<?xml version="1.0" encoding="UTF-8"?><?xml-stylesheet type="text/css" media="screen" href="http://s2.wp.com/wp-content/themes/vip/newyorkobserver/stylesheets/rss.css"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Betabeat &#187; Gauss</title>
	<atom:link href="http://betabeat.com/tag/gauss/feed/" rel="self" type="application/rss+xml" />
	<link>http://betabeat.com</link>
	<description>Just another WordPress.com site</description>
	<lastBuildDate>Wed, 22 May 2013 20:19:47 +0000</lastBuildDate>
	<language></language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='betabeat.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Betabeat &#187; Gauss</title>
		<link>http://betabeat.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://betabeat.com/osd.xml" title="Betabeat" />
	<atom:link rel='hub' href='http://betabeat.com/?pushpress=hub'/>
		<item>
				
		<title>Kaspersky Lab is Working on its Own Super-Secure Industrial Operating System</title>

		<comments>http://betabeat.com/2012/10/kaspersky-lab-is-working-on-its-own-super-secure-industrial-operating-system/#comments</comments>
		<pubDate>Tue, 16 Oct 2012 18:24:57 -0400</pubDate>
					<link>http://betabeat.com/2012/10/kaspersky-lab-is-working-on-its-own-super-secure-industrial-operating-system/</link>
			<dc:creator>Steve Huff</dc:creator>
				
		<guid isPermaLink="false">http://betabeat.com/?p=66682</guid>
		<description><![CDATA[<p><div id="attachment_55842" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg"><img class="size-medium wp-image-55842" title="Eugene Kaspersky" alt="" src="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" height="199" width="300" /></a><p class="wp-caption-text">Mr. Kaspersky not looking supervillain-like at all. (Photo: <a href="http://www.flickr.com/photos/cebitaus/7246654066/sizes/m/in/photostream/">flickr.com/cebitaus</a>)</p></div></p>
<p>Inspired by the behaviors of sophisticated malware such as Stuxnet, Flame, Duqu and Gauss, Russian billionaire and possible real-life Batman Eugene Kaspersky announced today that his <a href="http://eugene.kaspersky.com/2012/10/16/kl-developing-its-own-operating-system-we-confirm-the-rumors-and-end-the-speculation/">Kaspersky Lab is developing a new operating system</a>.</p>
<p>Mr. Kaspersky's announcement wasn't heavy on details about the OS, but security was obviously priority one. Acknowledging that Microsoft, Apple and the open source communities haven't been able to create truly secure controls, Mr. Kaspersky basically said the problem with the previous systems was their universality:<!--more--></p>
<blockquote><p><em>First</em>: our system is highly tailored, developed for solving a specific narrow task, and not intended for playing Half-Life on, editing your vacation videos, or blathering on social media. <em>Second</em>: we’re working on methods of writing software which by design won’t be able to carry out any behind-the-scenes, undeclared activity. This is the important bit: the impossibility of executing third-party code, or of breaking into the system or running unauthorized applications on our OS; and this is both provable and testable.</p></blockquote>
<p>Mr. Kaspersky linked to "<a href="http://www.securelist.com/en/analysis/204792248/Securing_Critical_Information_Infrastructure_Trusted_Computing_Base" target="_blank">Securing Critical Information Infrastructure: Trusted Computing Base</a>" to help answer questions regarding the new OS. It's essentially a paper that dissects the way industrial cyber-attacks work and details why they work.</p>
<p>The study lists the following necessary elements of a "maximally secure" computer network:</p>
<ul>
<li>The operating system can’t be based on existing computer code; therefore, it must be written from scratch.</li>
<li>To achieve a guarantee of security it must contain no mistakes or vulnerabilities whatsoever in the kernel, which controls the rest of the modules of the system. As a result, the core must be 100% verified as not permitting vulnerabilities or dual-purpose code.</li>
<li>For the same reason, the kernel needs to contain a very bare minimum of code, and that means that the maximum possible quantity of code, including drivers, needs to be controlled by the core and be executed with low-level access rights.</li>
<li>In such an environment there needs to be a powerful and reliable system of protection that supports different models of security.</li>
</ul>
<p>With these features in mind, Kaspersky Lab states that its new system's central feature will be a "categorical impossibility" of running any background programs, giving engineers total control and management of the system.</p>
<p>Cyber-warfare being what it is today, it's safe to say the malware makers who inspired Mr. Kaspersky's Lab to develop this new system are likely already working on new exploits with it in mind.</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_55842" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg"><img class="size-medium wp-image-55842" title="Eugene Kaspersky" alt="" src="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" height="199" width="300" /></a><p class="wp-caption-text">Mr. Kaspersky not looking supervillain-like at all. (Photo: <a href="http://www.flickr.com/photos/cebitaus/7246654066/sizes/m/in/photostream/">flickr.com/cebitaus</a>)</p></div></p>
<p>Inspired by the behaviors of sophisticated malware such as Stuxnet, Flame, Duqu and Gauss, Russian billionaire and possible real-life Batman Eugene Kaspersky announced today that his <a href="http://eugene.kaspersky.com/2012/10/16/kl-developing-its-own-operating-system-we-confirm-the-rumors-and-end-the-speculation/">Kaspersky Lab is developing a new operating system</a>.</p>
<p>Mr. Kaspersky's announcement wasn't heavy on details about the OS, but security was obviously priority one. Acknowledging that Microsoft, Apple and the open source communities haven't been able to create truly secure controls, Mr. Kaspersky basically said the problem with the previous systems was their universality:<!--more--></p>
<blockquote><p><em>First</em>: our system is highly tailored, developed for solving a specific narrow task, and not intended for playing Half-Life on, editing your vacation videos, or blathering on social media. <em>Second</em>: we’re working on methods of writing software which by design won’t be able to carry out any behind-the-scenes, undeclared activity. This is the important bit: the impossibility of executing third-party code, or of breaking into the system or running unauthorized applications on our OS; and this is both provable and testable.</p></blockquote>
<p>Mr. Kaspersky linked to "<a href="http://www.securelist.com/en/analysis/204792248/Securing_Critical_Information_Infrastructure_Trusted_Computing_Base" target="_blank">Securing Critical Information Infrastructure: Trusted Computing Base</a>" to help answer questions regarding the new OS. It's essentially a paper that dissects the way industrial cyber-attacks work and details why they work.</p>
<p>The study lists the following necessary elements of a "maximally secure" computer network:</p>
<ul>
<li>The operating system can’t be based on existing computer code; therefore, it must be written from scratch.</li>
<li>To achieve a guarantee of security it must contain no mistakes or vulnerabilities whatsoever in the kernel, which controls the rest of the modules of the system. As a result, the core must be 100% verified as not permitting vulnerabilities or dual-purpose code.</li>
<li>For the same reason, the kernel needs to contain a very bare minimum of code, and that means that the maximum possible quantity of code, including drivers, needs to be controlled by the core and be executed with low-level access rights.</li>
<li>In such an environment there needs to be a powerful and reliable system of protection that supports different models of security.</li>
</ul>
<p>With these features in mind, Kaspersky Lab states that its new system's central feature will be a "categorical impossibility" of running any background programs, giving engineers total control and management of the system.</p>
<p>Cyber-warfare being what it is today, it's safe to say the malware makers who inspired Mr. Kaspersky's Lab to develop this new system are likely already working on new exploits with it in mind.</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/10/kaspersky-lab-is-working-on-its-own-super-secure-industrial-operating-system/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=150" />
		<media:content url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=150" medium="image">
			<media:title type="html">Eugene Kaspersky</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/12d391316d94afeef01bd9a987c847fe?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">shuffobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" medium="image">
			<media:title type="html">Eugene Kaspersky</media:title>
		</media:content>
	</item>
		<item>
				
		<title>Get Scooby In The Mystery Machine: Kaspersky Lab Needs Help Decrypting Gauss</title>

		<comments>http://betabeat.com/2012/08/get-scooby-in-the-mystery-machine-kaspersky-lab-needs-help-decrypting-gauss/#comments</comments>
		<pubDate>Tue, 14 Aug 2012 14:02:36 -0400</pubDate>
					<link>http://betabeat.com/2012/08/get-scooby-in-the-mystery-machine-kaspersky-lab-needs-help-decrypting-gauss/</link>
			<dc:creator>Steve Huff</dc:creator>
				
		<guid isPermaLink="false">http://betabeat.com/?p=58446</guid>
		<description><![CDATA[<p><div id="attachment_58456" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png"><img class="size-medium wp-image-58456" title="GAUSS" src="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png?w=300" alt="" width="300" height="267" /></a><p class="wp-caption-text">Cover of Kaspersky Lab's report on Gauss</p></div></p>
<p>Kaspersky Lab recently uncovered a new and sophisticated cyberweapon they dubbed<a href="http://betabeat.com/2012/08/kaspersky-lab-sniffs-out-new-flame-like-malware-aimed-at-lebanons-banks/" target="_blank"> Gauss</a>. <em>Wired</em> reports that intrepid researchers employed by Russian billionaire and <a href="http://betabeat.com/2012/07/kaspersky-labs-wants-you-to-live-like-batman/" target="_blank">possible Batman</a> Eugene Kaspersky <a href="http://www.wired.com/threatlevel/2012/08/gauss-mystery-payload/">need the public's help</a> figuring out the the malware's mysterious payload:<!--more--></p>
<blockquote><p>The warhead gets decrypted by the malware using a key composed of configuration data from the system it’s targeting. But without knowing what systems it’s targeting or the configuration on that system, the researchers have been unable to reproduce the key to crack the encryption.</p></blockquote>
<p>In blog post <a href="https://www.securelist.com/en/blog?weblogid=" target="_blank">published on SecureList.com</a>, one of Kaspersky's experts also mentions another puzzle, the presence of "the uniquely named 'Palida Narrow' font" that is installed along with the malware. If you don't have the knowledge of "cryptology, numerology and mathematics" Kaspersky seeks, investigating Palida Narrow may be for you.</p>
<p>Kaspersky's ThreatPost addressed the intriguing presence of Palida Narrow in a <a href="http://threatpost.com/en_us/blogs/researchers-release-detection-tool-gauss-malwares-palida-narrow-font-081012" target="_blank">blog entry published Friday</a>. Dennis Fisher wrote that one intriguing theory about Palida Narrow is that it may be "a kind of brand to mark infected PCs for the command-and-control servers."</p>
<p>Kaspersky Lab has published a <a href="http://www.securelist.com/en/downloads/vlpdfs/kaspersky-lab-gauss.pdf" target="_blank">detailed report</a> on Gauss that gives rates of infection--from 1660 computers infected in Lebanon to 43 compromised machines in the United States--as well as fascinating but possibly useless details like the (most likely fake) names and addresses used to register domains found embedded in the malware's code.</p>
<p>Call Daphne and Velma and put on your orange ascot and get out there and solve this mystery today!</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_58456" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png"><img class="size-medium wp-image-58456" title="GAUSS" src="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png?w=300" alt="" width="300" height="267" /></a><p class="wp-caption-text">Cover of Kaspersky Lab's report on Gauss</p></div></p>
<p>Kaspersky Lab recently uncovered a new and sophisticated cyberweapon they dubbed<a href="http://betabeat.com/2012/08/kaspersky-lab-sniffs-out-new-flame-like-malware-aimed-at-lebanons-banks/" target="_blank"> Gauss</a>. <em>Wired</em> reports that intrepid researchers employed by Russian billionaire and <a href="http://betabeat.com/2012/07/kaspersky-labs-wants-you-to-live-like-batman/" target="_blank">possible Batman</a> Eugene Kaspersky <a href="http://www.wired.com/threatlevel/2012/08/gauss-mystery-payload/">need the public's help</a> figuring out the the malware's mysterious payload:<!--more--></p>
<blockquote><p>The warhead gets decrypted by the malware using a key composed of configuration data from the system it’s targeting. But without knowing what systems it’s targeting or the configuration on that system, the researchers have been unable to reproduce the key to crack the encryption.</p></blockquote>
<p>In blog post <a href="https://www.securelist.com/en/blog?weblogid=" target="_blank">published on SecureList.com</a>, one of Kaspersky's experts also mentions another puzzle, the presence of "the uniquely named 'Palida Narrow' font" that is installed along with the malware. If you don't have the knowledge of "cryptology, numerology and mathematics" Kaspersky seeks, investigating Palida Narrow may be for you.</p>
<p>Kaspersky's ThreatPost addressed the intriguing presence of Palida Narrow in a <a href="http://threatpost.com/en_us/blogs/researchers-release-detection-tool-gauss-malwares-palida-narrow-font-081012" target="_blank">blog entry published Friday</a>. Dennis Fisher wrote that one intriguing theory about Palida Narrow is that it may be "a kind of brand to mark infected PCs for the command-and-control servers."</p>
<p>Kaspersky Lab has published a <a href="http://www.securelist.com/en/downloads/vlpdfs/kaspersky-lab-gauss.pdf" target="_blank">detailed report</a> on Gauss that gives rates of infection--from 1660 computers infected in Lebanon to 43 compromised machines in the United States--as well as fascinating but possibly useless details like the (most likely fake) names and addresses used to register domains found embedded in the malware's code.</p>
<p>Call Daphne and Velma and put on your orange ascot and get out there and solve this mystery today!</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/08/get-scooby-in-the-mystery-machine-kaspersky-lab-needs-help-decrypting-gauss/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png?w=150" />
		<media:content url="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png?w=150" medium="image">
			<media:title type="html">GAUSS</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/12d391316d94afeef01bd9a987c847fe?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">shuffobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2012/08/gauss.png?w=300" medium="image">
			<media:title type="html">GAUSS</media:title>
		</media:content>
	</item>
		<item>
				
		<title>Kaspersky Lab IS ON IT: Discovers Yet Another Computer Virus Aimed at the Middle East</title>

		<comments>http://betabeat.com/2012/08/kaspersky-lab-sniffs-out-new-flame-like-malware-aimed-at-lebanons-banks/#comments</comments>
		<pubDate>Fri, 10 Aug 2012 11:42:18 -0400</pubDate>
					<link>http://betabeat.com/2012/08/kaspersky-lab-sniffs-out-new-flame-like-malware-aimed-at-lebanons-banks/</link>
			<dc:creator>Steve Huff</dc:creator>
				
		<guid isPermaLink="false">http://betabeat.com/?p=58108</guid>
		<description><![CDATA[<p><div id="attachment_55842" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg"><img class="size-medium wp-image-55842 " title="Eugene Kaspersky" src="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" alt="" width="300" height="199" /></a><p class="wp-caption-text">Mr. Kaspersky not looking supervillain-like at all. (Photo: <a href="http://www.flickr.com/photos/cebitaus/7246654066/sizes/m/in/photostream/">flickr.com/cebitaus</a>)</p></div></p>
<p>Eugene Kaspersky's security researchers at <a href="http://betabeat.com/tag/kaspersky-labs/" target="_blank">Kaspersky Lab</a> have sleuthed out a new "cyber-espionage weapon." The Russian supervillain's (or awesomely cool billionaire, depending on your point of view) labs say this weapon has nearly as cool a name as previously discovered cyber worms Flame and Duqu--"Gauss." It also has a specific and potentially telling target: Lebanese lending institutions. Bloomberg <a href="http://www.bloomberg.com/news/2012-08-10/kaspersky-finds-new-malicious-software-gauss-in-mideast.html">tells us more</a>:<!--more--></p>
<blockquote><p>"Similar to Flame and Duqu, another cyber-espionage weapon, Gauss is a complex cyber-expionage toolkit, with its design emphasizing stealth and secrecy," Alexander Gostev, Kaspersky's chief security specialist, said in the statement. "However its purpose is different. Gauss targets multiple users in select countries to steal large amounts of data, with a specific focus on banking and financial information.'</p></blockquote>
<p>Officials at one of the targeted institutions would only admit to Bloomberg that they were aware of the worm.</p>
<p>Kaspersky Lab's blog post about the threat gives a timeline detailing Gauss's life and the timing of its discovery, which Kaspersky writes "was made possible due to strong resemblances and correlations between Flame and Gauss."</p>
<p>Could it be Gauss, like Flame, was made in the USA? Maybe we'll find out if America's cyber weapons gurus are <a href="http://betabeat.com/2012/06/yup-flame-probably-was-part-of-u-s-efforts-to-stop-irans-nuclear-program/" target="_blank">still leaking like a watering can</a>.</p>
]]></description>
		<content:encoded><![CDATA[<p><div id="attachment_55842" class="wp-caption alignleft" style="width: 310px"><a href="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg"><img class="size-medium wp-image-55842 " title="Eugene Kaspersky" src="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" alt="" width="300" height="199" /></a><p class="wp-caption-text">Mr. Kaspersky not looking supervillain-like at all. (Photo: <a href="http://www.flickr.com/photos/cebitaus/7246654066/sizes/m/in/photostream/">flickr.com/cebitaus</a>)</p></div></p>
<p>Eugene Kaspersky's security researchers at <a href="http://betabeat.com/tag/kaspersky-labs/" target="_blank">Kaspersky Lab</a> have sleuthed out a new "cyber-espionage weapon." The Russian supervillain's (or awesomely cool billionaire, depending on your point of view) labs say this weapon has nearly as cool a name as previously discovered cyber worms Flame and Duqu--"Gauss." It also has a specific and potentially telling target: Lebanese lending institutions. Bloomberg <a href="http://www.bloomberg.com/news/2012-08-10/kaspersky-finds-new-malicious-software-gauss-in-mideast.html">tells us more</a>:<!--more--></p>
<blockquote><p>"Similar to Flame and Duqu, another cyber-espionage weapon, Gauss is a complex cyber-expionage toolkit, with its design emphasizing stealth and secrecy," Alexander Gostev, Kaspersky's chief security specialist, said in the statement. "However its purpose is different. Gauss targets multiple users in select countries to steal large amounts of data, with a specific focus on banking and financial information.'</p></blockquote>
<p>Officials at one of the targeted institutions would only admit to Bloomberg that they were aware of the worm.</p>
<p>Kaspersky Lab's blog post about the threat gives a timeline detailing Gauss's life and the timing of its discovery, which Kaspersky writes "was made possible due to strong resemblances and correlations between Flame and Gauss."</p>
<p>Could it be Gauss, like Flame, was made in the USA? Maybe we'll find out if America's cyber weapons gurus are <a href="http://betabeat.com/2012/06/yup-flame-probably-was-part-of-u-s-efforts-to-stop-irans-nuclear-program/" target="_blank">still leaking like a watering can</a>.</p>
]]></content:encoded>
		<wfw:commentRss>http://betabeat.com/2012/08/kaspersky-lab-sniffs-out-new-flame-like-malware-aimed-at-lebanons-banks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:thumbnail url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=150" />
		<media:content url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=150" medium="image">
			<media:title type="html">Eugene Kaspersky</media:title>
		</media:content>

		<media:content url="http://1.gravatar.com/avatar/12d391316d94afeef01bd9a987c847fe?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">shuffobserver</media:title>
		</media:content>

		<media:content url="http://nyobetabeat.files.wordpress.com/2012/07/7246654066_bf550d3ea1.jpeg?w=300" medium="image">
			<media:title type="html">Eugene Kaspersky</media:title>
		</media:content>
	</item>
	</channel>
</rss>
