"In Europa ci sono già i presupposti per l'esplosione di un conflitto sociale. Questo è il seme del malcontento, dell'egoismo e della disperazione che la classe politica e la classe dirigente hanno sparso. Questo è terreno fertile per la xenofobia, la violenza, il terrorismo interno, il successo del populismo e dell'estremismo politico."

domenica 13 agosto 2017

Artificial Intelligence e nuovi posti di lavoro: tra ottimismo e illusione (Parte I)


Secrets of Silicon Valley — A two-part documentary by Jamie Bartlett (part 1: The Disruptors)


Medium. com, Mark Storm, Aug 13, 2017 · 15 min read
In Secrets of Silicon Valley, a two-part documentary series for the BBC, tech writer Jamie Bartlett tries to uncover the dark reality behind Silicon Valley’s glittering promise to build a better world. Part 1, The Disruptors, contains a poignant interview Sam Altman, who runs Y Combinator. He tells Bartlett that anyone who questions the wisdom of where we are heading is “anti-progress,” and finishes this nonsense with a long and chilling stare. Part 2, The Persuasion Machine, will be aired Sunday, August 13th at 8 p.m. (BBC Two, also available on BBC iPlayer).


Secrets of Silicon Valley (part 1) — The Disruptors
The tech gods in Silicon Valley are selling us all a brighter future, but could the disruptive forces they are unleashing actually herald a much darker future?, tech writer Jamie Bartlett wonders in The Disruptors, the first of a two-part BBC series in which he explores what makes Silicon Valley such a force for change in all our lives.
His search for answers starts with a visit to Rainbow Mansion. Home to “a bunch of global nomads who have come to Silicon Valley to pursue their dreams,” it calls itself “an intentional community of people working to optimise the galaxy.”
“Every Sunday night the Mansion hosts experts speakers. People come from all over Silicon Valley to share ideas. You can’t move without falling over a plan to solve one of the world’s pressing problems. Among this slightly cultish crowd, I found a man who scaled the heights of Silicon Valley. Bill Hunt created five start-ups he sold for half a billion dollars.” When asked what Hunt thinks is Silicon Valley’s attitude towards change — towards changing things, changing how industries work, changing how society works — he says, “There is a mind-set here that’s very focused on disruption. What can you do such that you’re not just talking about how we can make money, but how can we do things in a new way, in a better way, that makes the world better, both financially and socially? It’s thinking about, like, how do we get rid of this previous industry, this previous architecture, this previous system, and find a new way to do it, a way that’s better?”
“Rainbow Mansion represents what the dream of Silicon Valley is,” Bartlett tells us. “The idea that, just armed with a bit of technology and a thought about how to change the world, you can actually make it happen. That you can completely transform the way in which things are done, and that you can use technology in a way that will radically improve the lives of millions of people.”
The same fervour can be heard from the tech gods too. According to Airbnb CEO and co-founder Brian Chesky, “To be disruptive means you’re changing the world.”
“It all sounds so hopeful, but behind Silicon Valley’s ideals of disruption is a more traditional business reality. Cold, hard cash. Start-ups are drawn to Silicon Valley because of another vast industry, venture capital. Financiers who gamble billions of dollars on young companies in the hope of finding another Facebook or Google. But investment has a consequence. The founders of the two most valuable start-ups here, Airbnb and Uber, have attracted billions of dollars of venture capital. Even though Airbnb has only just begun to turn a profit, and Uber has been losing billions.
Maybe more than profit, venture capitalists want to see the potential for profit, and that creates a huge pressure on these companies to show that they’re always growing. Increasing the number of customers as quickly as possible — ‘killing it,’ as they say here — is the start-up mantra. But was does it mean for Silicon Valley’s mission to build a better world?”
Bartlett takes us to San Francisco, home to Uber and Airbnb, to meet Uber’s Head of Transportation Policy, Andrew Salzberg.
Uber’s vision is “getting away from everybody needing to drive their own car everywhere they go,” Salzberg explains. This, he believes, will have positive consequences for how cities are designed and laid out, “from the amount of parking that we have, to the amount of fatalities on the road, as well as the environmental impact.” Does this make Uber a social mission or is it a profit-making company?, Bartlett wonders.
Uber is here “to make money as a private business,” Salzberg answers. “But as you start to get into different places, and you change how people use vehicles, then you have all these other effects that you start to open up.”
It seems there is no contradiction between chasing profit and claiming to be working for the good of humanity. “But disruption means what is says,” tells Bartlett. “Around the world, traditional taxi drivers have taken to the streets in protest of Uber undercutting their prices. It’s a classic example of Silicon Valley disruption — destroying old industries by providing a popular, cheap alternative. But the social cost of this disruption goes much further.”
Bartlett takes us to India, home to more than a billion people and Uber’s top target for global growth. In Hyderabad, he explores the reality behind Uber’s promise to a new kind of flexible job, empowering its drivers, and sees for himself the human consequences of Uber’s utopian vision.
“With no profits and under huge pressure to grow against a strong local rival, Uber ran adverts on billboards and in the press, promising drivers up to £1,100 a month, around four times what these drivers had been earning.”
But as car ownership in India is low, especially among those likely to drive for Uber, the company helped drivers borrow money to buy brand new cars. However, “[a]s the numbers of Uber drivers rose, the number of customers didn’t keep up, so earnings fell. With a ready supply of drivers, the company cut incentives too,” leaving many drivers with huge debts and no prospect of a substantial enough income to pay these off.
When Bartlett asked a former executive if Uber should have been more open with the drivers about how their salaries or incentives might change in the future, he answers, “Obviously, yes. Drivers were misled.”
“The mantra of Silicon Valley is that disruption is always good. And through smartphones and digital technology, we can create more efficient, more convenient, faster services. And everyone wins from that. But behind that beautifully designed app or that slick platform, there’s a quite brutal form of capitalism unfolding, and it’s leaving some of the poorest people in society behind.”
Back In Silicon Valley, Bartlett realises how much energy these tech titans devote to presenting themselves as the heroes of the people, taking on all kinds of vested interests.
“One of the most remarkable branding tricks of the 21st century has been the way that Silicon Valley has managed to persuade us that they’re not like other companies. I mean, when you think about banks, or big pharma, oil, you imagine them as driven only by profit. And yet Silicon Valley, we imagine, is different. They are puffed up with social purpose to improve the world, that they’re the good guys. The founders of Airbnb for example, are connecting the world, not simply allowing people to advertise holiday lets.”
In San Francisco, Bartlett visits Airbnb’s HQ, where he meets with its Head of Global Policy, Chris Lehane, who, as Bill Clinton’s spin doctor, managed the Monica Lewinsky scandal.
Bartlett wonders if Airbnb sees itself as ‘a big business.’ But despite being a global tech giant valued at around 31 billion, Lehane says, “We do like to think of ourselves as a different type of company. The founders’ initial ideas was make money off of what is typically your greatest expense, which is your housing, […] and that still remains true today. You know, over half the people who are on the platform are low to moderate income people, regular people. They use it to cover basic expenses, including the cost of their housing.”
He adds, “Our founders, they came u with a real vision here, and the vision was to be able to use the platform to connect people to people. We like to say, we are of the people, by the people, for the people, but really the use the platform so that people can spend time with one another. You think about what’s going on in the world today, and people are talking about building walls, closing doors, putting up barriers. A real question of whether we are going to have an open society or a closed society, and this is a place that is really focused on using technology to help create an open society.”
According to Bartlett, “Airbnb claims to be on the side of the little people, and the only losers from their disruption are traditional hotel owners. But that’s not how it feels in Barcelona” where a growing number of residents are protesting against the influx of visitors, which they believe is damaging the integrity of their city.
When asked for a reaction, Lehane explains that regulators and governments will have to catch up and change their policies to take account of this new reality. Bartlett sees this as “a classic argument from the disruptors. In fact, Silicon Valley seems to have a pretty dim view of governments in general. That is most evident when it comes to tax. You can get an idea of Silicon Valley’s attitude to tax by looking at how the companies behave in their own back yard.”
Lawrence ‘Larry’ E. Stone is Assessor for Santa Clara County, home to almost all the major corporations in Silicon Valley. These corporations pay a local property tax at a rate of one percent of the value of all their buildings and equipment. It’s the job of Stone and his team to work out the value of this property. As is turns out, most major corporations dispute the value of their property. Santa Clara County has about 70 billion dollars of assessed ‘value at risk’ that is being appealed or disputed, mostly by major corporations, says Stone. Apple alone disputes the 6.8 billion dollar assessment, claiming it’s only worth 57 million. “They are disputing 99 percent of their value,” according to Stone. If Apple’s appeal succeeds, 68 million of tax would be slashed to just over 0.5 million. And Apple isn’t the only tech titan filing local property tax appeals.
“Around the world, tech giants have been accused of aggressively minimising their tax bills. The EU is demanding Apple pay up to £11 billion of tax it says is owed to Ireland. But how they deal locally with these issues […] says something about the culture of these places, the general approach of always trying to minimise the tax they pay or trying to work around governments. It makes a lot more sense when you come here and you see how a company like Apple behaves in its own back yard.”
“In the ’50s, ’60s and ’70s, Detroit was the envy of the world. Today, Detroit is in bankruptcy. We could go the same way if we don’t solve our public education and if we don’t resolve the commitment to the community as a people, as citizens and corporations.” — Lawrence ‘Larry’ E. Stone, Santa Clara County Assessor
“Of course, there’s nothing new about technological disruption. Steam power, electricity, production lines destroyed the industries that existed before them and forced governments to change. The world survived, life got better.” The question now is whether the Silicon Valley revolution will be different. The next wave of disruption could tear apart the way capitalism works, and, as a result, the way we live our lives could be utterly transformed.
Next stop, early morning Orlando, Florida. Here, Bartlett meets with Stefan Seltz-Axmacher, CEO and founder of Starsky Robotics which raised 5 million dollars to solve the primary logistical challenge for the trucking industry by taking drivers off the road and putting them in an office. Riding shotgun in a self-driving truck for more than a hundred miles on a highway, Bartlett asks what the next wave of Silicon Valley’s global disruption — the automation of millions of jobs — will mean for all of us. Does Seltz-Axmacher worry about the possible downsides of automation? But Seltz-Axmacher is confident that “we will inevitably find more things to do as jobs.”
Stopping en route to solve a technical problem, Bartlett contemplates, “That’s exactly what Silicon Valley is about. One you are out there doing it and you’re dealing with real-life problems, things going slightly wrong and fixing them up, you ca them demonstrate to the world that we have made this thing work. We’re not going to wait around for all the regulations. And then, almost by virtue of demonstrating its power, it forces the world to change around it. And I think that’s what happens when you take this kind of disruption philosophy, this idea of Silicon Valley, getting out there, changing things and the making the world catch up with them. That’s why they have conquered the world.”
But history may not be a good guide to the consequences of the next wave of disruption. The difference is that Silicon Valley is using data and software so machines can learn how to do things better than humans. “So, how far is this going?,” Bartlett wonders.
To answer that question, Bartlett is meeting the Australian data scientist and entrepreneur Jeremy Howard, the founder at Enlitic, an advanced machine learning company that helps combat the shortage of doctors and radiologists in the developing world.
“It turns out that figuring out what’s wrong with you and figuring out how to make you better is just a data problem,” he says. Howard uses deep learning software to diagnose cancer from medical images. “The software learns from examples to identify patterns, like we do. It spots problems by inferring from what it has learned, becoming evermore accurate. […] The software that I built takes about 0.02 seconds to look at a CT scan [it takes us, humans, 10 to 15 minutes],” Howard says. “So we can look at a million CT scan like that, and because we’re using neural networks, deep learning, to do it, it can literally develop the same kind of intuition a radiologist has. Within two months, we had something that beat [a panel of] the world’s best radiologist to diagnose lung cancer.”
According to Howard, the next wave of technology could make work more efficient by removing us humans altogether. “People aren’t scared enough, you know,” Howard adds. “Far too many [smart] people are sounding like climate change denialists. They’re saying, ‘Don’t worry about it, there will always be more jobs.’ And it’s founded on this purely historical thing of like, ‘Oh, there’s been a revolution before. It was called the Industrial Revolution, and after it there was still enough jobs. Therefore, this new, totally different, totally unrelated revolution will also have enough jobs.’ But it’s a ludicrously short-sighted and meaningless argument, which incredibly smart people are making. The totally utopian and dystopian futures are like very clearly in front of us. And very clearly we could head down to either. Honestly, the status quo — do nothing and we end up there — will definitely be a dystopia, which is a tiny class of society owns all of the capital and all of the data, and everybody else has no economic value, is despised by the class that has things because they’re worthless, and massive social unrest.”
Howard is the first person who is “very, very plain about what’s happening. This technology is exponentially improving, it’s going to change everything and we ought to be pretty afraid about that,” Bartlett says. He now wants to find out how far those at the top of Silicon Valley are really thinking about how automation will change all our lives
So, he heads for Y Combinator which provides early stage funding for start-ups. There, Bartlett meets Sam Altman, Y Combinator’s President. More than anybody else in Silicon Valley, Altman is considered to be able to predict the future. “He’s like a kingmaker of Silicon Valley. He gets to choose what the big companies of tomorrow will be,” Bartlett tells us.
[JB] You’re considered, I think, in Silicon Valley as one of the people that sees the future better than most. So, what are you seeing?”
[SA] A friend of mine says the best way to predict the future is to invent it. And that is a thought that was always stuck with me.
Thinking about what the future could be like after automation takes away the jobs of millions of us, Altman says …
[SA] We’re going to need to have new redistribution, we’re going to need to have new social safety nets. One thing, one product that I’m funding that we’re doing at Y Combinator is to study basic income, and what happens if you just give people money to live on. Because we have this world, we have huge wealth, but it’s very concentrated. What happens if you just give people money and say, you know, here’s enough money to have a house and eat, and to have fun?
[JB] But do you think people would find fulfilment and all the other things, dignity in work for example, under a system where there’s a small number of very rich people, and they’re being given money to find things to do with their time? I mean, it sounds pretty terrible, pretty terrifying to me.
[SA] You have a very pessimistic view of the future. I hope you’re wrong. I believe that someone, you know, doing mechanical labour is not the best fulfilment of their dreams and aspirations.
[JB] But the problem, I think, or the thing that makes me pessimistic or nervous, is that society will have to change dramatically, and that’s quite worrying.
[SA] Look, I believe society will have to change dramatically. I think we’ve been through many of these changes before, and, look, I understand that people have this spirit of, ‘I’m going to hang onto the past at all costs, I hate progress and I hate change.’ And I hear that from you, I get it.”
[JB] It’s not that. It’s not hating progress. What if the progress that you’re, not just you, but the community here’s creating, is not what other people want?
[SA] There are 40 million people in the US that live in poverty. If technology can eliminate human suffering, we should do that. If technology can generate more wealth and we can figure out how to distribute that better, we should do that.
[JB] I think it’s an important job for journalists to try to ask about the negative possibilities of this stuff.
[SA] I think if you continue this thrust of, shouldn’t we stop progress, no-one’s going to take you seriously, because people want this stuff, and people don’t think we should still have people in poverty. People don’t think that we should take away our iPhones and take away Facebook. So I think you can add a really important voice, but I worry you’re going in the wrong direction with this, like, anti-progress angle.
For now, Bartlett’s journey ends in the remote hideout of former Facebook executive Antonio Garcia Martinez who has literally armed himself with a gun because he fears this new industrial revolution could lead to social breakdown and the collapse of capitalism. Garcia Martinez believes not enough technologists are speaking out and informing the general public. “You don’t realise, we are in a race between technology and politics, and the technologist are winning, they are way ahead. They will destroy jobs and disrupt economies way before we even react to them. And what we really should be thinking is about that.”
Bartlett ends The Disruptors by saying, “Preparing a survival plan is extreme. The coming wave of disruption could bring great benefits. But there’s a risk Silicon Valley’s promise to build a better world could inflict a nightmare future on millions of us. Politics, in the end, has to be able to take control of this technology, regulate it somehow, slow it down if that’s what people want, but make sure that the technology is being built for people, in a way that people want, in a way that society wants, and not just in the interests of a tiny number of incredibly rich people from the West Coast of America.”


“I think if you continue this thrust of, shouldn’t we stop progress, no-one’s going to take you seriously, because people want this stuff, and people don’t think we should still have people in poverty. People don’t think that we should take away our iPhones and take away Facebook. So I think you can add a really important voice, but I worry you’re going in the wrong direction with this, like, anti-progress angle.” — Sam Altman, the President of Y Combinator

martedì 4 luglio 2017

Ancora sui virus e i trojan usati dalla CIA: le infezioni per il sistema Windows

WikiLeaks just dropped the CIA’s secret how-to for infecting Windows
Latest batch of documents details how CIA infects targets’ Windows-based computers.

Ars Technica, DAN GOODIN - 4/7/2017, 9:13 PM

WikiLeaks has published what it says is another batch of secret hacking manuals belonging to the US Central Intelligence Agency as part of its Vault7 series of leaks. The site is billing Vault7 as the largest publication of intelligence documents ever.
Friday's installment includes 27 documents related to "Grasshopper," the codename for a set of software tools used to build customized malware for Windows-based computers. The Grasshopper framework provides building blocks that can be combined in unique ways to suit the requirements of a given surveillance or intelligence operation. The documents are likely to be of interest to potential CIA targets looking for signatures and other signs indicating their Windows systems were hacked. The leak will also prove useful to competing malware developers who want to learn new techniques and best practices.
"Grasshopper is a software tool used to build custom installers for target computers running Microsoft Windows operating system," one user guide explained. "An operator uses the Grasshopper builder to construct a custom installation executable." The guide continued:

The operator configures an installation executable to install one or more payloads using a variety of techniques. Each payload installer is built from individually configured components that implement part of the installation procedure.

The operator may designate that installation is contingent on the evaluation of the target environment. Target conditions are described using a custom rule language. The operator may configure the tool to output a log file during execution for later exfiltration.

The technical manuals provide a behind-the-scenes look that, for the first time, reveals how the CIA goes about spying on targets that use computers running Microsoft's Windows operating system. Topics that are covered include ways to evade antivirus protection provided by Microsoft's Security Essentials, Symantec, and Kaspersky Lab. Also of interest is the CIA's borrowing of the Carberp, a powerful piece of bank-fraud malware that once fetched as much as $40,000 in underground forums. Once the Carberp source code was leaked in 2013, security experts warned it was akin to "handing a bazooka to a child."
The technical manuals provide a behind-the-scenes look that, for the first time, reveals how the CIA goes about spying on targets that use computers running Microsoft's Windows operating system. Topics that are covered include ways to evade antivirus protection provided by Microsoft's Security Essentials, Symantec, and Kaspersky Lab. Also of interest is the CIA's borrowing of the Carberp, a powerful piece of bank-fraud malware that once fetched as much as $40,000 in underground forums. Once the Carberp source code was leaked in 2013, security experts warned it was akin to "handing a bazooka to a child."
user manual for "Stolen Goods"—a software component that allows Grasshopper malware to persist even after an infected machine has been rebooted—stated:

The components were taken from malware known as Carberp, a suspected Russian rootkit used by organized crime. The source of Carberp was published online and has allowed AED\RDB to easily 'borrow' components as needed from the malware. Most of Carberp was not used in Stolen Goods 2, specifically all the Bot net/Communications components. The persistence method, and parts of the installer, were taken and modified to fit our needs. All components taken from Carberp were carefully analyzed for hidden functionality, backdoors, vulnerabilities, etc. A vast majority of the original Carberp code that was used has been heavily modified. Very few pieces of the original code exist unmodified.

AED and RDB are abbreviations for "Advanced Engineering Division" and "Remote Development Branch," respectively. The Advanced Engineering Division does most of the CIA's implant code development. The Remote Development Branch develops remote implants.
Grasshopper was designed to be a development framework that's easy to use. It includes individual modules that can be combined to meet the requirements of a specific operation. For instance, it provides tools that "perform a pre-installation survey of the target device, assuring that the payload will only [be] installed if the target has the right configuration." It also allows users to customize persistence mechanisms and antivirus evasion to the specific computer that's being targeted.

The latest installment isn't likely to be as damaging as the one published last Friday. That one included code libraries CIA developers use to obfuscate their payloads and to conceal any tie to other malware used by the agency. Release of the so-called Marble libraries could make it easier for targets to determine that a previously unattributed hack is the work of the CIA. This latest leak is still a major embarrassment to the CIA, but on the whole the documents don't appear to reveal any specific operations or portray the CIA operating outside its mandated mission.


giovedì 1 giugno 2017

Il governo vara la cyber-strategy

I lettori di „Uropia, il protocollo Maynards“ e in genere i frequentatori di questo Blog saranno abituati alla raccolta di informazioni, testimonianze ed articoli che rappresentano le basi tecnologiche, giuridiche ed informatiche sulle quali la distopia del romanzo è costruita.

Troverete infatti in questo e nei post precedenti e successivi una collezione di informazioni direttamente tratte dal web, senza commenti o censure, dalle fonti originali –errori tipografici compresi!- e con i link relativi.



"Hacker e cyber sicurezza, ecco il piano del governo

Giovedì 1 Giugno 2017 di Cristiana Mangani

ROMA Condizionati, orientati, truffati dal web. Dal virus “Wanna cry” all’insidiosissimo blue whale, la balena blu che sta trascinando nel suo gorgo centinaia di giovanissimi. L’Italia vara il nuovo Piano nazionale per la protezione cibernetica e la sicurezza informatica, e lo fa sull’orma del decreto del presidente del Consiglio del 17 febbraio 2017 che aveva già dettato le linee guida. Il Governo risponde così alle minacce che arrivano via Internet, e si prepara, tra un anno, a maggio del 2018, a recepire la direttiva europea Nis (Network and information security) che, oltre a migliorare la capacità di cyber security degli Stati e la cooperazione, comporterà numerosi obblighi, a cominciare dalla denuncia degli incidenti da parte degli operatori di servizi essenziali e dei fornitori di servizi digitali.

IL COORDINAMENTO
Undici gli indirizzi operativi indicati nel Piano, a cominciare dalla modifica dell’architettura nazionale cyber, per finire al potenziamento delle capacità di intelligence, di polizia e di difesa civile e militare. Viene attribuito ad Alessandro Pansa, direttore generale del Dis (Dipartimento delle informazioni per la sicurezza), «un ruolo attivo e centrale nell’ambito degli organi deputati alla gestione della sicurezza cibernetica nazionale». Avrà il compito di gestire l’intera operazione, partendo dal principio che la capacità di intervento, in caso di crisi, deve essere più snella e rapida. Per questo è stato deciso di posizionare all’interno dello stesso Dis, il Nucleo per la sicurezza cibernetica (Nsc), attivato in via permanente, e di affidarne la gestione a un vice direttore (dello stesso Dipartimento) con delega al cyber. Una novità importante, perché trasferisce la responsabilità dal consigliere militare di Palazzo Chigi all’intelligence. La nomina a capo del Nucleo, molto attesa nell’ambiente, dovrebbe arrivare nelle prossime settimane. Ma già si sa che potrebbe essere un esperto del settore proveniente dal mondo universitario e delle imprese. Una figura fondamentale che - secondo il presidente del Copasir Giacomo Stucchi - «dovrà avere competenze e qualità adamantine diventando il garante della sicurezza nazionale».

Sempre al Dipartimento spetterà il compito di gestire i 150 milioni di euro stanziati, dopo gli attentati di Parigi, nella legge di stabilità del 2016. Di questi, 15 milioni, sono stati destinati al rafforzamento del servizio di Polizia postale. E la ripartizione delle risorse è stata deliberata dal Cisr (ministri competenti) con l’accordo del Copasir. I 135 milioni rimanenti sono rimasti bloccati per circa un anno, ma con un decreto del presidente del Consiglio dei ministri del 6 settembre scorso, sono andati a favore degli 007, e sarebbero già stati impiegati, almeno in parte, per il reclutamento di personale e per progetti informatici e di sicurezza cibernetica.

IL POLIGONO VIRTUALE
Il documento sulla sicurezza cyber è stato pubblicato ieri sera sulla Gazzetta ufficiale, e ha l’obiettivo di attuare tutte le iniziative necessarie affinché ci sia un reale cambio di passo in termini di innalzamento dei livelli di sicurezza dei sistemi e delle reti del nostro Paese. Da qui, interazione più stretta ed efficace del Cert nazionale e di quello della pubblica amministrazione. I Computer emergency response team che verranno unificati a breve. Verrà anche istituito presso il Mise un centro di valutazione e certificazione nazionale per la verifica dell’affidabilità della componentistica (software e hardware) destinata a infrastrutture critiche e strategiche. Dal ministero dell’Interno, con il suo Centro nazionale anticrimine informatico, al Comando interforze operazioni cibernetiche del ministero della Difesa, ognuno dovrà fare la sua parte. E si sta anche pensando di realizzare nella Scuola telecomunicazioni delle Forze armate di Chiavari un poligono virtuale nazionale, dove effettuare le esercitazioni, fare simulazioni e preparare i nuovi esperti.Ultimo aggiornamento: 2 Giugno, 12:11© RIPRODUZIONE RISERVATA"(Il Messaggero, Cristina Mangano, 01.06.2017)

martedì 11 aprile 2017

Pegasus, lo spyware per iOS e Android che garantisce controllo totale


-->

Pegasus: l’ultimo spyware per iOS e Android

Kaspersky Dailiy, 11 Apr 2017

Gli utenti di iPhone e iPad Apple credono in genere di essere protetti.
Non esiste un malware per iOS, dicono. Apple fa davvero poco per scoraggiare questa idea (l’ “azienda della mela” non permette nemmeno l’accesso alle soluzioni antivirus nel suo AppStore, perché apparentemente non ce n’è bisogno).
La parola chiave, in questo caso, è apparentemente. In realtà esiste un malware che prende di mira gli utenti iOS (è stato provato molte volte) e ad agosto 2016 i ricercatori l’hanno provato ancora una volta, rivelando l’esistenza di Pegasus, uno spyware in grado di hackerare qualsiasi iPad o iPhone, raccogliendo dati sulle vittime e controllandole). Questa scoperta ha turbato l’intero mondo della cybersicurezza.
Al nostro Security Analyst Summit, I ricercatori di Lookout hanno rivelato che Pegasus esiste non solo per iOS ma anche per Android. La versione per Android è in un certo senso diversa dal suo predecessore per iOS. Chiariamo un po’ che cos’è Pegasus e perché utilizziamo la parola “ultimo” per descriverlo.

Pegasus: l’inizio

Pegasus è stato scoperto grazie a Ahmed Mansoor, un attivista per i diritti umani degli Emirati Arabi che è diventato una delle sue vittime. Si trattava di un attacco di spear-phishing. Mansoor aveva ricevuto diversi SMS che contenevano quello che lui pensava fossero link pericolosi, per questo ha inviato i messaggi agli esperti di sicurezza del Citizen Lab che hanno coinvolto nelle indagini anche un’altra azienda di cybersicurezza, Lookout.
Mansoor non si sbagliava. Se avesse cliccato su uno di quei link, il suo iPhone sarebbe stato infettato da un malware (un malware per iOS, per gli iOS senza jailbreak, per l’esattezza). Il malware è stato chiamato Pegasus e per i ricercatori di Lookout si tratta dell’attacco più sofisticato mai visto in qualsiasi terminale.
Pegasus è stato attribuito all’NSO Group, un’azienda israeliana che si guadagna il pane quotidiano sviluppando spyware. Questo vuol dire che il malware è commerciale (viene venduto a chiunque abbia soldi per comprarlo). Pegasus si basa su tre enormi vulnerabilità zero day (prima sconosciute) nell’iOS che gli consentono di effettuare il jailbreak del dispositivo e di installare un software di sorveglianza. Un’altra azienda di cybersicurezza, Zerodium, una volta ha offerto un milione di dollari per un zero-day per iOS, quindi potete immaginarvi quanto sia costato creare Pegasus.
Per quanto riguarda la sorveglianza, è bene essere chiari: stiamo parlando di una sorveglianza totale. Pegasus è un malware modulare. Dopo aver effettuato la scansione del dispositivo preso di mira, installa i moduli necessari per leggere i messaggi e le mail degli utenti, ascoltare le chiamate, fare screenshot, registrare i tasti premuti, esportare la cronologia del browser, i contatti e così via. Fondamentalmente, è in grado di spiare ogni aspetto della vita della vittima.
È bene notare che Pegasus poteva ascoltare anche le registrazioni criptate e poteva leggere i messaggi criptati (grazie alle sue capacità di keylogging e di registrazione degli audio, stava rubando messaggi prima che fossero criptati e, nel caso dei messaggi in arrivo, dopo il decriptaggio).
Un altro fatto interessante su Pegasus è il fatto che questo prova a nascondersi davvero bene. Il malware si autodistrugge se non è in grado di comunicare con il server command & control (C&C) per più di 60 giorni, se esiste un antivirus potenzialmente in grado di rilevarlo, o se rileva di essere stato installato su un dispositivo sbagliato con una scheda SIM sbagliata. (Ricordate, questo è spionaggio mirato; i clienti di NSO Group non spiavano vittime casuali).

Tutti i graziosi cavalli

Probabilmente gli sviluppatori di Pegasus pensavano di aver investito troppo in questo progetto per limitarlo ad una sola piattaforma. Dopo aver scoperto la prima versione, non ci è voluto molto per trovare la seconda. Di conseguenza, al Security Analyst Summit 2017, i ricercatori di Lookout hanno parlato di Pegasus per Android, conosciuto anche come Chrysaor (ecco come lo chiama Google). La versione per Android è molto simile a quella per iOS in termini di capacità, ma è diversa per quanto riguarda le tecniche che utilizza per accedere al dispositivo.
Pegasus per Android non si basa sulle vulnerabilità zero-days. Al contrario, utilizza un metodo molto conosciuto chiamato Framaroot. Ecco un’altra differenza: se la versione per iOS non riesce ad effettuare il jailbreak sul dispositivo, anche l’intero attacco non può essere portato a termine; nella versione per Android, invece, anche se il malware non riesce ad ottenere l’accesso root che gli permetterebbe di installare il software di sorveglianza, continuerà a chiedere direttamente all’utente il permesso per esportare almeno alcuni dati.
Secondo Google esistono solo una dozzina di dispositivi Android infetti, ma per un attacco di cyberspionaggio mirato è tantissimo. Il maggior numero di istallazioni di Pegasus per Android è stato registrato in Israele, con la Georgia al secondo posto e il Messico al terzo. Pegasus per Android è stato avvistato anche in Turchia, Kenya, Nigeria, Emirati Arabi Uniti e altri paesi.

Spread of countries for Android devices infected with Chrysaor malware; allegedly related to Israeli NSO Group https://t.co/CtJeF4GM7R pic.twitter.com/Pt997Bgqgn
— Joseph Cox (@josephfcox) April 4, 2017

Probabilmente siete protetti, ma…

Quando si è diffusa la notizia di una versione di Pegasus per iOS, Apple ha reagito rapidamente. L’azienda ha rilasciato un aggiornamento di sicurezza per iOS, 9.3.5, che risolveva le tre vulnerabilità citate precedentemente.
Google, che ha aiutato a fare le indagini sulla versione Android, ha deciso di intraprendere un’altra strada e ha inviato direttamente un avviso alle potenziali vittime di Pegasus. Quindi, se avete aggiornato i vostri gadget iOS con l’ultima versione del software e non avete ricevuto un messaggio di avvertimento da parte di Google, probabilmente siete protetti e non siete sotto l’occhio vigile di Pegasus.
Ad ogni modo, questo non vuol dire che non ci sia un altro spyware ancora sconosciuto sia per iOS che per Android. L’esistenza di Pegasus ha provato che il malware per iOS è qualcosa di più di un adware codificato male e di alcuni siti web che richiedono un riscatto, che in fin dei conti sono facili da bloccare. Ci sono minacce molto serie là fuori. Abbiamo solo tre consigli da darvi affinché possiate proteggervi il più possibile:
1.    Aggiornate sempre i vostri dispositivi e prestate particolare attenzione agli aggiornamenti di sicurezza.
2.    Installate una buona soluzione di sicurezza su ogni vostro dispositivo. Per il sistema operativo iOS non ne troverete, ma speriamo che il caso di Pegasus faccia ripensare Apple alla sua politica.
3.    Non cedete né al phishing, anche se si tratta di spear-phishing come nel caso di Ahmed Mansoor. Se ricevete un link da una fonte sconosciuta, non cliccateci. Pensateci bene prima di cliccare (o non cliccate affatto).


Link originale: https://www.kaspersky.it/blog/pegasus-spyware/10058/

martedì 7 marzo 2017

L'ultima generazione di sistemi con cui la CIA ci spia.

Così la Cia ci spia: Wikileaks pubblica migliaia di file riservati sull'Agenzia

Dalle tv hackerate per captare immagini e conversazioni alle regole per gli agenti in missione all'estero, dai controlli sui file trafugati a un'azienda italiana ai nuovi sistemi cibernetici. Assange: "Rischi enormi legati allo sviluppo dei nuovi cyber-armamenti"
La Repubblica, 07 marzo 2017
di STEFANIA MAURIZI

E' il primo sguardo ai segreti più segreti della Cia. L'ultima generazione di sistemi con cui l'Agenzia può entrare nelle nostre vite, trasformando anche un innocuo televisore in un sistema che capta ogni conversazione nel salotto di casa nostra. Entrando nell'intimità dei momenti più privati, penetrando persino i dispositivi smart che formano l"internet delle cose", il futuro molto prossimo dell'economia mondiale.

ENGLISH VERSION
Questi sistemi top secret vengono rivelati per la prima volta da WikiLeaks grazie a 8761 file sulla divisione della Central Intelligence Agency che sviluppa software e hardware per sostenere le operazioni di spionaggio. E ancora una volta, sette anni dopo le rivelazioni di Chelsea Manning e quattro dopo quelle di Edward Snowden, l'intelligence americana si trova di fronte a quella che appare essere una nuova grave crisi, perché secondo quanto afferma WikiLeaks, questi materiali pubblicati oggi sono solo "la punta dell'iceberg".

L'organizzazione di Julian Assange potrebbe essere in possesso di migliaia di altri documenti e addirittura delle armi cibernetiche della Central Intelligence Agency: l'Agenzia, infatti, stando a quanto rivela il team di Assange, ha perso il controllo del suo cyber-arsenale.

Repubblica ha avuto accesso agli 8mila file di WikiLeaks in esclusiva mondiale: documenti che appaiono recenti. Il tempo concesso al nostro giornale non ha permesso di completare le verifiche su questi materiali, di natura altamente tecnica, che sono già stati vagliati dagli specialisti dell'organizzazione e che potranno essere verificati in modo indipendente dagli esperti di software di tutto il mondo, ora che sono pubblici.

Dai documenti affiora anche un riferimento diretto a vicende italiane: l'Agenzia statunitense si è interessata al caso di Hacking Team, l'azienda milanese di cybersorveglianza. Quando nel 2015 la società è stata penetrata da hacker mai identificati, la Cia ha deciso di analizzare i materiali finiti in rete. "I dati pubblicati su internet includono qualsiasi cosa uno possa immaginare che un'azienda abbia nelle proprie infrastrutture", scrive l'Agenzia, "nell'interesse di apprendere da essi e di usare (questo) lavoro già esistente, è stato deciso di fare un'analisi di alcune porzioni di dati pubblicati".

Molti dei file contengono anche le identità dei tecnici della Cia, che WikiLeaks non ha pubblicato e ha omissato. Secondo quanto ricostruiscono Assange e il suo staff, "i file provengono da una rete isolata e altamente sicura situata all'interno del centro di Cyber intelligence di Langley, in Virginia", dove ha sede la Cia e "pare che l'archivio circolasse tra gli hacker e i contractor del governo americano in modo non autorizzato, una di queste fonti ne ha fornito alcune parti a WikiLeaks".

La squadra di Assange ha scelto di pubblicare documenti importanti di questo database, ma allo stesso tempo ha reso noto di non volere diffondere le cyber armi della Cia, almeno fino a quando "non emergerà un consenso sulla natura tecnica e politica di questo programma e su come questi armamenti vanno analizzati, resi innocui e pubblicati", perché "ogni singola arma cibernetica che finisce in circolazione, si può diffondere nel mondo nel giro di pochi secondi per finire usata da stati rivali, cyber mafie come anche hacker teenager". WikiLeaks sostiene che, in una dichiarazione fatta all'organizzazione dalla fonte di questi documenti, la cui identità non è stata resa nota, la persona in questione abbia spiegato di "voler innescare un dibattito pubblico sulla sicurezza, sulla creazione, l'uso, la proliferazione e il controllo democratico delle cyber-armi".

Taci, la TV ti spia. La preoccupazione era emersa già due anni fa, ma era stata liquidata come una paranoia. E invece non lo è affatto. Siamo seduti in soggiorno a goderci un film. Una tv smart campeggia nel nostro salotto e noi siamo lì nell'intimità della nostra casa, parliamo o ceniamo, ci confidiamo, convinti che nessuno possa scalfire quel momento nostro. E invece no. I file rivelano che fin dal 2014, la Cia è in grado di impiantare software malevolo (malware) nelle tv smart collegate al web. Il modello citato esplicitamente nei documenti è quello di uno dei più famosi marchi. Il malware permette all'Agenzia di catturare le conversazioni che avvengono all'interno della stanza in cui si trova lo schermo. E' la prima certezza dello sfruttamento ai fini della violazione della privacy dell'"internet delle cose": la serie di elettrodomestici e dispositivi che usiamo nella vita di tutti i giorni e che non sono più "stupidi" oggetti semplicemente collegati a un filo elettrico, ma hanno sensori e programmi in grado di farli operare in internet. Quella stessa rete che li rende intelligenti, li rende anche vulnerabili alle spie.

L'anno scorso, in una testimonianza davanti al Senato americano, il capo della comunità dell'intelligence Usa (Director of National Intelligence), James Clapper, dichiarò: "In futuro i servizi di intelligence potrebbero usare l'internet delle cose per identificare, sorvegliare, monitorare e localizzare (gli utenti, ndr)". Clapper non aggiunse, ovviamente, che le sue spie avevano già messo a punto le tecnologie per farlo. Il programma dell'Agenzia che prende di mira la smart tv di un celebre marchio dell'elettronica si chiama "Weeping Angel", Angelo Piangente, ed è stato sviluppato tre anni fa dall'unità della Cia che si chiama "Embedded Development Branch" in collaborazione con i servizi segreti inglesi.

Ma almeno all'inizio, l'Angelo Piangente sembra aver dato non pochi problemi alla Central Intelligence Agency: "L'aggiornamento in rete del firmware", scrive l'Agenzia nei documenti, "potrebbe rimuovere il software impiantato (non è testato) o porzioni di esso" e un led blu nel retro del televisore sembra avere creato grattacapi alla Cia, rimanendo accesso anche quando il televisore doveva apparire spento, in una modalità che l'Agenzia chiama "Finto spento" (Fake-Off). Quella luce blu poteva rivelare che qualcosa di strano stava succedendo nel televisore hackerato. Secondo i file, l'Agenzia ha cercato di risolvere questo problema nel giugno 2014, in un workshop congiunto con i servizi segreti inglesi dell'MI5. E mentre cercava di superare quella grana, l'intelligence americana già guardava al futuro: catturare non solo le conversazioni che avvengono nella stanza in cui opera la tv, ma anche di fare riprese video e scattare foto istantanee.

Assalto agli smartphone. L'esame di questi documenti ha permesso di individuare, tra le altre cose, un catalogo completo di sistemi realizzati dai tecnici della Cia o ottenuti da altre agenzie investigative con l'obiettivo di manipolare tutti gli apparati di telecomunicazione più diffusi. A partire dagli smartphone, che vengono hackerati e trasformati in una sorta di "macrospia", trasmettendo immagini, suoni e informazioni. Un'unità specializzata ha creato diversi malware per penetrare i modelli della Apple, sia telefoni che IPad, e catturare così ogni tipo di dati. Un'altra invece si è dedicata ai cellulari che usano Android, come i modelli di Samsung, Sony e Htc, penetrati grazie a 24 diversi software di spionaggio.