Submitted via IRC for TheMightyBuzzard
Canada's Communications Security Establishment (CSE) agency announced this week that the source code for one of its malware detection and analysis tools has been made public.
The Python-based tool released as open source by the spy agency is named Assemblyline and it was created within the CSE's Cyber Defence program. The organization says this is one of the tools it uses to protect the country's computer systems against advanced cyber threats.
Assemblyline allows defenders to automate the analysis of malicious files. The analysis process, which has been compared to a conveyor belt, involves assigning a unique identifier to files as they travel through the system, looking for signs of malicious functionality and extracting features for further analysis, generating alerts for malicious files and assigning them a score, and sending data to other protection systems so that identified threats can be neutralized.
[...] The CSE is not the only spy agency to release open source tools. Last year, the UK's Government Communications Headquarters (GCHQ) made available CyberChef, a tool that allows both technical and non-technical people to analyze encryption, compression and decompression, and data formats.
Source: Canada's CSE Spy Agency Releases Malware Analysis Tool
(Score: 4, Informative) by Anonymous Coward on Sunday October 22 2017, @04:41AM (2 children)
CSE works hand-in-glove with the NSA and GCHQ, the leaders of the spy-on-all-citizens movement. Do we really trust software from any of that crew?
(Score: 0) by Anonymous Coward on Sunday October 22 2017, @08:39AM
(Score: 4, Interesting) by c0lo on Sunday October 22 2017, @09:55AM
Is open-source, it's Python, one can verify if it is to be trusted or not.
Did you know SELinux is an NSA creation? It has been accepted as "trust-able enough" and adopted in all major distributions - based on functionality and availability of source code.
On the other side, new cryptography standards advanced by NSA were rejected by allied crypto experts [sky.com]
https://www.youtube.com/watch?v=aoFiw2jMy-0 https://soylentnews.org/~MichaelDavidCrawford