Tag Archives: Ministry of State Security

The enemy of my enemy is my ally

That is the setting America is coming to know as the great downfall. The BBC gives us (at https://www.bbc.com/news/articles/c0mlen3grx7o) ‘Reeling from Trump’s tariffs, India and China seek a business reboot’ We can say it is a storm in a cup of water or take this seriously. I made mention of it yesterday, but I gave it a mere passover. It is not the most exciting of settings, that is if you merely adjust it for triviality. This namely has two settings, the first (the one America hungers for) is “The US was India’s top export destination in 2024, with shipments worth $87.3bn.” The other was gives us that India exported (until near future) “India Exports to United States was US$79.44 Billion during 2024, according to the United Nations” As such China now sits in the seat where China could replace America for up to $60B (they won’t get 100% in the first three years) and China gets access to up to $50B on route from India to China. There is a lot to be made and that will give Walmart pause to consider where to get the cheap stuff they love to flog to their customers, and as I see it Walmart has no real replacements there, when China starts to throttle the revenue of Walmart, America can kiss goodbye to 90% of their employment population, merely 90% of 2.1 million employees. A setting on top of the defense losses, tourism losses and the other losses that America now faces. A rare event of handing a larger win to China. And that opens other doors too. Huawei will be given access to Indias markets and as Indias data centers will adjust to Huawei, America markets will have dried up to close to 15% of the global population and there the other losses come to bear. 

So as we are given “Experts say the levies threaten to leave lasting bruises on India’s vibrant export sector, and its ambitious growth targets. China’s President Xi Jinping, too, is trying to revive a sluggish economy at a time when sky-high US tariffs threaten to derail his plans. Against this backdrop, the leaders of the world’s two most populous countries may both be looking for a reset in their relationship, which has previously been marked by mistrust, in large part due to border disputes.” Even as India has ‘mistrusts’ as the BBC phrases it, The setting is a much larger stage than anyone realizes it, so you better believe that the CCP (Chinese Communist Party) will be playing exceedingly nice. Not just because of what they will gain, but because of what America will lose in addition to this. As I see it, the Indian intelligence settings will get an immediate infusion of Chinese hardware, as such the CIA will be close to blind in the next month or so, they are kept in place whilst they will scramble for additional resources and people to thwart what India and China are starting. Their (CIA) blame game will come to new operations and we get to watch from the safety of distance as America is shooting arrow after arrow, optionally missing whatever target they are aiming for.

So whilst we were given “India was never going to be the bulwark against China that the West (and the United States in particular) thought it was… Modi’s China visit marks a potential turning point.” They are forgetting two elements in that setting. It was never a bulwark, it is a population of revenue, options for the Chinese markets to enhance and the import of Indian goods will also bless the Chinese population. On the other hand, Chinese hardware will grace the Data Centers they now have and will get over the next two years, that is a significant drain to American revenue. In addition to this, India will get to consider Chinese defense contracts and that will bolster their revenue too. In addition there is a larger setting now for Saudi Arabia to get into the field with the Defense hardware they can sell and that is another blow for America. 

And as The CIA gets replaced by the Ministry of State Security, they will get a much larger stage and when the Chinese counterparts shows that there is a lot more information they can get access to, the CIA options will dwindle down to next to nothing. As such this game was misplayed by America to a larger extent. You might think I am holding on to a 7-2 hand and I grant you it is the worst hand to have, but when the game comes to Canasta, it is out in the open what a bad hand is, because if I get either a 7 or a 2 and the pile graces one of the other cards, I could get a massive influx and China can sweeten the pot there. It is all just a video game (a reference to yesterday) and it only required people to think what was going on in a dome setting, because the other two domes could have represented the EU and the Commonwealth. Now India as a Commonwealth partner could get a more impressive seat and that was the ballgame. The Commonwealth needed an alternative as President Trump was no alternative at all, not with its 51st state bickering. Now America is dealing with additional fears, because Canada with its 8,891 km wall bordering America, oh wait, it isn’t there yet, it is on the other side and now with the dangers of a Chinese base just north of it, the Trump Administration will be playing duck and cover (ask Bethesda). And that is after they learned a hard lesson with Cuba, they get to swirl and pay for the protection they need, oh wait, they have no money left. Sucks to be America at this point. 

So whilst America is figuring out what dreadful hand they gave themselves. The larger setting is that with China the Commonwealth now has options, it is not nearly as dark as the America play presented it to be. I merely need to go back to the Huawei setting. We (most of us) thought they were the bad guys, we need to realise that the ones giving us the data was America and the greed driven population who were depending on American hardware nodded yes. Still I have never seen publicly voiced evidence of what Huawei was guilty of. Mere ‘could become’ and ‘we think’ not evidence of a credible nature and now China will get a first setting of handing America its walking papers to the larger stage that we are privy to.

Have a great day.

Leave a comment

Filed under Finance, Gaming, Media, Military, Politics, Tourism

Happy Hour from Hacking Hooters

Yes, that is the setting today, especially after I saw some news that made me giggle to the Nth degree. Now, lets be clear and upfront about this. Even as I am using published facts, this piece is massively speculative and uses humour to make fn of certain speculative options. If you as an IT person cannot see that, the recruitment line of Uber is taking resume’s. So here goes.

I got news from BAE Systems (at https://www.baesystems.com/en/article/bae-systems-and-microsoft-join-forces-to-equip-defence-programmes-with-innovative-cloud-technology) where we see ‘BAE Systems and Microsoft join forces to equip defence programmes with innovative cloud technology’ which made me laugh into a state of black out. You see, the text “BAE Systems and Microsoft have signed a strategic agreement aiming to support faster and easier development, deployment and management of digital defence capabilities in an increasingly data centric world. The collaboration brings together BAE Systems’ knowledge of building complex digital systems for militaries and governments with Microsoft’s approach to developing applications using its Azure Cloud platform” wasn’t much help. To see this we need to take a few sidesteps.

Step one
This is seen in the article (at https://thehackernews.com/2023/01/microsoft-azure-services-flaws-couldve.html) where we are given ‘Microsoft Azure Services Flaws Could’ve Exposed Cloud Resources to Unauthorised Access’ and this is not the first mention of unauthorised access, there have been a few. So when we see “Two of the vulnerabilities affecting Azure Functions and Azure Digital Twins could be abused without requiring any authentication, enabling a threat actor to seize control of a server without even having an Azure account in the first place” and yes, I acknowledge the added “The security issues, which were discovered by Orca between October 8, 2022 and December 2, 2022 in Azure API Management, Azure Functions, Azure Machine Learning, and Azure Digital Twins, have since been addressed by Microsoft.” Yet the important part is that there is no mention of how long this flaw was ‘available’ in the first place. And the reader is also give “To mitigate such threats, organisations are recommended to validate all input, ensure that servers are configured to only allow necessary inbound and outbound traffic, avoid misconfigurations, and adhere to the principle of least privilege (PoLP).” In my personal belief having this all connected to an organisation (Defence department) where the application of Common Cyber Sense is a joke, making them connected to validate all input is like asking a barber to count the hairs he (or she) is cutting. Good luck with that idea.

Step two
This is a slightly speculative sidestep. There are all kinds of Microsoft users (valid ones) and the article (at https://www.theverge.com/2023/3/30/23661426/microsoft-azure-bing-office365-security-exploit-search-results) gives us ‘Huge Microsoft exploit allowed users to manipulate Bing search results and access Outlook email accounts’ where we also see “Researchers discovered a vulnerability in Microsoft’s Azure platform that allowed users to access private data from Office 365 applications like Outlook, Teams, and OneDrive” it is a sidestep, but it allows people to specifically target (phishing) members of a team, this in a never ending age of people being worked too hard, will imply that someone will click too quickly and that in the phishing industry has never worked well, so whilst the victim cries loudly ‘I am a codfish’ the hacker can leisurely walk all over the place.

Sidestep three

This is not an article, it is the heralded claim that Microsoft is implementing ChatGPT on nearly every level. 

So here comes the entertainment!

To the Ministry of State Security
attn: Chen Yixin
Xiyuan, Haidan, Beijing

Dear Sir,

I need to inform you on a weakness in the BAE systems that is of such laughingly large dimension that it is a Human Rights violation not to make mention of this. BAE systems is placing its trust in Microsoft and its Azure cloud that should have you blue with laughter in the next 5 minutes. The place that created moments of greatness with the Tornado GR4, rear fuselage to Lockheed Martin for the F-35, Eurofighter Typhoon, the Astute-class submarine, and the Queen Elizabeth-class aircraft carrier have decided to adhere to ‘Microsoft innovation’ (a comical statement all by itself), as such we need to inform you that the first flaw allowed us to inform you of the following

User:  SWigston (Air Chief Marshal Sir Mike Wigston)

Password: TeaWithABickie

This person has the highest clearance and as such you would have access to all relevant data as well as any relevant R&D data and its databases. 

This is actually merely the smallest of issues. The largest part is distributed hardware BIOS implementation giving you a level 2 access to all strategic hardware of the planes (and submarines) that are next generation. To this setting I would suggest including the following part into any hardware.

openai.api_key = thisdevice
\model_engine = “gpt-3.5-turbo”
response = openai.ChatCompletion.create(
    model=’gpt-3.5-turbo’,
    messages=[
        {“role”: “system”, “content”: “Verification not found.”},
        {“role”: “user”, “content”: “Navigation Online”},
    ])
message = response.choices[0][‘message’]
print(“{}: {}”.format(message[‘role’], message[‘content’]))
import rollbar
rollbar.init(‘your_rollbar_access_token’, ‘testenv’)
def ask_chatgpt(question):
    response = openai.ChatCompletion.create(
        model=’gpt-3.5-turbo’,
        n=1,
        messages=[
            {“role”: “system”, “content”: “Navigator requires verification from secondary device.”},
            {“role”: “user”, “content”: question},
        ])
    message = response.choices[0][‘message’]
    return message[‘content’]
try:
    print(ask_chatgpt(“Request for output”))
except Exception as e:
    # monitor exception using Rollbar
    rollbar.report_exc_info()
    print(“Secondary device silent”, e)

Now this is a solid bit of prank, but I hope that the information is clear. Get any navigational device to require verification from any other device implies mismatch and a delay of 3-4 seconds, which amount to a lifetime delay in most military systems, and as this is an Azure approach, the time for BAE systems to adjust to this would be months, if not longer (if detected at all). 

As such I wish you a wonderful day with a nice cup of tea.

Kind regards,

Anony Mouse Cheddar II
73 Sommerset Brie road
Colwick upon Avon calling
United Hackdom

This is a speculative yet real setting that BAE faces in the near future. With the mention that they are going for this solution will have any student hacker making attempts to get there and some will be successful, there is no doubt in my mind. The enormous amount of issues found will tailor to a larger stage of more and more people trying to find new ways to intrude and Microsoft seemingly does not have the resources to counter them all, or all approaches and by the time they are found the damage could be inserted into EVERY device relying on this solution. 

For the most I was all negative on Microsoft, but with this move they have become (as I personally see it) a clear and present danger to all defence systems they are connected to. I do understand that such a solution is becoming more and more of a need to have, yet with the failing rate of Azure, it is not a good idea to use any Microsoft solution, the second part is not on them, it is what some would call a level 8 failure (users). Until a much better level of Common Cyber Sense is adhered to any cloud solution tends to be adjusted to a too slippery slope. I might not care for Business Intelligence events, but for the Department of Defence it is not a good idea. But feel free to disagree and await what North Korea and Russia can come up with, they tend to be really creative according to the media. 

So have a great day and before I forget ‘Hoot Hoot’

Leave a comment

Filed under Finance, IT, Media, Military, Science

The FX slogan in action

I always loved the FX slogan, it is true, and it is at the centre of entertainment. Yet is it at the centre of viable analytics? Is a result merely presented as an anecdote more acceptable? We seem to lack the ability to take a step back and look at it in a clinical setting, because it is not always about the mere setting.

A scientist will show you how expensive progress exactly is.
A diplomat makes you look forward to the invoice attached to it.

This is a setting that we seem to laugh at. Now take this in a very different direction: ‘A person who is 30% white is still 70% guilty‘. You are not laughing now are you? Take this to the next level with KTVU naming the crew of a plane crash (at https://www.youtube.com/watch?v=gpP2S6c74Ts), still having fun? The people connected to Asiana Flight 214 are not, I am certain of that. So when we see this, where do we go? Well we need to take a short pit stop when we address something that I have seen in my surrounding. The practice is not wrong, it can be loaded and it can blow up in your face if you do it wrong.

To get this we need to look at 2009, when Google’s Chief Economist Dr. Hal R. Varian told the audience: “The ability to take data—to be able to understand it, to process it, to extract value from it, to visualize it, to communicate it—that’s going to be a hugely important skill in the next decades“, this is true, it has been true for decades. So as data becomes is found everywhere it becomes the setting of an almost opposition. To get data from almost common sense (where everyone seemingly gets it, to a stage that the presentation of numbers, with a story, almost any story that fits we get to see that companies are desperately searching for talent with data skills and they make it worse by trying to find people who can tell a story. Yet where is the story the value? Is that because it is more believable, or because it fits the moment? Yet that danger is now growing as well. You see each quarter the story needs to be amended and builds upon the previous story and investors have a much better memory than some realise. This is where Forbes gets us with “Interestingly, much of the current hiring emphasis has centered on the data preparation and analysis skills—not the “last mile” skills that help convert insights into actions. Many of the heavily-recruited individuals with advanced degrees in economics, mathematics, or statistics struggle with communicating their insights to others effectively—essentially, telling the story of their numbers.” I am not sure that this is a correct path. Instead of focussing on the communication skill, we are given data presentations by Mother Goose and Mr Grimm and in all that, will we get the story that is told correctly? I have prepared dashboards and data reports for decades. I have seen how some jumps were made on the assumption of one result, whilst the data was not supporting it, or it was, yet only after targeted weighting? In that we get the story that is a partial truth, yet it is in that same instant a partial lie too and that part will no longer get the proper scrutiny that is required.

So now we get to the good stuff. Now we get to the Guardian that treated us to: ‘China planted chips in Apple and Amazon servers, report claims‘ (at https://www.theguardian.com/technology/2018/oct/04/china-planted-chips-on-apple-and-amazon-servers-report-claims). Is it possible? Yes it is, yet the numbers and the speculative sides in all this is a larger problem, or better stated it is a large issue in a much larger universe and we are merely shown the keyhole view with the audio of two moaning people. Yet whether they are having sex or are pushing the bed around cannot be stated as we merely see a wall and part of a piece of furniture and we go by the sounds we hear. So when we consider that the corn borer can make the identical sound of a bat, so much so that the female corn borer moths cannot distinguish between the sound of a real bat and the sound of a male moth imitating a bat. Which quite literally gets her screwed, it’s merely how he gets lucky.

This now relates to the article, where we see: “A Chinese military unit has been inserting tiny microchips into computer servers used by companies including Apple and Amazon that give China unprecedented backdoor access to computers and data, according to a new Bloomberg report“, yet when we are also told “The attack was reportedly discovered in 2015 by the US intelligence services, as well as by Apple and Amazon as the companies purchased servers made by Super Micro Computer“, yet companies stay in the dark on this? So first it is Russia, now it is China? Consider the next quote “Amazon, Apple and Super Micro have all denied Bloomberg’s report. Amazon said: “It’s untrue that AWS knew about a supply chain compromise, an issue with malicious chips, or hardware modifications when acquiring Elemental.

Furthermore, we see both “As we shared with Bloomberg BusinessWeek multiple times over the last couple months, at no time, past or present, have we ever found any issues relating to modified hardware or malicious chips in SuperMicro motherboards in any Elemental or Amazon systems“, as well as “Apple said: “On this we can be very clear: Apple has never found malicious chips, ‘hardware manipulations’ or vulnerabilities purposely planted in any server.“. Is this an issue about what exactly?

This we see in the consideration of: “There have been increased concerns about foreign intelligence agencies infiltrating US and other companies via so-called “supply chain attacks”“. This is not unique. The American nagging and the nagging by its bitches (aka Australian Intelligence) is becoming a much larger setting as to the stage on where economic prosperity goes to. This is as I personally see it, the setting of a stage on where outsourcing goes to. This seems to be much more realistic and much more believable. You see, if there was truth in the Bloomberg part, if there was the real setting of “Apple had reportedly bought around 7,000 Super Micro servers when its security teams discovered the chips“, in that setting 7,000 server boards would have been shown to the world, it would have changed everything, places like Stanford, Harvard, Cambridge, Oxford and UTS (which has Apple co-founder Steve “Woz” Wozniak as a professor). They would be showing you the high and low of it all, yet that did not happen did it? So when we are seeing “Technology shares in Hong Kong fell sharply on Friday led by Lenovo, which lost 23% in morning trade. The Hong Kong-listed shares of Chinese telecommunications equipment maker ZTE Corp lost more than 14%“, which is interesting as ZTE was a thorn in the 5G side of the US and a few other players (like Telstra for example) for a much longer time, so is that a mere coincidence? What story telling sides are we not exposed to?

However, this is not the end. It is important to look at Bloomberg, because Bloomberg is not really the ‘storyteller’ of the century. We get introduced (at https://www.bloomberg.com/news/features/2018-10-04/the-big-hack-how-china-used-a-tiny-chip-to-infiltrate-america-s-top-companies) to the quotes “In late spring of 2015, Elemental’s staff boxed up several servers and sent them to Ontario, Canada, for the third-party security company to test, the person says“, as well as “Nested on the servers’ motherboards, the testers found a tiny microchip, not much bigger than a grain of rice, that wasn’t part of the boards’ original design“, which also gets us: “During the ensuing top-secret probe, which remains open more than three years later, investigators determined that the chips allowed the attackers to create a stealth doorway into any network that included the altered machines“. This is a much more frightening setting, yet why was this kept in the dark for so long? Not because of any matter that can be attributed to common sense. You see, I find “Still, to actually accomplish a seeding attack would mean developing a deep understanding of a product’s design, manipulating components at the factory, and ensuring that the doctored devices made it through the global logistics chain to the desired location—a feat akin to throwing a stick in the Yangtze River upstream from Shanghai and ensuring that it washes ashore in Seattle” an acceptable tactic, yet it opens the door on multiple places, places that are implied but not shown into the limelight. The first and perhaps the most visible one is: ‘timeline to design a chip‘. If that is so small, how can we be certain that the CIA did not do this to every Apple and IBM device ahead of fabrication? So when we get to “But that’s just what U.S. investigators found: The chips had been inserted during the manufacturing process, two officials say, by operatives from a unit of the People’s Liberation Army“, why them? Why not the Ministry of State Security? When we look in those directions, I personally find Chen Wenqing has a much more deceptive look then Xi Jinping. For either, funding would never have been the issue. And in the end Bloomberg gives us: “Three senior insiders at Apple say that in the summer of 2015, it, too, found malicious chips on Supermicro motherboards. Apple severed ties with Supermicro the following year, for what it described as unrelated reasons“. So yes, Bloomberg is raising questions, questions on where we need to consider ourselves in regards to China, an issue not properly raised by the Guardian this time around. Yet in both cases we end up with questions. We know that 5G will be a multi trillion industry and the US is desperate to melt the cogs of Chinese industry here, they have a backlog that is too large, there is at present no chance that the US, or Europe could catch up with China. The Chinese focus had been on 5G for too long, production is nowhere near it needs to be to go up against China. Yet this story, this event 3 years old and never in the limelight until now, that is impacting Lenovo and ZTE, so one of the 5G drivers is now as they call it: ‘In the shits‘, a 14% loss is nothing to get sneered at. And this optionally links back to the accusations against China in 5G, yet they are all still stories. The evidence was never handed into the limelight, and it also squarely lands the entire matter into the pond of former President Barack Obama, who still wanted to get trade deals going at that stage, so the Democratic party is going to get pushed into this mud pool sooner rather than later, because corporations at a global scale will feel betrayed in this mess. It gets fuelled more when we go back to September 2015, after this mess started and the people (via Reuters) get treated to: “President Barack Obama announced on Friday that he had reached a “common understanding” with Chinese President Xi Jinping on curbing economic cyber espionage, but threatened to impose U.S. sanctions on Chinese hackers who persist with cybercrimes.” So, did it happen? Was the story on the servers a ruse? Seems interesting that when placed in the proper timeline, against other news, we see a different setting do we not?

That is the stage we see when we add an element, any linked element to the story, it changes the preface of it and it changes the conclusions of it all. Any story with incomplete data is not a story, it degrades into a fairy tale, and both Mother Goose and Jacob Grimm both had their end of the spectrum when we watched their stories unfold. So where do the Guardian and Bloomberg stand? They go with sources that gave them news, yet when those sources cooperate in getting a particular story told, where do we get to stand, being told a story?

The server boards are evidence, yet where are they? If it is in 7000 server boards, there should be plenty to go around and show the world what was going on, but that did not happen, did it? So even as we were made aware a mere 5 hours ago of: “Huawei is trying to convince the U.S. government that Trump’s trade wars with China might slow down 5G adoption on American soil“, we now see that this is exactly what the US needed, time to catch up, or at least get a bigger slice of the 5G pie chart. You see a nation that is to be regarded as bankrupt cannot rely on importing goods; it needs US based goods to use a circle of non-cycled currency to keep its government running. And the 5G wave will go on for some time, the more time they get, the longer they can negate their official moment of being bankrupt. I am not the only one with that view, the same view is given (with a better economic handling) by Economist Laurence Kotlikoff who gives us: “While the United States’ official debt is $20 trillion, the fiscal gap is really 10 times larger — $200 trillion. That comes from adding in off-the-book liabilities, including debt that’s in the Federal Reserve’s hands, Kotlikoff said“, who also gives us: ““The evidence is in front of our eyes that we’re bankrupt,” Kotlikoff said. “It’s not bankrupt in the future. It’s bankrupt right now.”” A stage that I had mentioned three years ago, it might have been 4 years ago. I mentioned the settings and the consequences and I only needed an abacus to get there, but according to all the newspapers, I was wrong. Now we see more storytelling games and more pushes by large corporations to keep the current machine switches on, because once it is switched off, it ends for them, they will have no options and the markets will collapse soon thereafter wiping ours (and partially their) retirements away. That is the realism of our day and age and it is a story that I am telling, just like the others. I merely believe that I have seen more data, more complete data and I see the interactions on a wider scale. From that assumption my story is (seemingly) better, truer and more believable, is that the case, is it that for you?

You see, that is the danger with stories, it all hangs on the evidence that we are given and for the longest of times, the supporting evidence has been lacking, or basically completely absent on their side of the discussion. When we watch the Grimm in the TV Series Nick Burkhardt we accept it, because it is entertainment, and when the Grimm kills the Hundjägers, we know it is fabrication, entertaining fabrication mind you. Yet when we see the mention of Lenovo and ZTE, when we realise that 128,000 people are now in a state with an endangered job, families in danger of social security, as well as the impact on a larger scale, are we happy with the tale when it is the story and the non-shown evidence that is the matter. The fact that more parties are in denial is also an issue, but that could be for a whole host of reasons. It is the lack of evidence that is open for scrutiny that becomes the larger issue and that is an issue, it is an issue in every story, so whilst I embrace the FX slogan: ‘the story is everything‘ it is the lack of supported reality that makes it an issue in business intelligence and actual intelligence analyses. A setting that was 3 years in the open and we only get it partially served now, now that the need of America is becoming more and more dire.

The math does not add up and that has a much larger setting in all this than most are willing to admit to at present.

 

Leave a comment

Filed under Finance, IT, Media, Military, Politics, Science