[liberationtech] Finfisher Spy Kit Revealed in Bahrain

Jacob Appelbaum jacob at appelbaum.net
Wed Jul 25 19:27:06 PDT 2012


Ronald Deibert:
> For Immediate Release
> 
> From Bahrain With Love: FinFisher’s Spy Kit Exposed?
> 
> July 25, 2012 -- The Citizen Lab announces the publication of a detailed post analyzing several pieces of malware targeting Bahraini dissidents, shared with us by Bloomberg News.

I just wanted to say that this is the best news I've read in a very long
time. Thanks for your efforts on this - FinFisher is bad news and you're
helping a lot of people by exposing their targeted malware.

In an ideal world, I'd like to see a tool for detecting FinSpy on a disk
- it should be possible for the currently deployed FinSpy stuff - I
suspect they'll make some changes soon but that won't make too much of a
difference for the cache of disks already sitting in a lab.

The FinSpy network traffic is also really interesting - the fact that
they don't stand up to the most obvious of traffic analysis is
*hilarious* and so fitting.

All the best,
Jake



More information about the liberationtech mailing list