is to leave your usual personal devices at home.
Go on your trip with “burner” travel devices instead.

Aside from the potential for compromise or seizure by authorities, you also run the gamut of risks ranging from having your devices lost or stolen during your trip. It’s typically way less dangerous to just leave your usual devices behind, and to bring along devices you only use when traveling. This doesn’t need to be cost prohibitive: You can buy cheap laptops and either inexpensive new phones or refurbished versions of pricier models. (And also get privacy screens for your new phones and laptops, to reduce the information that’s visible to any onlookers.)

Your travel devices should not have anything sensitive on them. If you’re ever coerced to provide passwords or at risk of otherwise having the devices be taken away from you, you can readily hand over the credentials without compromising anything important. more

FutureWatch - Brain Eavesdropping

On Monday, scientists from the University of Texas, Austin, made another step in that direction. In a study published in the journal Nature Neuroscience, the researchers described an A.I. that could translate the private thoughts of human subjects by analyzing fMRI scans, which measure the flow of blood to different regions in the brain...

In the study, it was able to turn a person’s imagined speech into actual speech and, when subjects were shown silent films, it could generate relatively accurate descriptions of what was happening onscreen. more