Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×
Software

North Korean Antivirus Software Uses Decade Old Pirated Scan Engine (betanews.com) 68

With a name like 'SiliVaccine' you could be forgiven it's something your doctor would give you if you were worried about turning into a clown. But in fact this is North Korea's home grown antivirus product. From a report: Check Point Software has obtained and analyzed a rare copy of the software and discovered key components of its source code to be identical to a 10-year old copy of Trend Micro's AV software. Analysis has also uncovered that SiliVaccine is designed to allow a specific malware signature to pass undetected to users, and an update patch for the software contained JAKU malware, which has been used to target and track specific individuals in South Korea and Japan. Check Point believes this could have been used to target journalists who write about North Korean affairs.
This discussion has been archived. No new comments can be posted.

North Korean Antivirus Software Uses Decade Old Pirated Scan Engine

Comments Filter:
  • by mandark1967 ( 630856 ) on Wednesday May 02, 2018 @04:10PM (#56543302) Homepage Journal

    It displays a pop-up stating "You ARRRRGH infected, matey"

  • I'd imagine NK doesn't really worry too much about malware, since the vast majority of it probably comes from them and their buddies in China and Russia, they'd have the methods for removing it readily available. They probably infect each other's machines with it just as a prank.
  • They needed software that would run on their "new" upgraded computers using Windows XP. It's a huge step forward from DOS where they could not get rid of the crazy Ping-Pong virus...

    • Many years ago there was an email attachment called "Australia.exe" that got your computer ready for travelling south of the Equator by turning the screen upside-down. It got picked up by a friends virus scanner as malware, so it was removed.

      Some years later, that same thing was introduced into Windows 7 (Ctrl + Alt + down arrow).

      We can only assume that NK is trying to keep up with the US by incorporating viruses into the OS itself. I'd expect this "Australia" thing to show up in the next 5-10 years.

      • Re: (Score:2, Informative)

        by Anonymous Coward

        The Ctrl-Alt-DownArrow thing is a function of Intel video drivers, not something Windows 7 brought to the table.

  • by jbmartin6 ( 1232050 ) on Wednesday May 02, 2018 @04:38PM (#56543444)

    the software contained JAKU malware, which has been used to target and track specific individuals in South Korea and Japan. Check Point believes this could have been used to target journalists who write about North Korean affairs.

    It took me a minute to parse this. It means, unrelated to this NK AV package, the JAKU malware could have been used in the past to target Japanese and South Korean journalists.

  • by Anonymous Coward

    https://www.clamav.net/downloads

    looks pretty good to me.

  • that NK is the source of a lot of malware. Surely if they had the ability to produce such malware they would also have the ability and motivation to protect their own Windows PCs from malware from other countries -- while white-listing their own malware.

    For me this casts doubts on the stories of NK being a major malware source.

  • Better link: (Score:4, Informative)

    by Gravis Zero ( 934156 ) on Wednesday May 02, 2018 @07:43PM (#56544366)

    detailed analysis with real info: SiliVaccine: Inside North Korea’s Anti-Virus [checkpoint.com]

  • ... he's made the cool kids discover that there are some negative aspects to communism ...
    • by Anonymous Coward

      ... he's made the cool kids discover that there are some negative aspects to communism ...

      Now if only someone could convince the proponents of un-checked Capitalism of the same thing, we'd have common ground.

      Communism is broken, but Capitalism is broken too ,, the problem with both is the most broken parts are the things people are most dogmatic about.

      Those tend to be the point where their pet theory devolves into magical realism ... which if you keep hoping, going "la la la", and ignore human nature for lo

Any circuit design must contain at least one part which is obsolete, two parts which are unobtainable, and three parts which are still under development.

Working...