BugWatch: Magic Lantern - not magic and not very bright

FBI Trojan horse lacks the Hogwart touch

Written by Natasha Staley

Advertisement

Each week vnunet.com asks a different expert from the IT security world to give their views on recent virus and security issues, with advice, warnings and information on the latest threats.

This week, Natasha Staley, of Sophos AntiVirus, discusses the implications of the FBI's Magic Lantern Trojan horse.

The FBI's recent confirmation that it is developing a Trojan Horse - codenamed Magic Lantern - has rekindled the debate over whether it is acceptable to use computer viruses for so-called good causes.

The 'e-bug' is reported to plant a keystroke logger on the target's PC and will allow the FBI to gather valuable intelligence in its continued fight against crime and terrorism.

However honourable the intention, the development of this Trojan represents a huge dilemma for the antivirus industry. Should it comply with the FBI by turning a blind eye to malicious code, or should it continue to protect its customers from all known malware?

For both ethical and practical reasons, it's doubtful that Magic Lantern will ever get off the ground and, even if it does, it is unlikely to achieve the desired effect.

Aside from the moral and legal problems associated with snooping, there are a number of practical reasons why Magic Lantern simply won't work.

Firstly, for antivirus vendors to know which Trojan horse to 'overlook', the FBI would need to provide a sample of the code. For security reasons, it is unlikely that this would happen.

So, how will vendors know which code is written by the FBI and which originates from virus authors with a chip on their shoulder?

In order to properly protect their customers, vendors are going to issue protection against any detected malicious code.

Even if vendors are made aware of the code, how will they know that their customer was the intended target of the FBI?

By planting a Trojan on the machines of those under suspicion, the FBI would essentially be placing a weapon directly into the hands of their enemies.

The code could easily be adapted and new variants created with far more sinister intentions in mind. Once the Trojan was released, there would be no way of knowing who would use it to spy on whom, and with what consequences. In an ironic twist of fate, the FBI could even find itself to be the victim of its own code.

It is also necessary to consider the diplomatic connotations of using viruses to glean intelligence. It is likely that the governments of other nations would want protection against anything like Magic Lantern. Understandably, these institutions would argue that the FBI has absolutely no right to spy on them.

Would antivirus vendors issue them with protection as well? And what if British, French or Italian law enforcement agencies decided that they too would develop something similar to Magic Lantern?

If we turn a blind eye to the FBI, surely we would have no choice but to do the same for other agencies?

Of course, the FBI could make a success of Magic Lantern by basing it on undetectable code. However, the bad news for the Feds is that it has been mathematically proven that writing such code is impossible; everything leaves a trace.

Ultimately, if this Trojan is going to work, it really will have to be magic.

Tags:

Related articles

Related whitepapers

Related jobs

Do you agree?

Most commented stories

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

05 Sep 2008

8.64 MBPodcast Special: Views from the Valley More...

Podcast image

04 Sep 2008

12.7 MBComputing podcast 4 September 2008 More...

Podcast logo

02 Sep 2008

8.39 MBEco-Entrepreneur Podcast: Bulldog More...

Poll

INTERNET EXPLORER 8

INTERNET EXPLORER 8

Are you intending to download Internet Explorer 8 when it becomes available?

Previous poll results

Spotlight

LogMeIn Rescue+Mobile

BlackBerry gets LogMeIn remote support

Rescue+Mobile lets a support technician take control of the handset   More...

Dell manufacturing plant

Dell planning factory closures to cut costs

Report claims that PC maker is looking to sell off...  More...

Google Chrome

More growing pains for Chrome

Google wrestles with licensing and security problems   More...

Smartphone

US takes 3G crown from Europe

Americans finally catch up with Europeans in adoption of 3G   More...

Primary Navigation