Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Tanuki

(14,922 posts)
Thu Jan 25, 2018, 12:55 PM Jan 2018

Tech firms allowed Russian probe of software widely used by U.S. govt

http://mobile.reuters.com/article/amp/idUSKBN1FE1DT?__twitter_impression=true

"Reuters) - Major global technology providers SAP (SAPG.DE), Symantec (SYMC.O) and McAfee have allowed Russian authorities to hunt for vulnerabilities in software deeply embedded across the U.S. government, a Reuters investigation has found.

The practice potentially jeopardizes the security of computer networks in at least a dozen federal agencies, U.S. lawmakers and security experts said. It involves more companies and a broader swath of the government than previously reported.

In order to sell in the Russian market, the tech companies let a Russian defense agency scour the inner workings, or source code, of some of their products. Russian authorities say the reviews are necessary to detect flaws that could be exploited by hackers. (Graphic: tmsnrt.rs/2sZudWT)

But those same products protect some of the most sensitive areas of the U.S government, including the Pentagon, NASA, the State Department, the FBI and the intelligence community, against hacking by sophisticated cyber adversaries like Russia."....


Reuters revealed in October that Hewlett Packard Enterprise (HPE.N) software known as ArcSight, used to help secure the Pentagon's computers, had been reviewed by a Russian military contractor with close ties to Russia's security services.

Now, a Reuters review of hundreds of U.S. federal procurement documents and Russian regulatory records shows that the potential risks to the U.S. government from Russian source code reviews are more widespread.

Beyond the Pentagon, ArcSight is used in at least seven other agencies, including the Office of the Director of National Intelligence and the State Department's intelligence unit, the review showed. Additionally, products made by SAP, Symantec and McAfee and reviewed by Russian authorities are used in at least eight agencies. Some agencies use more than one of the four products. (Graphic: tmsnrt.rs/2C30rp8).... (more)



2 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Tech firms allowed Russian probe of software widely used by U.S. govt (Original Post) Tanuki Jan 2018 OP
No words. CrispyQ Jan 2018 #1
O.M.G. RandomAccess Jan 2018 #2
 

RandomAccess

(5,210 posts)
2. O.M.G.
Thu Jan 25, 2018, 01:43 PM
Jan 2018

I thought Tillerson's brilliant move to give a no-bid contract to RUSSIANS for building the new Russia embassy was bad.

Sh*t.

Latest Discussions»General Discussion»Tech firms allowed Russia...