Is Windows 8 a Trojan horse for the NSA? The German Government thinks so!

Is Windows 8 a Trojan horse for the NSA? The German Government thinks so

Is Windows 8 a Trojan horse for the NSA? The German Government thinks so

The German Government is now deeply suspicious that the Trusted Platform Module (TPM) technology built into a growing number of Windows 8 PCs and tablets is creating a gigantic back door for NSA surveillance, leaked documents have suggested.

Documents from the German Ministry of Economic Affairs obtained by German title Zeit Online uncover the alleged unease of officials at the direction of version 2.0 of the standard being developed under the auspices of the multi-vendor Trusted Computing Group (TCG).

TPM has been marketed as a security technology since its appearance in 2006, but version 2.0 would embed a chip on every PC that has complete control over which programs can and can’t run, a setting that can’t be over-ridden under Windows 8. The chip is also where the cryptographic data is stored for Windows BitLocker and it enables remote administration.

Windows 8 security going forward will be founded on TPM 2.0 and the ability to access or break it would be of huge value to any intelligence service.

TPM has been marketed as a security technology since its appearance in 2006, but version 2.0 would embed a chip on every PC that has complete control over which programs can and can’t run, a setting that can’t be over-ridden under Windows 8.

During TCG meetings, German officials appear to have expressed concern about the potential for abuse but were “rebuffed,” Zeit claims. The documents also refer to the NSA having representation at the meetings and the statement “the NSA agrees” in the context of leaving the technology in its current (presumably unreformed) state.

The context of this reference is not clear from the Zeit article but the implication is disturbing; the NSA thinks that TPM 2.0 does not offer a barrier to its operations.

German officials, including members of the Federal Office for Information Security (Bundesamt fr Sicherheit or BSI) concluded that “the use of trusted Computing technique in this form ... is unacceptable for the federal administration and the operators of critical infrastructure,” and would represent a “loss of full sovereignty over information technology.”

A second document expresses the belief that TPM 2.0 under Windows 8 is no longer usable while Windows 7 “be operated safely until 2020,” after which alternatives will need to be sourced.

Paranoid or practical?

Is the story overblown Teutonic paranoia or a valid concern about the growing power of state surveillance? Until recently, the presumption might have been to the former but the Snowden affair changed the dimensions of the debate.

The NSA has if not the capability then certainly the ambition to eavesdrop on every communication event on the Internet, and the willingness of large US firm to go along with that, or not, has generated huge controversy. Meanwhile, allegations that Microsoft has co-operated with the NSA to bypass the encryption used in some of its services are a matter of public record.

For cost reasons, TPM is rarely built into consumer PCs although the advent of Windows 8 is supposed to extend version 2.0 to all PCs over time.

For cost reasons, TPM is rarely built into consumer PCs although the advent of Windows 8 is supposed to extend version 2.0 to all PCs over time. Newer devices such as Windows 8 tablets and some phones are likely to have a TPM although getting precise data on this is not easy. Linux supports Intel’s TPM 1.0, although unlike 2.0 this can be loaded and unloaded from the endpoint.

Ironically, an expert quoted in the Zeit article goes on to worry that the Chinese Government as well as the NSA might be able to access data through TPM 2.0; many TPM chips are manufactured in the country.

After years of low-level discussion among security experts, worries over surveillance backdoors have suddenly become a mainstream topic. Last month an Australian report claimed that intelligence services in the ‘five eyes’ alliance (the US, UK, Canada, Australia and New Zealand) had refused to use PCs made by Chinese-founded Lenovo over concerns about “backdoor hardware and firmware vulnerabilities.”

Views: 153

Reply to This

Replies to This Discussion

It seems that the great good that computers and the internet are capable of is being harpooned by lesser men with baser intentions.

A) do not use built-in or commercial encryption
B) do use encrypted e-mail and block file systems supported by open source encryption
C) don't save incriminating or sensitive data on a fixed hard-drive
D) for the love of Almighty God, don't use a weak password and don't lose your USB key
E) recommended software solutions include TOR, GPG and TrueCrypt
F) use all three, sending encrypted e-mails and files over the TOR network
G) if possible, allow your computer to serve as a TOR bridge ... the more bridges, the safer the network becomes
H) TOR encrypts everything leaving your computer. This means if you encrypt a file or e-mail before sending it, the file or e-mail in-its-encrypted-form is the 'plaintext'. This renders it pretty much impossible to know if the TOR encryption has been successfully broken or not because the file STILL consists of encrypted 'garbage'.
I) do not trust anyone or anything you do not know personally ... and for an extended time.
J) do not trust me: verify EVERYTHING I have written
K) consider that anything you place on the internet (even here) can and eventually WILL be used against you in court. It will be used by the prosecution to attack you. Anything that favors your defense WILL NOT be presented in court unless you are able to do it.

RSS

"Destroying the New World Order"

TOP CONTENT THIS WEEK

THANK YOU FOR SUPPORTING THE SITE!

mobile page

12160.info/m

12160 Administrators

 

Latest Activity

cheeki kea commented on Doc Vega's blog post The Forest Devil
"Well that is one fine story you've got going there Doc V. with a very interesting roll up. I…"
1 hour ago
Doc Vega commented on Doc Vega's blog post “Night of Horror” Finland WWII 1939 and a Russian Massacre
"Just another bizarre chapter in WWII that seems more suspect as paranormal."
23 hours ago
Doc Vega's 7 blog posts were featured
yesterday
Burbia's blog post was featured

Former President Trump?

When was this article written? It is attributed to Victor Davis Hanson. He is a Fellow at Hoover…See More
yesterday
Less Prone commented on Burbia's blog post Former President Trump?
"It must be an unintended mistake "former". But that Trump demanded to keep Khan away is a…"
yesterday
Less Prone favorited Doc Vega's blog post The Mistake We Made in America
yesterday
Less Prone favorited Doc Vega's blog post “Night of Horror” Finland WWII 1939 and a Russian Massacre
yesterday
Less Prone commented on Doc Vega's blog post “Night of Horror” Finland WWII 1939 and a Russian Massacre
"Quite an uplifting story of the winter war. Finland was overpowered by ten to one and could still…"
yesterday
Doc Vega posted a blog post

Elon Weighs in on Charlie Kirk's Assassination and How it is an Instrument of Social Control

For a very long time now there has been in place mass population behavioral control operations that…See More
yesterday
Doc Vega commented on Doc Vega's blog post The Forest Devil
"Less Prone Thanks Buddy I worked on it for 3 days! "
Friday
Less Prone favorited Doc Vega's blog post The Forest Devil
Friday
Less Prone commented on Doc Vega's blog post The Forest Devil
"You have spun a great story, congratulations!"
Friday
cheeki kea commented on Bob of the Family Renner's photo
Friday
Doc Vega posted a blog post
Thursday
tjdavis posted blog posts
Thursday
Doc Vega posted photos
Wednesday
tjdavis posted a blog post
Wednesday
Doc Vega commented on Doc Vega's blog post Is this proof that the story about Charlie Kirk's assassination is false?
"Les prone, Thanks Buddy! "
Tuesday
Doc Vega posted a blog post
Tuesday
tjdavis posted a photo
Oct 6

© 2025   Created by truth.   Powered by

Badges  |  Report an Issue  |  Terms of Service

content and site copyright 12160.info 2007-2019 - all rights reserved. unless otherwise noted