<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ZERO DAY</title>
	<atom:link href="http://zerodaydoc.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://zerodaydoc.com</link>
	<description>A documentary film about Internet security, cyber-crime, and cyber-espionage.</description>
	<lastBuildDate>Mon, 20 May 2013 16:28:34 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
		<item>
		<title>More News About Our Film and the Syrian Electronic Army</title>
		<link>http://zerodaydoc.com/more-news-about-our-film-and-the-syrian-electronic-army/</link>
		<comments>http://zerodaydoc.com/more-news-about-our-film-and-the-syrian-electronic-army/#comments</comments>
		<pubDate>Mon, 20 May 2013 16:28:34 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=561</guid>
		<description><![CDATA[The New York Times published a major story Saturday, &#8220;Hunting for Syrian Hackers’ Chain of Command,&#8221; about the cyberwar in Syria. Seeing the focus of our film on the front page of the Business Section is a morale boost and confidence &#8230; <a href="http://zerodaydoc.com/more-news-about-our-film-and-the-syrian-electronic-army/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p><i>The New York Times</i> published a major story Saturday, &#8220;<a href="http://www.nytimes.com/2013/05/18/technology/financial-times-site-is-hacked.html?ref=technology" target="_blank">Hunting for Syrian Hackers’ Chain of Command</a>,&#8221; about the cyberwar in Syria. Seeing the focus of our film on the front page of the Business Section is a morale boost and confidence builder.</p>
<p><a href="http://zerodaydoc.com/wp-content/uploads/2013/05/NYT-SEA-story-e1369009588630.jpg"><img class="alignnone size-large wp-image-563" alt="NYT SEA story" src="http://zerodaydoc.com/wp-content/uploads/2013/05/NYT-SEA-story-e1369009588630-1024x642.jpg" width="584" height="366" /></a>In a <a href="http://wp.me/p2meTR-8K" target="_blank">previous post</a> we wrote, “Little has been said about the more serious damage the S.E.A. (Syrian Electronic Army) and its compatriots in the Assad regime are doing online… Too bad the mainstream press chooses to ignore those more deadly aspects of the story.”</p>
<p>Recent S.E.A. hacks on the Associates Press, <em>The Onion</em>, <i>The Guardian</i> and the <i>Financial Times </i>are shout-outs for media attention. And they worked.</p>
<p>The NYT story makes a breakthrough connection tying the Assad regime with online intrusions and attacks done by the S.E.A. Instead of simply being a rogue hacking group of pro-regime supporters it now seems certain that the S.E.A. is working in cahoots with the regime, as many human rights and Internet activist assumed.</p>
<p>Just as compelling, for us, is how three of our principal characters are sources, on-the record, in the story. Dlshad Othman, Morgan Marquis-Boire and John Scott-Railton figure prominently in the article. We also filmed with reporter Nicole Perlroth in San Francisco as she worked on this piece. The elements for a dramatic, timely, character-driven sequence are in the can. We are excited about how this is going to play in the finished film.</p>
<p>There’s still more to be filmed as this subplot film plays out. So stay tuned.</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/more-news-about-our-film-and-the-syrian-electronic-army/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Our Film and the Syrian Electronic Army Hack</title>
		<link>http://zerodaydoc.com/our-film-and-the-syrian-electronic-army-hack/</link>
		<comments>http://zerodaydoc.com/our-film-and-the-syrian-electronic-army-hack/#comments</comments>
		<pubDate>Thu, 25 Apr 2013 02:35:40 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=542</guid>
		<description><![CDATA[Interesting about the hack yesterday on the Associated Press Twitter account by the Syrian Electronic Army (SEA). The mainstream media covered this extensively. Here in the New York Times and here, from Helen A.S. Popkin at NBCNews.com, who dug deeper then most. By &#8230; <a href="http://zerodaydoc.com/our-film-and-the-syrian-electronic-army-hack/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>Interesting about the hack yesterday on the Associated Press Twitter account by the Syrian Electronic Army (SEA). The mainstream media covered this extensively. <a href="http://thecaucus.blogs.nytimes.com/2013/04/23/hacked-a-p-twitter-feed-sends-erroneous-message-about-explosions-at-white-house/?src=twr&amp;smid=tw-nytimes">Here</a> in the <em>New York Times</em> and <a href="http://www.nbcnews.com/technology/technolog/ap-latest-victim-string-twitter-break-ins-syrian-electronic-army-6C9567459">here</a>, from Helen A.S. Popkin at NBCNews.com, who dug deeper then most.</p>
<p><a href="http://zerodaydoc.com/wp-content/uploads/2013/04/SEAAPHack.jpg"><img class="alignnone size-full wp-image-551" alt="SEA:APHack" src="http://zerodaydoc.com/wp-content/uploads/2013/04/SEAAPHack.jpg" width="474" height="242" /></a></p>
<p>By and large very little was reported about the source of the attack. And what the SEA regularly does besides posting fake tweets. Much of the news in the U.S. had to do either with how one fake tweet about an attack on the White House and the President impacted financial markets, or why Twitter needs to improve its security.</p>
<p>The markets recovered immediately. And Twitter, according to <a href="http://www.wired.com/threatlevel/2013/04/twitter-authentication/?utm_source=feedburner&amp;utm_medium=feed&amp;utm_campaign=Feed%3A+wired%2Findex+%28Wired%3A+Top+Stories%29" target="_blank">Wired</a>, is rolling out two-step authentication to improve its security.</p>
<p>Little has been said about the more serious damage the SEA and its compatriots in the Assad regime are doing online. And their lethal consequences.</p>
<p>Our film concerns security online and threats from cyber-surveillance. In particular, how these collide in a very real way right now in the Syrian civil war. Sources have told us about the ways in which activists and members of the opposition are compromised by malware and surveillance software. Facebook and Skype have been used extensively by the SEA and others for this purpose. The consequences can be detention, torture and death.</p>
<p>We have this on-camera.</p>
<p>Too bad the mainstream press chooses to ignore those more deadly aspects of the story. But the film will address them, be sure of that. And threats from cyber-surveillance in other countries as well.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/our-film-and-the-syrian-electronic-army-hack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Mikko Hypponen on RATs, Syria and Ft. Meade</title>
		<link>http://zerodaydoc.com/mikko-hypponen-on-rats-syria-and-ft-meade/</link>
		<comments>http://zerodaydoc.com/mikko-hypponen-on-rats-syria-and-ft-meade/#comments</comments>
		<pubDate>Tue, 19 Mar 2013 00:49:54 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=512</guid>
		<description><![CDATA[We had the opportunity to do a formal interview with Mikko Hypponen of F-Secure at the conclusion of our week filming at the 2013 RSA Conference. We wanted to learn how he and his colleagues (the &#8220;Three Mikko&#8217;s&#8221;) helped decipher &#8230; <a href="http://zerodaydoc.com/mikko-hypponen-on-rats-syria-and-ft-meade/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>We had the opportunity to do a formal interview with Mikko Hypponen of <a href="http://www.f-secure.com/en/web/home_us/home" target="_blank">F-Secure</a> at the conclusion of our week filming at the <a href="http://www.rsaconference.com/events/2013/usa/" target="_blank">2013 RSA Conference</a>. We wanted to learn how he and his colleagues (the &#8220;Three Mikko&#8217;s&#8221;) helped decipher surveillance malware being used against Syrian activists and regime opponents.</p>
<div class="wp-caption alignnone" style="width: 594px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0011.jpg"><img alt="" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0011-1024x572.jpg" width="584" height="326" /></a><p class="wp-caption-text">Mikko Hypponen of F-Secure, interviewed during RSA.</p></div>
<p>This story about a human rights activist inside Syria who was targeted by the regime will be central to our film. <a href="http://www.f-secure.com/weblog/archives/00002356.html" target="_blank">Mikko blogged about the investigation</a> at the time.</p>
<p>Mikko helped fill in the blanks, a few of which we can spell out here. The rest will have to wait until the film is released. Probably near the end of the year.</p>
<p>The attacker used Xtreme RAT (remote access trojan) which like Poison Ivy, Ghost Rat, and Dark Comet takes over a computer without the user knowing — controlling it, seeing the screen, recording every keystroke, and accessing files. It can even turn on the microphone and webcam to record a user&#8217;s words and actions.</p>
<div id="attachment_519" class="wp-caption alignnone" style="width: 778px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/syriahd.jpg"><img class=" wp-image-519" alt="" src="http://zerodaydoc.com/wp-content/uploads/2013/03/syriahd.jpg" width="768" height="281" /></a><p class="wp-caption-text">The hard drive shipped to Mikko and his colleagues which they analyzed for surveillance malware.</p></div>
<p>&#8220;Sounds sinister,&#8221; Mikko said. &#8220;But we don&#8217;t know if it is a private IP (Internet provider), if it&#8217;s run by the regime, or by companies — or who the end users are. But it looks like [the data] went back to the Syrian regime.&#8221;</p>
<p>In this case data was sent to an Internet provider (IP: 216.6.0.28) identified as belonging to the Syrian Telecom Establishment. We looked it up. It&#8217;s still reported active — in Damascus. <a href="http://en.utrace.de/ip-address/216.6.0.28" target="_blank">Here</a>.</p>
<p>In relation to increasing levels of Internet-based surveillance and espionage, Mikko told us lately he&#8217;s been browsing <a href="https://sjobs.brassring.com/1033/ASP/TG/cim_searchresults.asp?SID=^OhebUJLsEx_slp_rhc_IaKSUV91P2KLE1nOKmnBeSWi_slp_rhc_to1l/BzJe54SJQF1d2mHpdDiKk9V&amp;partnerID=25037&amp;siteID=5010&amp;AgentID=14688731&amp;Function=runquery" target="_blank">online recruitment pages</a> of military contractors such as <a href="http://www.lockheedmartin.com/" target="_blank">Lockheed Martin</a>. &#8220;They&#8217;re hiring exploit writers for offensive cyber operations by the dozens. In Ft. Meade Maryland [home of the <a href="https://www.nsa.gov/" target="_blank">NSA</a>]! It doesn&#8217;t get much more open than that.&#8221;</p>
<p>&#8220;If someone told me five years ago [offensive cyber operations] would be this active, I wouldn&#8217;t have believed it. We&#8217;re definitely in a cyber arms race now.&#8221;</p>
<p>&#8220;I feel deeply about this. I&#8217;ve worked with viruses since the &#8217;90s. So much has changed. Governments come in using the same tools that were used by kids for fun. Now it&#8217;s deadly serious things.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/mikko-hypponen-on-rats-syria-and-ft-meade/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Blue Coat and Stonesoft Surveillance Software: Admissions and Denials</title>
		<link>http://zerodaydoc.com/blue-coat-and-stonesoft-surveillance-software-admissions-and-denials/</link>
		<comments>http://zerodaydoc.com/blue-coat-and-stonesoft-surveillance-software-admissions-and-denials/#comments</comments>
		<pubDate>Thu, 14 Mar 2013 23:45:09 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=480</guid>
		<description><![CDATA[Steps away from the Narus booth on the RSA Expo floor was the booth for Stonesoft. This Finnish company develops and sells commercial security software including deep inspection technology. Our source had heard a rumor that the U.S. State Department uses &#8230; <a href="http://zerodaydoc.com/blue-coat-and-stonesoft-surveillance-software-admissions-and-denials/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>Steps away from the Narus booth on the RSA Expo floor was the booth for <a href="http://www.stonesoft.com/en/" target="_blank">Stonesoft</a>. This Finnish company develops and sells commercial security software including <a href="https://en.wikipedia.org/wiki/Deep_packet_inspection" target="_blank">deep inspection technology</a>.</p>
<p><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz033.jpg"><img class="alignnone size-large wp-image-419" alt="QuickTime PlayerScreenSnapz033" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz033-1024x609.jpg" width="584" height="347" /></a></p>
<p>Our source had heard a rumor that the U.S. State Department uses Stonesoft to prevent <a href="http://wikileaks.org/" target="_blank">WikiLeaks</a> from being accessed by its employees. When asked, the Stonesoft representative readily admitted this was true. He did the coding! It does not block each and every WikiLeaks document, just the landing pages of WikiLeaks mirror sites. But still&#8230;</p>
<p>Down the way from Stonesoft was the booth of <a href="https://www.bluecoat.com/" target="_blank">Blue Coat</a>, the Silicon Valley-based company which got caught with its surveillance software in use by the Assad regime in Syria. Our friends at the <a href="https://citizenlab.org/" target="_blank">Citizen Lab</a> did a <a href="https://citizenlab.org/2013/01/planet-blue-coat-mapping-global-censorship-and-surveillance-tools/" target="_blank">ground-breaking report about Blue Coat</a> a few months ago, and that in turn generated a <a href="http://www.nytimes.com/2013/01/16/business/rights-group-reports-on-abuses-of-surveillance-and-censorship-technology.html?_r=1&amp;" target="_blank"><em>New York Times</em> story</a> about Blue Coat and cyber-surveillance in Syria.</p>
<p><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz031.jpg"><img class="alignnone size-large wp-image-417" alt="QuickTime PlayerScreenSnapz031" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz031-1024x628.jpg" width="584" height="358" /></a></p>
<p>The <a href="http://online.wsj.com/article/SB10001424052970203687504577001911398596328.html" target="_blank">Wall Street Journal</a> did its own investigation confirming Blue Coat&#8217;s devices were recording and/or blocking a huge amount of Internet traffic inside Syria, especially among opposition activists.</p>
<p>Blue Coat blamed its distributor in Dubai for re-selling to Syria, instead of Iraq, the intended buyer. Their representative said Blue Coat requires clients to declare the end user of their products abroad. However, as with arms sales, it&#8217;s easy to route goods through third parties or re-sellers.</p>
<p><img class="alignnone size-full wp-image-491" style="color: #333333; font-style: normal;" alt="Google ChromeScreenSnapz001" src="http://zerodaydoc.com/wp-content/uploads/2013/03/Google-ChromeScreenSnapz001.jpg" width="543" height="343" /></p>
<p>The Blue Coat representative conceded its proxy servers can still be found inside Syria but their capabilities are turned off. We are looking into this now with the help of a malware researcher.</p>
<p>When asked if Blue Coat sells to repressive regimes such as Bahrain, the representative pointed to the official U.S. sanction list as being their litmus test. Those trade restrictions may be strict when it comes to North Korea and Cuba, but are less so for other countries. Enforcement is notoriously spotty. And those trade sanctions do not include Bahrain. Our friends at <a href="http://bahrainwatch.org/" target="_blank">Bahrain Watch</a> will be watching, we&#8217;re sure.</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/blue-coat-and-stonesoft-surveillance-software-admissions-and-denials/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New Details About Narus Surveillance Technology</title>
		<link>http://zerodaydoc.com/new-details-about-narus-surveillance-technology/</link>
		<comments>http://zerodaydoc.com/new-details-about-narus-surveillance-technology/#comments</comments>
		<pubDate>Tue, 12 Mar 2013 22:07:22 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=436</guid>
		<description><![CDATA[More details from our walk-about on the floor of the RSA Conference, just concluded in San Francisco. Narus, which builds and sells surveillance software, is a wholly owned subsidiary of Boeing, and is based in Sunnyvale, CA. Narus has long &#8230; <a href="http://zerodaydoc.com/new-details-about-narus-surveillance-technology/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>More details from our walk-about on the floor of the RSA Conference, just concluded in San Francisco.</p>
<p><a href="http://www.narus.com/" target="_blank">Narus</a>, which builds and sells surveillance software, is a wholly owned subsidiary of Boeing, and is based in Sunnyvale, CA. Narus has long been the <a href="https://www.eff.org/nsa-spying/how-it-works" target="_blank">focus of privacy concerns</a>. Especially since 2006 when it was revealed in <a href="http://www.wired.com/science/discoveries/news/2006/05/70908" target="_blank"><em>Wired</em></a> that the Narus STA 6400 installed in ATT&#8217;s Internet backbone operation in San Francisco was collecting and analyzing network and customer information in real time for the NSA.</p>
<p>Here&#8217;s what Narus is up to now, based on a source who spoke with a Narus representative on the floor of the trade show.</p>
<p>Narus software is capable of, &#8220;full packet capture&#8230; when we want to go after a specific target, based on a keyword, user ID or an IP address. We decide to target [this] person, we go in and create target, and we can target e-mail, Facebook&#8230;&#8221;</p>
<p><a style="font-style: normal; line-height: 24px; text-decoration: underline;" href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz035.jpg"><img class="alignnone size-large wp-image-421" style="border-color: #bbbbbb; background-color: #eeeeee;" alt="QuickTime PlayerScreenSnapz035" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz035-1024x514.jpg" width="584" height="293" /></a></p>
<p>Narus products capture and retain data for later analysis. We were told, for example, &#8220;if six months from now Twitter goes off the edge of the earth, we can render stuff exactly as it happened. We can do the same with email, Facebook, IM, and a lot of chat.&#8221;</p>
<p>As for <a href="https://www.torproject.org/" target="_blank">Tor</a>, the program which protects activists and journalists worldwide by hiding their physical location and encrypting their online activities, people Narus talks to in the Middle East are &#8220;very interested&#8221; in trying to break that capability.</p>
<p>There&#8217;s more. Narus can do <a href="https://en.wikipedia.org/wiki/Sentiment_analysis" target="_blank">sentiment analysis</a> on e-mail, and Facebook and Twitter posts to determine the &#8220;mood&#8221; of a particular post or user. This is useful to predict behavior, such as a nascent protest movement that might otherwise escape notice. Where is the next Arab Spring going to occur? &#8220;We have the metadata around the session, now we know who the players were and who they are related to.&#8221;</p>
<p>If you are in the U.S. working in the private sector you are at risk from Narus technology. Companies use Narus to monitor employee activities online to determine if they&#8217;re doing something on the network they shouldn&#8217;t be, or if they&#8217;re removing unauthorized data.</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/new-details-about-narus-surveillance-technology/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Spookware: NSA, DHS, and Narus</title>
		<link>http://zerodaydoc.com/spookware-nsa-dhs-and-narus/</link>
		<comments>http://zerodaydoc.com/spookware-nsa-dhs-and-narus/#comments</comments>
		<pubDate>Fri, 08 Mar 2013 21:13:33 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=403</guid>
		<description><![CDATA[We spent a day filming last week on the floor of the trade show at the RSA Conference in San Francisco. The world’s largest (and smallest) Internet and information security vendors pitch new products, make deals and give away lots &#8230; <a href="http://zerodaydoc.com/spookware-nsa-dhs-and-narus/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>We spent a day filming last week on the floor of the trade show at the <a href="http://www.rsaconference.com/events/2013/usa/" target="_blank">RSA Conference in San Francisco</a>. The world’s largest (and smallest) Internet and information security vendors pitch new products, make deals and give away lots of schwag.</p>
<p><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz025.jpg"><img class="size-thumbnail wp-image-411 alignnone" alt="QuickTime PlayerScreenSnapz025" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz025-150x150.jpg" width="150" height="150" /></a> <a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz026.jpg"><img class="alignnone size-thumbnail wp-image-412" alt="QuickTime PlayerScreenSnapz026" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz026-150x150.jpg" width="150" height="150" /></a><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz030.jpg"><img class="alignnone size-thumbnail wp-image-416" alt="QuickTime PlayerScreenSnapz030" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz030-150x150.jpg" width="150" height="150" /></a></p>
<p>Amidst this carnival-like atmosphere we came across a few surprises, such as booths for the <a href="https://www.nsa.gov/" target="_blank">National Security Agency (NSA)</a>, <a href="https://en.wikipedia.org/wiki/Narus_(company)" target="_blank">Narus</a> (a subsidiary of Boeing that makes surveillance software), and the <a href="http://www.dhs.gov/" target="_blank">Department of Homeland Security</a>. That’s where we had fun running into <a href="https://en.wikipedia.org/wiki/Jeff_Moss_(hacker)" target="_blank">Dark Tagent</a> (Jeff Moss), founder of <a href="https://www.blackhat.com/html/bh-about/about.html" target="_blank">BlackHat</a>, the annual Las Vegas information security gathering, who was also visiting the DHS booth.</p>
<div id="attachment_406" class="wp-caption alignnone" style="width: 310px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0202.jpg"><img class="size-medium wp-image-406" alt="QuickTime PlayerScreenSnapz020" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0202-300x279.jpg" width="300" height="279" /></a><p class="wp-caption-text">Dark Tagent (aka Jeff Moss)</p></div>
<p>We learned a couple of interesting things at the NSA booth such as why they rely on commercial software vendors (more efficient) and how to apply for a job at the NSA’s <a href="http://www.wired.com/threatlevel/2012/03/ff_nsadatacenter/" target="_blank">new Bluffdale facility</a> in Utah.</p>
<div id="attachment_410" class="wp-caption alignnone" style="width: 594px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz024.jpg"><img class=" wp-image-410" alt="QuickTime PlayerScreenSnapz024" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz024-1024x589.jpg" width="584" height="335" /></a><p class="wp-caption-text">Shhh. Who might be listening?</p></div>
<p>At the Narus booth a representative said they’re still selling products to the Egyptian government. He also said a <a href="https://en.wikipedia.org/wiki/Virtual_private_network" target="_blank">VPN (virtual private network)</a> is not a protection against surveillance using Narus software. However, Narus admits it cannot break <a href="https://www.torproject.org/" target="_blank">Tor</a>, a popular system used by activists, journalists and law enforcement that provides anonymity online.</p>
<div id="attachment_423" class="wp-caption alignnone" style="width: 879px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz037.jpg"><img class=" wp-image-423" alt="QuickTime PlayerScreenSnapz037" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz037.jpg" width="869" height="711" /></a><p class="wp-caption-text">Narus surveillance software is still being sold to Egypt.</p></div>
<p>In the next post we visit Blue Coat and Stonesoft, two major players in online surveillance.</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/spookware-nsa-dhs-and-narus/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Part II: Hacking Team vs. Jacob Appelbaum</title>
		<link>http://zerodaydoc.com/part-ii-hacking-team-vs-jacob-appelbaum/</link>
		<comments>http://zerodaydoc.com/part-ii-hacking-team-vs-jacob-appelbaum/#comments</comments>
		<pubDate>Thu, 07 Mar 2013 18:18:42 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=365</guid>
		<description><![CDATA[After last Tuesday&#8217;s RSA Conference panel on cyber-surveillance wrapped up the fireworks continued off-site at a nearby hotel. Big thanks to Jen from Rapid7 who helped produce the &#8220;after-party&#8221; which we filmed in its entirety. Our breakfast club included Eric &#8230; <a href="http://zerodaydoc.com/part-ii-hacking-team-vs-jacob-appelbaum/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>After last Tuesday&#8217;s <a href="https://ae.rsaconference.com/US13/connect/search.ww" target="_blank">RSA Conference panel on cyber-surveillance</a> wrapped up the fireworks continued off-site at a nearby hotel. Big thanks to Jen from Rapid7 who helped produce the &#8220;after-party&#8221; which we filmed in its entirety.</p>
<div id="attachment_369" class="wp-caption aligncenter" style="width: 1295px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz009.jpg"><img class="size-full wp-image-369" alt="Alberto (L) and Eric Rabe (R) of Hacking team." src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz009.jpg" width="1285" height="726" /></a><p class="wp-caption-text">Alberto (L) and Eric Rabe (R) of Hacking Team.</p></div>
<p>Our breakfast club included Eric Rabe and Alberto of Hacking Team, Jacob Appelbaum of Tor, Kurt Opsahl of the Electronic Frontier Foundation, Claudio Guarnieri of the Honeynet Project, and Bloomberg reporter Michael Riley.</p>
<p>It was a surprise that Rabe and Alberto of HT would subject themselves to even more vociferous challenges by Appelbaum, Guarnieri and Opsahl. Made us wonder why they showed up. Is HT trying to burnish its image? Make overtures to the human rights community? Show the security industry its respectable?</p>
<p>The conversation continued where the panel left off: <a href="https://citizenlab.org/2012/10/backdoors-are-forever-hacking-team-and-the-targeting-of-dissent/" target="_blank">use of HT&#8217;s commercial surveillance tools</a> by repressive regimes such as the <a href="http://www.bloomberg.com/news/2012-10-10/spyware-leaves-trail-to-beaten-activist-through-microsoft-flaw.html" target="_blank">UAE</a> and <a href="http://www.slate.com/blogs/future_tense/2012/08/20/moroccan_website_mamfakinch_targeted_by_government_grade_spyware_from_hacking_team_.html" target="_blank">Morocco</a>, corporate responsibility for end-uses, the ethics of selling intrusion tools to questionable governments.</p>
<p>As Appelbaum said, &#8220;Everyone thinks they&#8217;re doing the right thing.&#8221;</p>
<div id="attachment_370" class="wp-caption aligncenter" style="width: 1295px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz010.jpg"><img class=" wp-image-370" alt="QuickTime PlayerScreenSnapz010" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz010.jpg" width="1285" height="799" /></a><p class="wp-caption-text">&#8220;No one thinks they&#8217;re doing the wrong thing,&#8221; Jacob Appelbaum said.</p></div>
<p>To which Rabe replied, &#8220;Who&#8217;s going to be the decider&#8230; you, EFF?&#8221;</p>
<p>A discussion between Opsahl and Rabe actually seemed to start finding some common ground between HT&#8217;s and EFF&#8217;s positions — that HT would be open to some form of government regulation.</p>
<div id="attachment_371" class="wp-caption aligncenter" style="width: 1235px"><a style="font-style: normal; line-height: 24px; text-decoration: underline;" href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz011.jpg"><img class=" wp-image-371" style="border-color: #bbbbbb; margin-top: 0.4em; background-color: #eeeeee;" alt="QuickTime PlayerScreenSnapz011" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz011.jpg" width="1225" height="782" /></a><p class="wp-caption-text">Eric Rabe, Hacking Team and Kurt Opsahl, EFF. Would new regulations help control cyber-surveillance software?</p></div>
<p>We&#8217;ll be watching to see if that discussion continues.</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/part-ii-hacking-team-vs-jacob-appelbaum/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking Team vs. Jacob Appelbaum</title>
		<link>http://zerodaydoc.com/hacking-team-vs-jacob-appelbaum/</link>
		<comments>http://zerodaydoc.com/hacking-team-vs-jacob-appelbaum/#comments</comments>
		<pubDate>Wed, 06 Mar 2013 18:49:18 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=352</guid>
		<description><![CDATA[It was quite a show in room 130 at the Moscone Center last Tuesday morning during the RSA Conference panel on state-sponsored surveillance malware. There was a rare appearance by Eric Rabe, an American representative of the Italian company, Hacking Team. &#8230; <a href="http://zerodaydoc.com/hacking-team-vs-jacob-appelbaum/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>It was quite a show in room 130 at the Moscone Center last Tuesday morning during the <a href="https://ae.rsaconference.com/US13/connect/search.ww" target="_blank">RSA Conference panel</a> on state-sponsored surveillance malware. There was a rare appearance by Eric Rabe, an American representative of the Italian company, <a href="http://www.hackingteam.it/" target="_blank">Hacking Team</a>. HT is a notorious supplier of espionage tools to governments worldwide, including repressive regimes. Human rights activists in Morocco and the UAE report being harmed as a result. Read more in this <a href="http://bits.blogs.nytimes.com/2012/10/10/ahead-of-spyware-conference-more-evidence-of-abuse/" target="_blank">New York Times blogpost </a>by reporter Nicole Perloth about Hacking Team and Morgan Marquis-Boire&#8217;s investigations.</p>
<p>Jacob Appelbaum, a core member of the Tor circumvention project and a frequent target of US law enforcement agencies, demanded answers about HT&#8217;s activities. Joining Jacob in asking the hard questions was Kurt Opsahl, senior attorney at the Electronic Frontier Foundation, and Claudio Guarnieri of the Honeynet Project and Rapid7. Bloomberg reporter Michael Riley heroically steered the discussion. Filling out the group was Dale Beauchamp from the Department of Homeland Security, who was badgered by questioners about a host of domestic spying issues.</p>
<p>Unfortunately RSA would not let us film the event.</p>
<div id="attachment_360" class="wp-caption aligncenter" style="width: 1260px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0201.jpg"><img class="size-full wp-image-360" alt="The panel." src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0201.jpg" width="1250" height="505" /></a><p class="wp-caption-text">The panel.</p></div>
<p>Check out these articles just published about the panel. Funny how it has not yet been covered by any U.S. press.</p>
<p><a href="http://www.spiegel.de/netzwelt/netzpolitik/eric-rabe-vom-hacking-team-trifft-auf-den-aktivisten-jacob-appelbaum-a-886744.html" target="_blank">Der Spiegel</a> (German), <a href="http://www.techweekeurope.co.uk/news/rsa-2013-hacking-team-surveillance-uae-morocco-tor-project-109101" target="_blank">Tech Week Europe</a></p>
<p>Mikko Hypponen, one of the characters in our film, and one of the world&#8217;s top security analysts, told us this session was the best part of the entire week-long RSA Conference.</p>
<div id="attachment_356" class="wp-caption aligncenter" style="width: 1332px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0192.jpg"><img class="size-full wp-image-356" alt="Mikko tweets the panel." src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0192.jpg" width="1322" height="806" /></a><p class="wp-caption-text">Mikko tweets the panel.</p></div>
<p>Following the formal panel session we repaired to a nearby hotel for more fireworks, which we could film. The next blog post reveals what happened.</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/hacking-team-vs-jacob-appelbaum/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>We Film EFF Getting Prestigious Award</title>
		<link>http://zerodaydoc.com/we-film-eff-getting-prestigious-award/</link>
		<comments>http://zerodaydoc.com/we-film-eff-getting-prestigious-award/#comments</comments>
		<pubDate>Tue, 05 Mar 2013 17:46:07 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=328</guid>
		<description><![CDATA[SC Magazine generously let us film their gala awards dinner last Tuesday night at the InterContinental Hotel in San Francisco. Eva Galperin, and her colleague Seth Schoen of the Electronic Frontier Foundation, won the prestigious Editor&#8217;s Award. The event was Black &#8230; <a href="http://zerodaydoc.com/we-film-eff-getting-prestigious-award/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p><a href="http://www.scmagazine.com/" target="_blank">SC Magazine</a> generously let us film their gala awards dinner last Tuesday night at the InterContinental Hotel in San Francisco. <a href="https://www.eff.org/about/staff/eva-galperin" target="_blank">Eva Galperin</a>, and her colleague <a href="https://www.eff.org/about/staff/seth-schoen" target="_blank">Seth Schoen</a> of the <a href="https://www.eff.org/" target="_blank">Electronic Frontier Foundation</a>, won the prestigious Editor&#8217;s Award. The event was Black Tie, $400/plate, and chock full of security industry big-wig&#8217;s. So no wonder Eva may have felt a little out of place! Regardless, recognition for EFF&#8217;s galant work advocating for Internet freedom is well-deserved along with her ongoing <a href="https://www.eff.org/mention/iran-aids-syria-tracking-opposition-electronic-surveillance-us-officials-say" target="_blank">campaign</a> to protect human rights activists — especially in Syria — from the dangers of cyber-surveillance.</p>
<div id="attachment_316" class="wp-caption aligncenter" style="width: 1444px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz004.jpg"><img class="size-full wp-image-316" alt="No, they didn't arrive in this stretch." src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz004.jpg" width="1434" height="794" /></a><p class="wp-caption-text">No, they didn&#8217;t arrive in this stretch.</p></div>
<div id="attachment_315" class="wp-caption alignnone" style="width: 1444px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz005.jpg"><img class=" wp-image-315 " alt="QuickTime PlayerScreenSnapz005" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz005.jpg" width="1434" height="794" /></a><p class="wp-caption-text">L-R: SC Magazine Editor Illena Armstrong, Eva, Seth, and event MC.</p></div>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/we-film-eff-getting-prestigious-award/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Busy Week of Filming</title>
		<link>http://zerodaydoc.com/busy-week-of-filming/</link>
		<comments>http://zerodaydoc.com/busy-week-of-filming/#comments</comments>
		<pubDate>Tue, 05 Mar 2013 00:46:36 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://zerodaydoc.com/?p=314</guid>
		<description><![CDATA[We did several days of filming starting a week ago at the B-Sides hacker gathering in San Francisco. Filmed Morgan Marquis-Boire and Bill Marczak making their presentation about cyber-surveillance. And Eva Galperin of EFF in conversations with among others, Kevin Mitnick — hacker, author, and &#8230; <a href="http://zerodaydoc.com/busy-week-of-filming/">Continue reading <span class="meta-nav">&#8594;</span></a>]]></description>
				<content:encoded><![CDATA[<p>We did several days of filming starting a week ago at the <a href="http://www.securitybsides.com/w/page/35868077/BSidesSanFrancisco" target="_blank">B-Sides</a> hacker gathering in San Francisco. Filmed <a href="http://www.nytimes.com/2012/08/31/technology/finspy-software-is-tracking-political-dissidents.html" target="_blank">Morgan Marquis-Boire and Bill Marczak</a> making their presentation about cyber-surveillance. And <a href="https://www.eff.org/about/staff/eva-galperin" target="_blank">Eva Galperin</a> of <a href="https://www.eff.org/" target="_blank">EFF</a> in conversations with among others, <a href="https://en.wikipedia.org/wiki/Kevin_mitnick" target="_blank">Kevin Mitnick</a> — hacker, <a href="http://www.amazon.com/Ghost-Wires-Adventures-Worlds-Wanted/dp/0316037729/ref=sr_1_1?s=books&amp;ie=UTF8&amp;qid=1362444198&amp;sr=1-1&amp;keywords=kevin+mitnick" target="_blank">author</a>, and convicted criminal. There was a confrontation of sorts outside on the sidewalk in which @backtracesec, a B-Sides presenter in a lab coat, charged the San Francisco <a href="https://noisebridge.net/" target="_blank">Noisebridge hacker space</a> with hosting &#8220;known informants.&#8221; Morgan identified HIM as informing on Anonymous. The hacker world. Always a circus. Below are some snaps.</p>
<div id="attachment_318" class="wp-caption alignleft" style="width: 1409px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz002.jpg"><img class="size-full wp-image-318" alt="Bill and Morgan break it down about Narus (Boeing), maker of surveillance software." src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz002.jpg" width="1399" height="745" /></a><p class="wp-caption-text">Bill and Morgan break it down about Narus (Boeing), maker of surveillance software.</p></div>
<div id="attachment_319" class="wp-caption alignleft" style="width: 1422px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz001.jpg"><img class="size-full wp-image-319" alt="Bill (L), Morgan (R)" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz001.jpg" width="1412" height="803" /></a><p class="wp-caption-text">Bill (L), Morgan (R)</p></div>
<p>&nbsp;</p>
<div id="attachment_322" class="wp-caption alignleft" style="width: 220px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz022.jpg"><img class=" wp-image-322  " alt="QuickTime PlayerScreenSnapz022" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz022.jpg" width="210" height="161" /></a><p class="wp-caption-text">&#8220;You got to be kidding.&#8221;</p></div>
<div id="attachment_323" class="wp-caption alignright" style="width: 241px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz021.jpg"><img class="wp-image-323 " alt="QuickTime PlayerScreenSnapz021" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz021.jpg" width="231" height="176" /></a><p class="wp-caption-text">&#8220;Jacob Appelbaum, bullshit&#8230;&#8221;</p></div>
<div id="attachment_325" class="wp-caption alignright" style="width: 1233px"><a href="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0191.jpg"><img class="size-full wp-image-325" alt="L-R: ___, Kevin Mitnick, and Eva Galperin" src="http://zerodaydoc.com/wp-content/uploads/2013/03/QuickTime-PlayerScreenSnapz0191.jpg" width="1223" height="728" /></a><p class="wp-caption-text">L-R: Garland Glessner, Kevin Mitnick, and Eva Galperin. If you look closely you&#8217;ll see the cameraman in the mirror.</p></div>
]]></content:encoded>
			<wfw:commentRss>http://zerodaydoc.com/busy-week-of-filming/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
