«FBI Had the REvil Decryption Key»
di Bruce Schneier
mer, 22 set 2021

https://www.schneier.com/blog/archives/2021/09/fbi-had-the-revil-decryption-key.html

--8<---------------cut here---------------start------------->8---

The Washington Post reports that the FBI had a decryption key for the
REvil ransomware, but didn’t pass it along to victims because it would
have disrupted an ongoing operation.

 The key was obtained through access to the servers of the Russia-based
 criminal gang behind the July attack. Deploying it immediately could
 have helped the victims, including schools and hospitals, avoid what
 analysts estimate was millions of dollars in recovery costs.

 But the FBI held on to the key, with the agreement of other agencies,
 in part because it was planning to carry out an operation to disrupt
 the hackers, a group known as REvil, and the bureau did not want to tip
 them off. Also, a government assessment found the harm was not as
 severe as initially feared.

Fighting ransomware is filled with security trade-offs. This is one I
had not previously considered.

--8<---------------cut here---------------end--------------->8---

Saluti, 380°

-- 
380° (Giovanni Biscuolo public alter ego)

«Noi, incompetenti come siamo,
 non abbiamo alcun titolo per suggerire alcunché»

Disinformation flourishes because many people care deeply about injustice
but very few check the facts.  Ask me about <https://stallmansupport.org>.

Attachment: signature.asc
Description: PGP signature

_______________________________________________
nexa mailing list
[email protected]
https://server-nexa.polito.it/cgi-bin/mailman/listinfo/nexa

Reply via email to