Featured Articles

Analysts expect ARM to do well next year

Analysts expect ARM to do well next year

British chip designer ARM could cash in on the mobile industry's rush to transition to 64-bit operating systems and hardware.

More...
Huawei and Xiaomi outpace Lenovo, LG in smartphone market

Huawei and Xiaomi outpace Lenovo, LG in smartphone market

Samsung has lost smartphone market share, ending the quarter on a low note and Xiaomi appears to be the big winner.

More...
Intel Broadwell 15W coming to CES

Intel Broadwell 15W coming to CES

It looks like Intel will be showing off its 14nm processors, codenames Broadwell, in a couple of weeks at CES 2015.

More...
Gainward GTX 980 Phantom reviewed

Gainward GTX 980 Phantom reviewed

Today we’ll be taking a closer look at the recently introduced Gainward GTX 980 4GB with the company’s trademark Phantom cooler.

More...
Zotac ZBOX Sphere OI520 barebones vs Sphere Plus review

Zotac ZBOX Sphere OI520 barebones vs Sphere Plus review

Zotac has been in the nettop and mini-PC space for more than four years now and it has managed to carve…

More...
Frontpage Slideshow | Copyright © 2006-2010 orks, a business unit of Nuevvo Webware Ltd.
Wednesday, 18 September 2013 08:48

NSA buying exploits and hacks

Written by Nick Farrell



French connection

The US government has been paying a French security firm for backdoors and zero day hacks. The contract has been made public through a Freedom of Information Act request by MuckRock, an open government project.

Apparently the NSA bought VUPEN’s services on September 14, 2012. The NSA contract is for a one-year subscription to the company’s “binary analysis and exploits service”. VUPEN is one of a handful of companies that sell software exploits and vulnerability details. The company, based in Montpellier, France, employs a number of security researchers who do original vulnerability research and develop exploits for bugs that they find.

This information is then sold to governments and law enforcement agencies. VUPEN has promised that the company only will sell its services to NATO countries and will not deal with oppressive regimes. However there are concerns that VUPEN does not actually help anyone with this service, and simply allows governments to create malware.

In an ideal world, the NSA would buy the exploit and then pass it on to Microsoft or the hardware makers to fix.

Nick Farrell

E-mail: This e-mail address is being protected from spambots. You need JavaScript enabled to view it
blog comments powered by Disqus

 

Facebook activity

Latest Commented Articles

Recent Comments