Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


German Federal Office for Information Security warns against the use of Kaspersky
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

German Federal Office for Information Security warns against the use of Kaspersky

Antoher russian war related information thread: the german federal office for information security officially warns users against the usage of Kasperky product.

They did not find any backdoor, but it's about the possibility that the developers get forced by intelligence (translated, since the english version is not online yet):

"A Russian IT vendor may conduct offensive operations itself, be forced to attack target systems against its will, or itself be spied upon as a victim of a cyber operation without its knowledge, or be misused as a tool for attacks against its own customers."

Link: https://www.bsi.bund.de/DE/Service-Navi/Presse/Pressemitteilungen/Presse2022/220315_Kaspersky-Warnung.html

Deepl translated:

The Federal Office for Information Security (BSI) warns against the use of antivirus software from the Russian manufacturer Kaspersky in accordance with §7 of the BSI Act. The BSI recommends replacing applications from Kaspersky's portfolio of antivirus software with alternative products.

Anti-virus software, including the associated real-time cloud services, has extensive system permissions and must maintain a permanent, encrypted and unauditable connection to the manufacturer's servers for system-related reasons (at least for updates). Therefore, trust in a manufacturer's reliability and self-protection, as well as its authentic ability to act, is critical to the secure use of such systems. If there are doubts about the manufacturer's reliability, antivirus software poses a particular risk to an IT infrastructure that is to be protected.

The actions of military and/or intelligence forces in Russia, as well as the threats made by the Russian side against the EU, NATO and the Federal Republic of Germany in the course of the current armed conflict, are associated with a considerable risk of a successful IT attack. A Russian IT manufacturer may itself carry out offensive operations, be forced to attack target systems against its will, or itself be spied upon as a victim of a cyber operation without its knowledge, or be misused as a tool for attacks against its own customers.

All users of antivirus software can be affected by such operations. Companies and public authorities with special security interests and operators of critical infrastructures are particularly at risk. They have the option of seeking advice from the BSI or the relevant constitutional protection authorities.

Companies and other organizations should carefully plan and implement the replacement of essential components of their IT security infrastructure. If IT security products and, in particular, antivirus software were to be switched off without preparation, they might be left defenseless against attacks from the Internet. Switching to other products involves temporary losses in convenience, functionality and security. The BSI recommends that an individual evaluation and consideration of the current situation be carried out and, if necessary, that BSI-certified IT security service providers be consulted.

Comments

  • ChuckChuck Member

    When do we see Free Kaspersky internet security?

    I would like to replace Microsoft Defender Antivirus. If my information is being sold, I would rather give them to the poor russian.

  • AidanAidan Member

    @Chuck said: Free Kaspersky internet security

    Kaspersky Security Cloud has a free edition.

  • In Russian government agencies, in order to achieve a certified state, it is forbidden to use the Kaspersky server to significantly update Kaspersky Anti-Virus. The use of KSN (Kaspersky Security Network) is also prohibited.

  • that_guythat_guy Member
    edited March 2022

    sigh

    Not trusting anyone is smart.
    Not trusting russia is fine.
    Trusting the USA is dumb.

    If someone is able to trust MS, Apple, Google, Amazon, Norton, McAffee etc. with their personal devices and all their data, they might just as well trust Kaspersky. IMHO.

Sign In or Register to comment.