This site may earn affiliate commissions from the links on this page. Terms of use.

Over the last few years, in that location accept been persistent concerns about Kaspersky Lab and its human relationship with the Russian regime. Before this summer, the Trump Administration announced Kaspersky's various antivirus and security programs would no longer be allowed on any US government systems. Multiple stores have pulled their products from store shelves. It'southward been clear loftier-level sources in the U.s. government had serious show of wrongdoing, simply the specifics weren't public noesis until yesterday.

On Tuesday, the New York Times reported how the United States government learned one of the world's largest antivirus providers was connected to Russian intelligence. Israeli counterintelligence officers had pulled off their ain hack of Russian assets and literally watched Russian government hackers searching US-based computers for keywords and code names linked to Us intelligence programs in real time.

Russian blackness hats were able to use Kaspersky antivirus software as a sort-of Google search engine, scanning computers across the state for keywords and phrases. Last year, the NSA charged ane of its contractors, Harold Thomas Martin 3 with having improperly retained terabytes of classified data on a figurer in his home. His machine is 1 of the computers the Russians could access, and sources have told the New York Times key NSA data was exfiltrated from his machine. Here's how the NYT described the situation:

Like most security software, Kaspersky Lab'due south products require access to everything stored on a computer in order to scour it for viruses or other dangers. Its pop antivirus software scans for signatures of malicious software, or malware, and so removes or neuters information technology before sending a report back to Kaspersky. That procedure, routine for such software, provided a perfect tool for Russian intelligence to exploit to survey the contents of computers and retrieve whatever they constitute of interest.

Kaspersky Lab continues to deny collaboration with the Russian government. Several years agone, the company replaced sure executives with other men who had ties to either the FSB (the successor to the KGB) or to Russian government in general. Its owner graduated from a KGB Academy. And both the United States government and various US companies have pulled the software from their shelves. These attacks, however, are not linked to the Shadow Broker leaks from earlier this year. The visitor's response is shown below.

Nonetheless, ExtremeTech strongly recommends uninstalling Kaspersky'south antivirus and security products and using dissimilar solutions. If you want to compare other software products, both PCMag (our sister site) and AV-Comparatives offer reviews and existent-earth tests to measure antivirus and malware protection.

In situations like this, where verification of a situation is impossible, in that location's but no reason to take a adventure the report is true. Now that it'southward known Kaspersky Lab'south software may take a backdoor, it'due south highly likely other hackers volition try to observe and have advantage of information technology. At that place are many potential antivirus solutions on the market and no reason to risk having your data exfiltrated by using a potentially dangerous application.