Security News > 2020 > March > CIA Dirty Laundry Aired

CIA Dirty Laundry Aired
2020-03-10 11:18

Joshua Schulte, the CIA employee standing trial for leaking the Wikileaks Vault 7 CIA hacking tools, maintains his innocence.

All this raises a question, though: just how bad is the CIA's security that it wasn't able to keep Schulte out, even accounting for the fact that he is a hacking and computer specialist? And the answer is: absolutely terrible.

The password for the Confluence virtual machine that held all the hacking tools that were stolen and leaked? That'll be 123ABCdef.

IRC chats published during the trial even revealed team members talking about how terrible their infosec practices were, and joked that CIA internal security would go nuts if they knew.

Their justification? The intranet was restricted to members of the Operational Support Branch: the elite programming unit that makes the CIA's hacking tools.


News URL

https://www.schneier.com/blog/archives/2020/03/cia_dirty_laund.html