WikiLeaks reveals CIA trove alleging wide-scale hacking

This file photo shows the seal of the Central Intelligence Agency at CIA headquarters in Langley, Virginia. (AP Photo/Carolyn Kaster, File)
Updated 08 March 2017
Follow

WikiLeaks reveals CIA trove alleging wide-scale hacking

WASHINGTON: WikiLeaks published thousands of documents Tuesday described as secret files about CIA hacking tools the government employs to break into users’ computers, mobile phones and even smart TVs from companies like Apple, Google, Microsoft and Samsung.
The documents describe clandestine methods for bypassing or defeating encryption, antivirus tools and other protective security features intended to keep the private information of citizens and corporations safe from prying eyes. US government employees, including President Donald Trump, use many of the same products and Internet services purportedly compromised by the tools.
The documents describe CIA efforts — cooperating with friendly foreign governments and the US National Security Agency — to subvert the world’s most popular technology platforms, including Apple’s iPhones and iPads, Google’s Android phones and the Microsoft Windows operating system for desktop computers and laptops.
The documents also include discussions about compromising some Internet-connected televisions to turn them into listening posts. One document discusses hacking vehicle systems, indicating the CIA’s interest in hacking modern cars with sophisticated on-board computers.
WikiLeaks has a long track record of releasing top secret government documents, and experts who sifted through the material said it appeared legitimate.
Jonathan Liu, a spokesman for the CIA, said: “We do not comment on the authenticity or content of purported intelligence documents.” White House spokesman Sean Spicer also declined comment.

Missing from WikiLeaks’ trove are the actual hacking tools themselves, some of which were developed by government hackers while others were purchased from outsiders. WikiLeaks said it planned to avoid distributing tools “until a consensus emerges” on the political nature of the CIA’s program and how such software could be analyzed, disarmed and published.
Tuesday’s disclosure left anxious consumers who use the products with little recourse, since repairing the software vulnerabilities in ways that might block the tools’ effectiveness is the responsibility of leading technology companies. The revelations threatened to upend confidence in an Obama-era government program, the Vulnerability Equities Process, under which federal agencies warn technology companies about weaknesses in their software so they can be quickly fixed.
It was not immediately clear how WikiLeaks obtained the information, and details in the documents could not immediately be verified. WikiLeaks said the material came from “an isolated, high-security network” inside the CIA’s Center for Cyber Intelligence but didn’t say whether the files were removed by a rogue employee or whether the theft involved hacking a federal contractor working for the CIA or perhaps breaking into a staging server where such information might have been temporarily stored.
“The archive appears to have been circulated among former US government hackers and contractors in an unauthorized manner, one of whom has provided WikiLeaks with portions of the archive,” WikiLeaks said in a statement.
Some technology firms on Tuesday said they were evaluating the information. Microsoft Corp. said it was looking into the report, while the maker of secure messaging app Signal said the purported CIA tools affected users’ actual phones and not its software design or encryption protocols.
The tools described in the documents carried bizarre names, including Time Stomper, Fight Club, Jukebox, Bartender, Wild Turkey, Margarita and “RickyBobby,” a racecar-driving character in the comedy film, “Talladega Nights.”
That RickyBobby tool, the documents said, was intended to plant and harvest files on computers running “newer versions of Microsoft Windows and Windows Server.” It operated “as a lightweight implant for target computers” without raising warnings from antivirus or intrusion-detection software. It took advantage of files Microsoft built into Windows since at least 10 years ago.
The files include comments by CIA hackers boasting in slang language of their prowess: “You know we got the dankest Trojans and collection tools,” one reads.
The documents show broad exchanges of tools and information among the CIA, NSA and other US intelligence agencies, as well as intelligence services of close allies Australia, Canada, New Zealand and the United Kingdom.
WikiLeaks claimed the CIA used both its Langley, Virginia, headquarters and the US consulate in Frankfurt, Germany, as bases for its covert hackers. The AP found that one purported CIA hack that imitates the Domain Name System — the Internet’s phone book — traced to an Internet domain hosted in Germany.

Jake Williams, a security expert with Augusta, Georgia-based Rendition Infosec who has experience dealing with government hackers, said the files’ extensive references to operation security meant they were almost certainly government-backed. “I can’t fathom anyone fabricated that amount of operational security concern,” he said. “It rings true to me.”
In an unusual move, WikiLeaks said it was withholding some secrets inside the documents. Among them, it said it had withheld details of tens of thousands of “CIA targets and attack machines throughout Latin America, Europe and the United States.”
WikiLeaks also said its data included a “substantial library” of digital espionage techniques borrowed from other countries, including Russia.
If the authenticity of the documents is officially confirmed, it would represent yet another catastrophic breach for the US intelligence community at the hands of WikiLeaks and its allies, which have repeatedly humbled Washington with the mass release of classified material, including from the State Department and the Pentagon.
Tuesday’s documents purported to be from the CIA’s “Embedded Development Branch” discuss techniques for injecting malicious code into computers protected by the personal security products of leading international anti-virus companies. They describe ways to trick anti-virus products from companies including Russia-based Kaspersky Lab, Romania-based BitDefender, Dutch-based AVG Technologies, F-Secure of Finland and Rising Antivirus, a Chinese company.
In the new trove, programmers also posted instructions for how to access user names and passwords in popular Internet browsers like Microsoft Internet Explorer, Google Chrome and Mozilla Firefox. Under a list of references in one exchange, users were advised: “Be advised, the following may be low traffic sites, sites in which it might be a good idea to disable JavaScript, etc,” referring to a widely used Internet programming language. “Remember, practice safe browsing, kidz!” they were told.
Some documents were classified “secret” or “top secret” and not for distribution to foreign nationals. One file said those classifications would protect deployed hacks from being “attributed” to the US government. The practice of attribution, or identifying who was behind an intrusion, has been difficult for investigators probing sophisticated hacks that likely came from powerful nation-states.
___
Satter reported from Paris. Associated Press writers Stephen Braun, Vivian Salama, Frank Bajak, Tammy Webber and Michael Liedtke contributed to this report.


Britain plans at least six new weapons factories in defense review

Updated 5 sec ago
Follow

Britain plans at least six new weapons factories in defense review

  • The 1.5 billion-pound ($2.0 billion) investment will be included in the Strategic Defense Review, a 10-year plan for military equipment and services

MANCHESTER, England: Britain will build at least six new factories producing weapons and explosives as part of a major review of its defense capabilities, the government said on Saturday.
The 1.5 billion-pound ($2.0 billion) investment will be included in the Strategic Defense Review, a 10-year plan for military equipment and services. The SDR is expected to be published on Monday.
The Ministry of Defense added that it planned to procure up to 7,000 long-range weapons built in Britain. Together, the measures announced on Saturday will create around 1,800 jobs, the MoD said.
“The hard-fought lessons from (Russian President Vladimir) Putin’s illegal invasion of Ukraine show a military is only as strong as the industry that stands behind them,” Defense Secretary John Healey said in a statement.
“We are strengthening the UK’s industrial base to better deter our adversaries and make the UK secure at home and strong abroad.”
The extra investment will mean Britain will spend around 6 billion pounds on munitions in the current parliament, the MoD said.
Earlier on Saturday, the MoD said it would spend an extra 1.5 billion pounds to tackle the poor state of housing for the country’s armed forces.


Paris Holocaust memorial, synagogues hit with paint

Updated 31 May 2025
Follow

Paris Holocaust memorial, synagogues hit with paint

  • “I am deeply disgusted by these heinous acts targeting the Jewish community,” Retailleau said
  • No arrests have been made

PARIS: France’s Holocaust memorial, two synagogues and a restaurant in central Paris were vandalized with green paint overnight, according to police sources on Saturday, prompting condemnation from government and city officials.

“I am deeply disgusted by these heinous acts targeting the Jewish community,” French Interior Minister Bruno Retailleau said on X.

No arrests have been made.

Retailleau last week called for “visible and dissuasive” security measures at Jewish-linked sites amid concerns over possible anti-Semitic acts.

In a separate message seen by AFP, the interior minister on Friday had again ordered heightened surveillance ahead of the upcoming Jewish Shavuot holiday.

The French Jewish community, one of the largest in the world, has for months been on edge in the face of a growing number of attacks and desecrations of memorials since the Gaza war erupted on October 7, 2023.

“Anti-Semitic acts account for more than 60 percent of anti-religious acts, and the Jewish community is particularly vulnerable,” Retailleau said in the message seen by AFP.

Paris authorities would be lodging a complaint over the paint incident, said the city’s mayor, Anne Hidalgo.

“I condemn these acts of intimidation in the strongest possible terms. Anti-Semitism has no place in our city or in our Republic,” she said.

In May 2024, red hand graffiti was painted beneath the wall at the memorial in central Paris honoring individuals who saved Jews from persecution during the 1940-44 Nazi occupation of France.


US judge prevents Trump from invalidating 5,000 Venezuelans’ legal documents

Updated 31 May 2025
Follow

US judge prevents Trump from invalidating 5,000 Venezuelans’ legal documents

  • The US Supreme Court on May 19 lifted an earlier order Chen issued
  • TPS is available to people whose home country has experienced a natural disaster

NEW YORK: A federal judge prevented the Trump administration from invalidating work permits and other documents granting lawful status to about 5,000 Venezuelans, a subset of the nearly 350,000 whose temporary legal protections the US Supreme Court last week allowed to be terminated.

US District Judge Edward Chen in San Francisco in a Friday night ruling concluded that Homeland Security Secretary Kristi Noem likely exceeded her authority when she in February invalidated those documents while more broadly ending the temporary protected status granted to the Venezuelans.

The US Supreme Court on May 19 lifted an earlier order Chen issued that prevented the administration as part of President Donald Trump’s hard-line immigration agenda from terminating deportation protection conferred to Venezuelans under the Temporary Protected Status, or TPS, program.

But the high court stated specifically it was not preventing any Venezuelans from still challenging Noem’s related decision to invalidate documents they were issued pursuant to that program that allowed them to work and live in the United States.

Such documents were issued after the US Department of Homeland Security in the final days of Democratic President Joe Biden’s tenure extended the TPS program for the Venezuelans by 18 months to October 2026, an action Noem then moved to reverse.

TPS is available to people whose home country has experienced a natural disaster, armed conflict or other extraordinary event.

Lawyers for several Venezuelans and the advocacy group National TPS Alliance asked Chen to recognize the continuing validity of those documents, saying without them thousands of migrants could lose their jobs or be deported.

Chen in siding with them said nothing in the statute that authorized the Temporary Protected Status program allowed Noem to invalidate the documents.

Chen, an appointee of Democratic President Barack Obama, noted the administration estimated only about 5,000 of the 350,000 Venezuelans held such documents. “This smaller number cuts against any contention that the continued presence of these TPS holders who were granted TPS-related documents by the Secretary would be a toll on the national or local economies or a threat to national security,” Chen wrote.

The Department of Homeland Security did not respond to a request for comment on Saturday.

Chen ruled hours after the US Supreme Court in a different case allowed Trump’s administration to end the temporary immigration “parole” granted to 532,000 Venezuelan, Cuban, Haitian and Nicaraguan migrants under a different Biden-era program.


India’s military chief admits jets downed in recent clashes with Pakistan

Updated 31 May 2025
Follow

India’s military chief admits jets downed in recent clashes with Pakistan

  • Islamabad previously claimed to have shot down 6 Indian jets in early May
  • Indian Air Force may have underestimated its Pakistani counterpart, says expert

NEW DELHI: India’s military chief Gen. Anil Chauhan has confirmed for the first time that the Indian Air Force lost jets in clashes with Pakistan in May.

Earlier this month, Pakistani Prime Minister Shehbaz Sharif said his country shot down six Indian jets, an assertion that Delhi had refrained from commenting on.

Chauhan, chief of defense staff of the Indian Armed Forces, is the first Indian official to make the most direct admission over the fate of the country’s fighter jets during the conflict that erupted on May 7.

“What is important is that, not the jet being downed, but why they were being downed,” Chauhan told Bloomberg TV in an interview on Saturday, while attending the Shangri-La Dialogue in Singapore.

“The good part is that we are able to understand the tactical mistake which we made, remedy it, rectify it and then implement it again after two days and fly all our jets again, targeting at long range.”

Pakistan’s claims of shooting down six Indian combat aircraft were “absolutely incorrect,” Chauhan said, without specifying how many jets India lost.

India and Pakistan recently saw their worst clashes in half a century, during which both sides traded air, drone and missile strikes, as well as artillery and small arms fire along their shared border.

It was triggered by a gruesome attack on tourists near the resort town of Pahalgam in Indian Kashmir on April 22, in which 26 people — 25 Indians and one Nepali citizen — were killed.

Bharat Karnad, an emeritus professor for National Security Studies at the Delhi-based Centre for Policy Research, said that the Indian Air Force may have underestimated its Pakistani counterpart.

“Initially, Indians were surprised. Maybe they underestimated the capacity of the Pakistani Air Force,” Karnad told Arab News on Saturday.

“I think what was surprising was that India did not use the airborne early warning (and) control system, the NETRA, which Pakistan has used very well,” he said. “I’m not sure how much the Indian Air Force expected this kind of tactical innovation. So, this is something that the Indian Air Force realized very quickly.”

According to Air Vice Marshal Kapil Kak, a retired officer of the Indian Air Force, Pakistan benefited from its Chinese-made weapons during the early May conflict.

“This brings us to the lessons which underscore that India was not fighting Pakistan on one front but two countries: Pakistan and China,” Kak told Arab News.

“Every single superior technology, capability, operationally and tactically, or in strategic terms, are made available to Pakistan. That must concern us: What kind of force structure we must have and what kind of capabilities we must build against the combo.”


Death toll rises to 17 in Indonesia quarry collapse as search continues

Updated 31 May 2025
Follow

Death toll rises to 17 in Indonesia quarry collapse as search continues

  • The victims were trapped in the rubble when the Gunung Kuda quarry in Cirebon district collapsed
  • By Saturday afternoon, rescuers had retrieved 16 bodies

CIREBON, Indonesia: The death toll from the collapse of a stone quarry in Indonesia’s West Java province has risen to at least 17, with eight people still missing, officials said Saturday.

The victims were trapped in the rubble when the Gunung Kuda quarry in Cirebon district collapsed on Friday. A dozen survivors were found by rescuers.

By Saturday afternoon, rescuers had retrieved 16 bodies, while one of the survivors died in the hospital, said local police chief Sumarni. She said rescuers are searching for eight people still believed to be trapped

“The search operation has been hampered by bad weather, unstable soil and rugged terrain,” said Sumarni who goes by a single name like many Indonesians.

She said the cause of the collapse is still under investigation, and police have been questioning six people, including the owner of the quarry.

Local television reports showed emergency personnel, along with police, soldiers and volunteers, digging desperately in the quarry in a steep limestone cliff, supported by five excavators, early Saturday.

West Java Governor Dedi Mulyadi said in a video statement on Instagram that he visited the quarry before he was elected in February and considered it dangerous.

“It did not meet the safety standard elements for its workers,” Mulyadi said, adding that at that time, “I didn’t have any capacity to stop it.”

On Friday, Mulyadi said that he had ordered the quarry shut, as well as four other similar sites in West Java.

Illegal or informal resource extraction operations are common in Indonesia, providing a tenuous livelihood to those who labor in conditions with a high risk of injury or death.

Landslides, flooding and tunnel collapses are just some of the hazards associated with them. Much of the processing of sand, rocks or gold ore also involves the use of highly toxic mercury and cyanide by workers using little or no protection.

Last year, a landslide triggered by torrential rains struck an unauthorized gold mining operation on Indonesia’s Sumatra island, killing at least 15 people.