WikiLeaks: How the CIA Disguises Its Hacking to Appear to Be Foreign

CIA Headquarters Podium
Share:

Friday morning, WikiLeaks released the third of its “Vault 7” data and document dumps related to CIA hacking.

This latest drop, codenamed “Marble,” features 676 source code files for the CIA’s secret anti-forensic Marble Framework, which was used to hamper forensic investigators and anti-virus companies from attributing viruses, Trojans and hacking attacks to the CIA. It did this by hiding fragments of text used in its malware from visual inspection.

“This is the digital equivalent of a specialized CIA tool to place covers over the English-language text on U.S.-produced weapons systems before giving them to insurgents secretly backed by the CIA,” the anti-secrecy group stated in a press release announcing the drop. “Marble forms part of the CIA’s anti-forensics approach and the CIA’s Core Library of malware code. It is ‘[D]esigned to allow for flexible and easy-to-use obfuscation” as “string obfuscation algorithms (especially those that are unique) are often used to link malware to a specific developer or development shop.'”

WikiLeaks claims the Marble source code also includes a “deobfuscator” to reverse the hidden text. This, along with other revealed techniques, patterns and signatures, can be used by forensic investigators to correctly attribute previous hacking attacks and viruses to the CIA.

According to the group’s statement, the U.S. spy agency can make the attacks appear to be Russian, Chinese, North Korean, Saudi Arabian or Iranian.

“This would permit a forensic attribution double game, for example by pretending that the spoken language of the malware creator was not American English, but Chinese, but then showing attempts to conceal the use of Chinese, drawing forensic investigators even more strongly to the wrong conclusion, but there are other possibilities, such as hiding fake error messages,” it stated. “The Marble Framework is used for obfuscation only and does not contain any vulnerabilties or exploits by itself.”

This latest release follows the group’s second release, codenamed “Dark Matter,” by a little more than a week. In that statement, the group exposed how the CIA has infected Apple Mac firmware used on both computers and smartphones since at least 2008. {eoa}

+ posts
Share:

Related topics:

See an error in this article?

Send us a correction

To contact us or to submit an article

Click and play our featured shows

Forerunner Church Has Final Service Amid IHOPKC Shuttering of Ministry

https://www.youtube.com/watch?v=W4AbKDjgJfI&list=PLgLSA1gHCqC_ZF_nOSK2S_r5qmu0yHYGK&index=1&t=3007s Forerunner Church celebrated its final church service on Pentecost Sunday before its closure. Forerunner Church is a branch of the International House of Prayer Kansas City (IHOPKC) ministry. After multiplying scandals surrounding ministry founder, Mike Bickle, IHOPKC decided to...

Morning Rundown: The Prosperity Gospel Has Been Exposed

Here’s a quick rundown of the top stories on charismanews.com: The Prosperity Gospel Has Been Exposed https://youtu.be/_ebkALgIlv0 Is prosperity biblical? This question has been asked for decades, and in light of recent footage and Benny Hinn’s admission of making mistakes in regards...

Pixabay

The Key to Fulfilling Your Purpose in Life

God loves you, and He has a good plan for your life. You are a wonderful creation created by Him, and you have a unique purpose to fulfill in this world. Breaking news, Spirit-filled stories. Subscribe to Charisma on YouTube...

Joel Osteen Celebrates Mega Milestone at Lakewood Church

https://www.youtube.com/watch?v=3zn2yL6j_3k Joel Osteen celebrated his latest milestone at Lakewood Church this past Sunday. Osteen’s latest message was the 1,000th sermon he’s preached since taking the position as Pastor of Lakewood Church in 1999 after his father’s death. This comes right...

The Prosperity Gospel Has Been Exposed

https://www.youtube.com/watch?v=_ebkALgIlv0 Is prosperity biblical? This question has been asked for decades, and in light of recent footage and Benny Hinn’s admission of making mistakes in regards to prosperity, it’s come back to the surface of what it looks like from...

1 2 3 4 5 6 7 8 97 98 99 100
Scroll to Top