#finfisher — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #finfisher, aggregated by home.social.
-
CW: #BOLO #StateSponsoredMalware used by #Transnational #CrimeSyndicateSoftware #GammaGroup #FinFisher #FinSpy #Finsky
Misconfigurations in #GammaGroup's #FinFisher #FinSpy #Finsky sold as ' targeted investigations software ' but used by these #TransnationalCartels taking advantage of misconfigured & unaudited #UnlimitedClientLicenses, led to this #CALEA software configurations blocking their detection of their hacked #LEOCredentials being used.
👀
🔬
#LEO admins have not detected this spoofing of their own credentials used by this #Transnational criminal cartel either by being paid, a quid pro quo / leverage of said people, or just incompetence teaming up with willful ignorance (a deadly combination) using ( #Meta's #FacebookForums , a #KiwiFarm clone ) for use as a coordinated low to high profile #BreakingAndEntering heists & harassment #cult using #COINTELPRO & 🤝Cartel like stalking techniques & campaigns before, during & after the pandemic, for the past 19+ years.This misconfigured client targeting investigations software is being used for illegal #MassSuveillence, unchecked & #unaudited, & is currently _not audited_ nor reviewable for #LicenseAndRegistration checking, as a perfect cover for this #Transnational #UnlimitedClientInstalls & targeting proxies which is installed from the #appleappstore & #GooglePlayStore.
#TransnationalCrimeSyndicate, a #KiwiFarmsClone site called #Meta in #infosec #CALEA #masssurveillance #investigations #infosec #kakistocracy #RTNDA #BreakingNews #news
-
What iF there was an 18-24yr old group of new voters, let's say 3M of them, & #StateSponsoredMalware was used to ' force a vote a certain way '.
That would definitely be on the ledger of investigations, for sure, right Brazil? 🙄🤨
#uspol #SSM™ #VoterIntimidation #SwingStates #Elwction2024 🙄🤨
#infosec #delivers_dtignite_com
#GammaGroup #FinFisher #FinSpy #Finsky -
CW: Interesting #CALEA #GreyMarket usage of #StateSponsoredMalware™ key capabilities & logged attributes
One of the key attributes of #StateSponsoredMalware™ from #GammaGroup's #FinFisher #FinSpy #Finsky is understanding that it is a shim based mish mash of resident files that point to different parts of the other background services running.
Some are replaced stock system files modified to look like and are named the same as the original but are supplemented with additional API's that call the mutiple shims that has as it's main goal of getting complete persistence on your systems if it has not done so already.
🚩🚩🚩🚩One first sign is the battery drain this software uses. It has a weird side effect of NOT logging in this battery usage like normal applications and system. 🚩🚩🚩🚩
⚠️🚨⚠️🚨⚠️🚨⚠️ 🚨⚠️🚨⚠️🚨
This BATTERY DRAIN is a HUGE
first indicator of compromise.
⚠️🚨⚠️🚨⚠️🚨⚠️🚨⚠️🚨⚠️🚨Second is checking the BACKGROUND programs running list. There are SEVERAL background programs that indicates you have been compromised by GammaGroup's software, especially on #Android , #IOS, #MacOS, #Windows, & #Linux.
There are attaccc features also which spread, from a library of PNGs with URL arrays embedded to their #malware services that launch attaccc's based on certain PSTN calls, web browsing & also MMS & SMS interactions.
For example, receiving an SMS or MMS can activate things on your computer or wireless device to do things like start a running process shim like start or restart specific services.
There is also a #MITM #ForcedMDM & #proxying ability to use your end point as an attaccc node completely behind the scenes without your intervention or knowledge unless you are logging your traffic which also could be bypassed also as has been seen previously. That is on purpose.
Continued..... #infosec #GreyMarket #CALEA #malware #investigations #RTDNA ☣️🔍🧐