martes, 12 de noviembre de 2013

Juan de Ayolas - Misiones, Paraguay I











































































































domingo, 3 de noviembre de 2013

Cinco consejos en la lucha contra los transgénicos

Cinco consejos en la lucha contra los transgénicos

Por noticiasdeabajo • 1 noviembre, 2013 Por Ronnie Cummins, 31 de octubre de 2013
Common Dreams


http://noticiasdeabajo.files.wordpress.com/2013/11/contra_transgenicos1.jpg

“A raíz de las campañas en contra del etiquetado de los transgénicos, y las grandes sumas de dinero invertidas en ellas, primero en California en 2012 y después en Washington en 2013, muchas personas defensoras de los alimentos ecológicos y la salud han conseguido colocar a la defensiva a la elite política y las grandes Corporaciones. (Foto: PRWatch.org)


Veinte años después de la introducción de los controvertidos alimentos y cultivos modificados genéticamente, sin etiquetado y sin pruebas fehacientes de seguridad, la oposición a los transgénicos y a empresas como Monsanto ha creado uno de los mayores movimientos y una red de base popular en los Estados Unidos.
Hay cuestiones sin duda más importantes a las que nos enfrentamos hoy en día que la lucha contra los alimentos Frankenstein. Por otro lado, se encuentran la crisis climática, el control de las Corporaciones sobre los Gobiernos y los Medios de Comunicación, son cosas que enseguida me vienen a la mente. Sin embargo, el rápido crecimiento del movimiento antitransgénicos ilustra la poderosa sinergia que puede desarrollarse utilizando los medios sociales, la presión del mercado y la actividad política. Por la evolución de los acontecimientos quizás nos puedan parecer que las Corporaciones están fuera de control, con el apoyo de los medios de comunicación, la labor de los políticos y ese proverbial uno por ciento, pueden ser muy listos y hábiles, pero quizás pudieran ser derrotados.
A raíz de las campañas en contra del etiquetado de los transgénicos, y las grandes sumas de dinero invertidas en ellas, primero en California en 2012 y después en Washington en 2013, muchas personas defensoras de los alimentos ecológicos y la salud han conseguido colocar a la defensiva a la elite política y las grandes Corporaciones.
Hemos demostrado que con la creación de una coalición tanto en el interior como en el exterior, mediante la presión del mercado, las movilizaciones y la recaudación de fondos, canalizando de forma estratégica la acción política local y estatal, se pueden tener probabilidades en esa lucha entre David y Goliat.
Aquí dejo cinco consejos estratégicos en la lucha contra los transgénicos, consejos que pueden aplicarse a una amplia gama de cuestiones políticas:
1.- Encuadre de los problemas en un contexto populista agresivo
Es un asunto candente la creciente preocupación por la seguridad alimentaria y la desconfianza generalizada en las grandes Empresas Químicas, en los medios de comunicación, en las Agencias de Regulación, en los Parlamentos. El 40% de los consumidores creen que los alimentos y cultivos transgénicos son inseguros, y otro 40% se muestra indeciso. Estos números asustan a las grandes cadenas de supermercados, a las empresas de Biotecnología y de alimentos. Algunos estados, como el de Washington, Connecticut, Maine y Vermont, pronto exigirán el etiquetado obligatorio de los alimentos transgénicos, lo que podría conducir a que estos controvertidos alimentos saliesen del mercado.
Los activistas contra los transgénicos han obtenido el apoyo de millones de consumidores, desafiando enérgicamente a las empresas que se oponen al etiquetado: Monsanto, Coca-Cola, Pepsi, Nestlé, y otras.
2.- La formación de coaliciones poco convencionales entre los más radicales y los moderados aumenta la masa crítica
Después de 20 años de educación del público y de defensa de los consumidores, los movimientos a favor de una alimentación más natural han constituido una coalición de grupos sin fines de lucro y de interés público, tales como la Asociación de Consumidores Ecológicos o Food Democracy Now, o empresas de cultivo ecológico, lo que no está acercado a algo parecido a una masa crítica.
Más de 100 millones de consumidores estadounidenses compran de forma regular alimentos ecológicos, dando lugar a un mercado en rápido crecimiento que ya mueve 80 mil millones de dólares al año. Uno de los logros más importantes del movimiento Derecho a Saber, pidiendo el etiquetado de los transgénicos, ha sido el de unir a grupos muy diversos en la promoción y recaudación de fondos sin ánimo de lucro en favor de una alimentación más sana y en un cambio de mentalidad. Después de 20 años operando con presupuestos muy reducidos, de constituir empresas de producción ecológica, se ha conseguido recaudar la nada desdeñable cifra de 20 millones de dólares para apoyar las iniciativas de etiquetado de los transgénicos, en California y Washington, mientras que se ha presionado a importantes marcas, como Whole Foods Market, Trader Joe y Chipotle, que apoyen el etiquetado.
Al mismo tiempo, grupos de activistas más radicales están aprendiendo que para conseguir el mayor impacto hay que trabajar con grupos moderados. Esta estrategia del dentro-fuera ha permitido a los grupos más radicales en favor de una alimentación ecológica, resaltar los impactos alarmantes y en el ambiente de los transgénicos, llevando a cabo boicots, manifestaciones y la acción directa, mientras que los grupos más moderados apelan al mensaje del derecho a saber lo que hay en los alimentos que consumimos.
3.- La presión del mercado y la acción política deben ir de la mano
Los activistas contra los transgénicos ya han aprendido que la presión del mercado y la acción política deben ir de la mano. No es suficiente con la compra de los alimentos y productos ecológicos y no transgénicos para compensar a aquellas empresas que los comercializan y por el contrario desechar otro tipo de alimentos, debemos apoyar políticamente un ambiente sano, alimentos respetuosos con el clima y el suelo. Si queremos desterrar del mercado los alimentos transgénicos, no sólo hay que practicar en nuestra vida cotidiana lo que predicamos, sino también en la vida política e involucrarnos en batallas legislativas y en campañas políticas.
Una importante consecuencia de la presión del mercado y los boicots de los transgénicos, en su potencial para dividir de forma gradual a nuestros oponentes. En el caso del movimiento en contra de los transgénicos, se ha empezado a abrir una brecha entre la empresas de Biotecnología, la Agricultura Industrial y sus antiguos aliados, los fabricantes de alimentos y las cadenas de supermercados. A raíz de la Propuesta 37 de etiquetado en California, la Asociación de Consumidores Ecológicos y sus aliados emprendieron un boicot nacional contra aquellas empresas que habían gastado hasta 20 millones de dólares, y otros 30 millones procedentes de la Empresas de Biotecnología, para derrotar la Propuesta 37. Sabemos que muchas de ellas vieron disminuir sus ingresos, lo que obligó a otras importantes multinacionales, como Unilever, a mantenerse alejada de las actividades en contra del etiquetado. Otro gigantes de la distribución, como Wal-Mart, por temor a la respuesta de los consumidores, han comenzado a presionar a la FDA para que se ponga etiqueta a los alimentos transgénicos.
4.- Movilizaciones, peticiones a través de la red y recaudación de fondos son asuntos clave
Los activistas contra los transgénicos están construyendo nuevas coaliciones, solicitando peticiones y aumentando la lista de correos, con agrupaciones nacionales y locales, con la utilización de las redes sociales para la movilización, y la recaudación de fondos a través de Internet.
En las recientes iniciativas legislativas para el etiquetado de los transgénicos en California y Washington, así como otras iniciativas en otros estados, se ha conseguido el envío coordinado de más 10 millones de correos electrónicos a la vez. Durante los últimos 12 meses, Organic Consumers Association, Mercola.com, Food Democracy Now, Natural News, Alliance for Natural Health, Center for Food Safety, Just Label It, Environmental Working Group, Cornucopia, Friends of the Earth, CREDO, y MoveOn han sido capaces de enviar mensajes a favor del etiquetado y contra los transgénicos a millones de consumidores, la realización de miles de acciones locales de protesta, y la consecución de más de 20 millones de dólares a través de pequeñas donaciones. El movimiento en contra de los transgénicos no tiene los bolsillos tan grandes ni puede realizar campañas de publicidad y de relaciones públicas como las grandes Empresas de Biotecnología, pero están desarrollando nuestros propios medios de información en Internet, sobre todo a través de Facebook.
5.- La acción política local y estatal es más eficaz que las campañas dirigidas a la aprobación de nuevas leyes y los legisladores
El movimiento en contra de los transgénicos, como otros movimientos de transformación social, han aprendido por las malas que las empresas y la elite rica controlan no sólo los medios de comunicación, sino también el Gobierno, loo Tribunales y las Agencias de Regulación. Después del envío de peticiones durante décadas al Gobierno, éste hace caso omiso de ellas atendiendo a los contribuyentes ricos, desoyendo a ese 93% de la población que ve con buenos ojos el etiquetado obligatorio de los alimentos modificados genéticamente.
En consecuencia, el movimiento contra los transgénicos ha trasladado su punto de atención de Washington a otros lugares: presión sobre el mercado, campañas políticas a nivel local, sobre todo iniciativas legislativas. Las iniciativas legislativas ciudadanas son legales en 24 estados y aproximadamente en 1000 condados y municipios. Esta forma de democracia directa da a los votantes el poder de promulgar leyes de etiquetado, la aprobación de normas reguladoras para las empresas de Biotecnología y Agricultura Industrial, sin pasar a través de políticos y burócratas. Varios condados de los estados de Washington y California han ido más allá del simple etiquetado, expresándose a favor de la prohibición total de los transgénicos, gracias a la acción política local. En 2014, cuatro condados de Oregón votarán iniciativas legislativas sobre la prohibición de los cultivos transgénicos.
Gane o pierda en el estado de Washington la iniciativa a favor del etiquetado, el movimiento contra los transgénicos se ha convertido en un buen ejército de base, comprometido en la reclamación de sistemas alimentarios y agrícolas más respetuosos, dentro de una batalla más amplia para transformar la política y el Sistema Económico.

Ronnie Cummins es un activista veterano, organizador y autor. Es el director internacional de la Asociación de Consumidores Orgánicos y de su filial en México, Vía Orgánica. http://www.organicconsumers.org; http://www.viaorganica.org

Fuente: http://noticiasdeabajo.wordpress.com/2013/11/01/cinco-consejos-en-la-lucha-contra-los-transgenicos/


Published on Thursday, October 31, 2013 by Common Dreams

Millions Against Monsanto: Five Lessons from the Battle Against GMOs



Twenty years after the controversial introduction of unlabeled and untested genetically engineered foods and crops, opposition to GMOs (Genetically Modified Organisms) and Monsanto has created one of the largest netroots-grassroots movements in the U.S.

There are arguably more important issues facing us today than the battle against Frankenfoods. The climate crisis and corporate control over the government and media come to mind. But the rapidly growing anti-GMO Movement illustrates the powerful synergy that can develop from the combined use of social media, marketplace pressure and political action. Recent developments in this sector indicate that out-of-control corporations, media, politicians and the proverbial “one percent” can be outsmarted and outmaneuvered. And quite possibly defeated.

In the wake of high-stakes multi-million dollar GMO labeling ballot initiatives in California in 2012, and Washington State in 2013, an army of organic food and natural health activists have put Corporate America and the political elite on the defensive. We’ve demonstrated that aggressive populist issue-framing; unconventional “inside-outside” coalition-building; marketplace pressure; and online list-building, mobilization and fundraising - strategically channeled into local and state-based political action - can begin to even up the odds between David and Goliath.

Here are five strategic lessons from the ongoing battle against GMOs in the U.S, lessons that may be applicable to a broad range of political issues.

1. Aggressive populist issue-framing works.

The desire to know what’s in our food, coupled with a growing concern for food safety and a distrust of large chemical companies, the mass media, Congress and federal regulatory agencies, is a hot-button issue that unites the majority of Americans - Democrats, Republicans, Greens, Libertarians and Independents alike.

Forty percent of consumers believe that unlabeled genetically engineered foods and crops are unsafe. Another 40 percent are unsure. These numbers terrify large supermarket chains, biotech companies and food corporations. So does the notion that states such as Washington, Connecticut, Maine and Vermont will soon require mandatory labeling of GMOs - which will likely drive these controversial foods and crops off the market, just as labeling laws have already done in Europe.

Anti-GMO campaigners have gained the support of millions of consumers and voters by framing] food safety as a populist issue. And by relentlessly and aggressively challenging the opposition – big-name companies that include Monsanto, Coca-Cola, Pepsi, Nestlé, General Mills and others.

2. Unconventional “inside-outside” coalition-building builds critical mass.

After 20 years of grassroots public education and advocacy, the organic and natural health movements, led by a hybrid coalition of non-profit public interest groups, such as the Organic Consumers Association and Food Democracy Now, and green businesses, including Mercola.com, Dr. Bronner’s, and Nature’s Path, are approaching something like critical mass.

Over 100 million U.S. consumers are now regularly shopping for organic and natural foods, nutritional supplements and other products, giving rise to a rapidly growing $80 billion-a-year market for organic and natural products. One of the most important accomplishments of the right-to-know, anti-GMO movement has been to unite the advocacy and fundraising efforts of non-profit groups and health and green-minded for-profit businesses. After 20 years of often operating on shoestring budgets, activist groups (the “outsiders”) are now increasingly joining hands with a number of profitable organic/green/Fair Trade businesses (the “insiders”). This inside-outside strategy has managed to raise a not insignificant war chest of almost $20 million to support the state GMO labeling ballot initiatives in California and Washington in 2012 and 2013, while simultaneously pressuring major brands, such as Whole Foods Market, Trader Joe’s and Chipotle, to embrace GMO labeling.

At the same time activist groups with a more radical message (“outsiders”) are learning that you must, for maximum impact, work with more moderate groups (the “insiders”), and vice-versa. This ecumenical “inside-outside” strategy has allowed the more radical organic and natural health groups and scientists to highlight the alarming human health and environmental hazards of GMOs, and carry out boycotts, street demonstrations and direct action, while the less radical campaign groups and coalitions meanwhile appeal to a more moderate demographic with the mainstream message that consumers have the right to know what’s in their food.

3. Marketplace pressure and political action must go hand-in-hand.

Anti-GMO campaigners have now learned that marketplace pressure and political action go hand-in-hand. It’s not enough to just vote with your pocketbook for organic and non-GMO foods and products, to reward good companies and brands and punish the bad ones. We must get political, and vote for a healthy, climate-friendly food and farming system in the voting booth as well. If we want to drive GMO foods off the market, we must not only walk our talk in the marketplace and in our everyday lives, but also “get political” and mobilize our base to get involved in legislative battles and political campaigns.

One important consequence of marketplace pressure and boycotts is their potential to gradually divide our opponents. In the case of the anti-GMO movement, we’ve begun to drive a wedge between the biotech/industrial agriculture corporations, and their erstwhile allies, food manufacturers and supermarket chains. In the wake of the California GMO labeling ballot initiative (Proposition 37), the Organic Consumers Association and our allies launched a nationwide boycott of Traitor Brands, the organic and natural brands whose parent corporations spent $20 million, along with the biotech industry’s $30 million, to defeat Prop 37. We sabotaged several dozen corporate Facebook pages, tarnishing brand names such as Kashi, Cascadian Farm, Honest Tea, Naked Juice, Silk, Horizon, and Ben and Jerry’s, to depress sales. This caused several large multinationals, including Unilever, parent company of Ben and Jerry’s, and Mars, parent company of Seeds of Change, to back off from anti-labeling activities. Other retail and food giants, including Wal-Mart, fearing an escalation in consumer activism, have begun lobbying the FDA to implement federal GMO food labels.

4. Sophisticated online list-building, mobilization and fundraising are key.

Anti-GMO campaigners are rapidly becoming more sophisticated in terms of building broad coalitions, using online petitions to build large email lists, pooling national email lists, segmenting national lists in order to target state and local constituencies, using Facebook, Twitter and other social media for network-building and mobilization, setting up c4 lobbying organizations to complement c3 non-profit groups, and raising funds online.

In the recent GMO ballot initiative campaigns in California and Washington, as well as state legislative campaigns for labeling in several dozen other states, right-to-know supporters have been able to send coordinated or complementary email messages to over 10 million people at once. Over the past 12 months groups like the Organic Consumers Association, Mercola.com, Food Democracy Now, Natural News, Alliance for Natural Health, Center for Food Safety, Just Label It, Environmental Working Group, Cornucopia, Friends of the Earth, CREDO, and MoveOn have been able to send out anti-GMO or pro-labeling messages to literally millions of consumers and voters on a regular basis, generating thousands of grassroots volunteers, organizing thousands of local events and protests, and raising over $20 million, mainly in small donations. The anti-GMO movement may not have the deep pockets or the advertising and PR clout of the biotech and Big Food lobby when it comes to the corporate media, but we are rapidly developing our own mass media on the Internet and Facebook.

5. Local and state political action is more effective than campaigns that target federal laws and lawmakers.

The anti-GMO movement, like other social change movements, has learned the hard way that corporations and the wealthy elite control not only the mass media, but the federal government, Supreme Court, and regulatory agencies such as the FDA, USDA, and EPA. After decades of sending petitions and lobbying the White House, Congress and the FDA, to no avail, it has become clear that the political elite, including President Obama, care more about their wealthy campaign contributors than they do about their constituents, including the 93 percent who, according to a recent New York Times poll, support mandatory labeling of genetically engineered foods.

As a consequence the anti-GMO movement has moved its focus away from the unfavorable terrain of Washington D.C., and instead turned its attention to marketplace pressure, and state, county and local political campaigns, especially ballot initiatives. Citizen ballot initiatives are legal in 24 states and approximately 1,000 counties and municipalities. This form of direct democracy gives voters the power to enact labeling laws, bans or regulatory and zoning restrictions on biotech corporations and Big Ag, bypassing indentured politicians and federal bureaucrats. A number of California and Washington State counties over the last decade have moved beyond just labeling to outright bans on GMO crops, thanks to citizen-driven local political action. In 2014, four Oregon counties will have ballot initiatives calling for bans on GMO crops.

Win or lose in Washington State on November 5, the anti-GMO Movement has evolved into a savvy army of grassroots activists who are committed to the ongoing battle to reclaim our food and farming systems, part of a larger battle to transform the entire political and economic system.

Ronnie Cummins is a veteran activist, author, and organizer. He is the International Director of the Organic Consumers Association and its Mexico affiliate, Via Organica. http://www.organicconsumers.org; http://www.viaorganica.org

Fuente: http://www.commondreams.org/view/2013/10/31

BadBIOS, el misterioso software malicioso que infecta a los PC y Mac

BadBIOS, el misterioso software malicioso que infecta a los PC y Mac

by noticiasdeabajo
Por Dan Goodin, 31 de octubre de 2013

Ars Technica


Hace tres años, el consultor de seguridad informática Dragos Ruiu trabajaba en su laboratorio cuando se dio cuenta de que estaba ocurriendo algo inusual: su ordenador MacBook Air, en el que acababa de instalar una nueva copia del sistema operativo OS X, actualizó de forma espontánea el firmware que ayuda en el arranque. Más extraño aún, cuando Ruiu trató después de arrancar su máquina con un CD-ROM no pudo. También descubrió que el ordenador borraba datos y deshacía cambios de configuración sin solicitar la confirmación. Él no lo sabía entonces, pero aquella actualización del firmware había infectado la máquina con un malware de alto riesgo que consumiría la mayor parte de sus horas de trabajo.

En los meses siguientes, Ruiu observó otros fenómenos extraños que parecían salidos directamente de una película de ciencia-ficción. El sistema operativo Open BSD también comenzó a modificar su configuración y a borrar datos sin solicitar la confirmación. Su red transmitía datos específicos a través del protocolo IPv6 de nueva generación, aunque estuviese esta funcionalidad deshabilitada. Lo más extraño de todo fue la capacidad de los equipos infectados de transmitir pequeñas cantidades de datos a otras máquinas infectadas, y eso aún cuando los cables de alimentación y los cables Ethernet estaban desconectados y las tarjetas Wi-fi deshabilitadas. Una investigación adicional demostró que los sistemas operativos que se podían infectar también incluía a múltiples variantes de Linux y de Windows.

Teníamos que borrar todos nuestros sistemas operativos y empezar de nuevo, lo cual hicimos. Es una tarea ardua. Y he mostrado mis dudas sobre todo este asunto”, dijo Ruiu a Ars.

En estos tres años, dijo Ruiu, las infecciones se han mantenido, algo parecido a una bacteria que se hace resistente a los tratamientos con antibióticos. En cuestión de horas, después de dedicar semanas a limpiar un ordenador infectado, el extraño comportamiento volvía a repetirse. El signo más visible de que la máquina está infectada es su incapacidad para arrancar desde un CD, pero también se observan otros comportamientos más sutiles cuando se utilizan herramientas como el Monitor de Procesos, que está diseñado para la resolución de problemas y análisis forenses.

Otra característica interesante: además de saltar las protecciones de una red de ordenadores que se aíslan del resto de equipos de la red (airgap), el malware parece tener la capacidad de autocurarse.

Teníamos un ordenador aislado de la red con su BIOS inalterable, el disco con el sistema operativo recién instalado y sin datos en él, a partir de un CD-ROM de Windows. Nos pusimos a editar algunos de sus componentes y el editor de registro consiguió deshabilitarlos. ¿Cómo puede suceder esto? ¿Cómo puede reaccionar la máquina y atacar el software que estábamos usando para atacar? Se trataba de una máquina aislada de la red, en la que de repente el editor de registro dejó de funcionar cuando lo estábamos usando en la búsqueda de las llaves”, dijo Ruiu.

En las últimas semanas, Ruiu ha informado de sus investigaciones a través de Twiter, Facebook y Google Plus, para de esta manera compartir una teoría que ha captado la atención de expertos de seguridad de todo el mundo. Ruiu cree que el malware se transmite a través de las unidades USB, infectando en los niveles más bajos del hardware del equipo. Con la capacidad de infectar la BIOS, y Unified Extensible Firmware Interface (UEFI), este software malicioso puede atacar una amplia variedad de plataformas, escapar a las formas más comunes de detección y a la mayoría de los intentos por erradicarlo.

Por si todo esto no resultase extraño ya de por sí, todavía queda más. En estos tres artículos, aquí, aquí y aquí, Ruiu concibe otra teoría que suena al guión de una película: badBIOS sería capaz de utilizar las altas frecuencias de los altavoces del ordenador y del micrófono para salvar las protecciones del ordenador (airgap).

Persisten las amenazas informáticas

He estado informándome de toda esta cuestión y llegó a parecerme una leyenda urbana, algo así al avistamiento de un Bigfoot. En efecto, Ruiu ha admitido que otros compañeros expertos en seguridad han investigado, pero ninguno de ellos ha dado por bueno su proceso o las conclusiones provisionales ( Unas recopilación de las observaciones de Ruiu se pueden encontrar aquí).

También resulta inexplicable por qué Ruiu iba a ser el objetivo de un ataque tan avanzado y exótico. Como profesional de la seguridad, organizador de las internacionalmente reconocidas conferencias CanSecWest y PacSec, y el fundador de la competición Hacking Pwn2Own, puede tener sin duda su atractivo para el espionaje patrocinado por el Estado y aquellos hackers que están motivados por el dinero. Pero no es objetivo más atractivo que otros cientos o miles de sus compañeros, que hasta el momento no han informado de estos fenómenos extraños que han afectado a los ordenadores y redes de Ruiu.

En contraste con el escepticismo, algo normal en la cultura de seguridad y la piratería informática, los compañeros de Ruiu han respondido con una profunda preocupación e incluso se han sentido fascinados por badBIOS.

Todos los expertos en seguridad tienen que seguir a @dragosr y ver sus análisis de #badBIOS, dijo en Twiter Alex Stamos, uno de los investigadores de seguridad más confiables y sobrios. Jeff Moss, fundados de Defcon y las conferencias de Seguridad Blackhat, que en 2009 comenzó a asesorar a la Secretaria del Departamento de Seguridad Nacional, Janet Napolitano, en materia de seguridad informática, dijo: “No es una broma, esto va en serio”. Otros muchos dicen lo mismo.

Dragos es sin duda una persona en la que se puede confiar, y nunca he pensado en una actuación deshonesta suya”, dijo el investigador en seguridad Arrigo Triulzi a Ars. “Nada de lo que él describe es ciencia-ficción, considerado individualmente, pero nunca he visto algo parecido”.

Estuvo allí, lo hizo

Triulzi dijo que ha visto en el laboratorio muchos programas maliciosos que tenían como objetivo el firmware. Un cliente suyo tuvo infectado la BIOS UEFI de su ordenador portátil Mac, en lo que formaba parte de un experimento. Hace cinco años, el propio Triulzi desarrolló un concepto de malware que infectaba sigilosamente los controladores de la interfaz de red, que se conectan a la placa base del PC y es donde se inserta la toma Ethernet para conseguir el acceso del equipo a la red. John Heasman demostró como infectar malware difícil de detectar, tales como un rootkit, en los componentes periféricos de un ordenador, las conexiones desarrolladas por Intel para integrar los dispositivos hardware en la CPU.

También es posible utilizar los sonidos de alta frecuencia emitidos por los altavoces para enviar paquetes de red. Los primeros estándares de red utilizaron esta técnica, dijo el experto en seguridad Rob Graham. La gestión de redes ultrasónicas también son el objetivo de una gran cantidad de investigaciones, incluyendo a científicos del MIT.

Por supuesto, una cosa es observarlo en el laboratorio por parte de los investigadores, demostrar que es viable infectar el firmware por rootkits o por técnicas de redes de alta frecuencia, pero como sugiere Triulzi, otra cosa completamente diferente es fusionar perfectamente ambas cosas y utilizarlas como un arma en el mundo real contra un experto en seguridad. Es más, el uso de la memoria USB para infectar una amplia variedad de plataformas informáticas a nivel de la BIOS, ya se encontraba en el gusano Stuxnet, que Estados Unidos empleó para interrumpir el programa nuclear de Irán. Y la capacidad de badBIOS para saltarse los sistema de protección de un ordenador dentro de una red tiene paralelismos con Flame, otro engendro patrocinado por el Estado, que se transmitía por la señales de radio de los dispositivos Bluetooth que utilizan para comunicarse con los dispositivos que no están conectados a Internet.

En realidad, todo lo que dice Drago entra dentro de lo factible y al alcance de mucha gente”, dijo Graham, director general de pruebas de penetración en la empresa Errata Security. “Podría, si tuviera tiempo, desarrollar un malware que infectase la BIOS al estilo de lo que dice Dragos sobre badBIOS. Comunicarse a través de las ondas de alta frecuencia entre ordenadores es fácil, muy fácil”.

En coincidencia, los periódicos italianos informaban que esta semana los espías rusos trataron de controlar a los asistentes a la cumbre económica del G-20 regalándoles tarjetas de memoria USB para interceptar las comunicaciones.

Eureka

Durante los tres años que lleva Ruiu luchando contra badBIOS, el mecanismo de infección sigue siendo un misterio. Hace unos meses, después de comprar un equipo nuevo, se dio cuenta de que resultó infectado casi de forma inmediata nada más conectar sus dispositivos USB en el mismo. Así surgió la teoría de que los ordenadores infectados tienen la capacidad de contaminar los dispositivos USB y viceversa.

En estos momentos tengo la sospecha de que se produce algún tipo de desbordamiento del búfer cuando la BIOS accede al dispositivo, reprogramando el controlador flash para desbordar la BIOS y luego agregar una sección a la BIOS”, explicó.

Todavía no se sabe si una memoria USB fue el detonante de la infección inicial de su MacBook Air hace tres años, o si los dispositivos USB se infectaron después de conectarlas a las máquinas infectadas, que según dijo son entre una y dos docenas. Ha sido capaz de identificar una variedad de dispositivos USB que infectan a cualquier computadora a la que se conecten. En la Conferencia de PacSec del mes que viene, Ruiu dijo que planea tener acceso a un costoso análisis del hardware USB y así obtener pistas de los mecanismos de infección.

Dijo que sospecha que badBIOS es sólo un módulo inicial de una carga útil multiorganizada, que tiene la capacidad de infectar a los sistemas operativos Windows, Mac OS X, BSD y Linux.


Obtiene algo de la red o del mismo llavero USB que causó la infección”, teorizó. “Esta es una conjetura de por qué no se puede arrancar desde un CD. Está tratando, por así decirlo, de mantenerse unido a la máquina. No quiere arrancar otro sistema operativo que no tenga el código”.

Para decirlo de otra manera, “badBIOS es sólo la punta del iceberg, por así decirlo”.

Las investigaciones continúan

Ruiu dijo que llegó a la teoría sobre la capacidad de utilizar la red de alta frecuencia por parte de badBIOS después de observar que paquetes cifrados de datos eran enviados desde un ordenador portátil infectado que no tenía conexión con la red, pero estaba muy cerca de otro equipo infectado por badBIOS. Los paquetes se transmiten incluso cuando el portátil no tiene conexión Wi-Fi y han sido desconectadas las tarjetas Bluetooh. Ruiu también desconectó el cable de alimentación de la máquina, por lo que sólo funcionaba la batería, para descartar la posibilidad de que se estuviesen recibiendo señales a través de la red eléctrica. Incluso así, las herramientas forenses mostraron que los paquetes seguían enviándose sobre la máquina aislada de la red (airgap). Entonces, Ruiu retiró el altavoz interno y el micrófono conectado a la máquina, y de repente cesó el envío de paquetes.

Cuando los altavoces y el micrófono estaban en funcionamiento, Ruiu comprobó que el ordenador aislado de la red usaba la conexión de alta frecuencia para mantener la integridad de la infección badBIOS mientras trabajaba en desmontar los componentes del software malicioso”.

La máquina aislada de la red actúa como si estuviera conectada a Internet. La mayoría de los problemas que teníamos es que estábamos deshabilitando componentes del sistema, desactivando algunas cosas. Pero se recomponían de inmediato. Era extraño”.

Es demasiado pronto para decir que lo que Ruiu ha observado sea un rootkit transmitido por los dispositivos USB, que puede esconderse en los niveles más bajos de una computadora y usarlos como punto de partida para infectar una amplia variedad de sistemas operativos con malware que no puede ser detectado. Es aún más difícil saber a ciencia cierta si los sistemas infectados utilizan sonidos de alta frecuencia para comunicarse con las máquinas aisladas de la red. Pero después de casi dos semanas de discusión, casi nadie ha sido capaz de descartas estos inquietantes escenarios.

Parece que en materia de intrusión se ha avanzado mucho más de lo que pensaba”, dijo Ruiu en una entrevista. “Lo que ocurre es que muchos de nuestros sistemas forenses son débiles cuando se enfrentan a retos como éste. Muchas empresas tienen que tener mucho cuidado cuando analizan los datos forenses frente a atacantes tan sofisticados”.

Fuente: http://arstechnica.com/security/2013/10/meet-badbios-the-mysterious-mac-and-pc-malware-that-jumps-airgaps/

http://noticiasdeabajo.wordpress.com/2013/11/03/badbios-el-misterioso-software-malicioso-que-infecta-a-los-pc-y-mac/

Meet “badBIOS,” the mysterious Mac and PC malware that jumps airgaps

Like a super strain of bacteria, the rootkit plaguing Dragos Ruiu is omnipotent.

by Dan Goodin - Oct 31 2013, 11:07am -0300


Three years ago, security consultant Dragos Ruiu was in his lab when he noticed something highly unusual: his MacBook Air, on which he had just installed a fresh copy of OS X, spontaneously updated the firmware that helps it boot. Stranger still, when Ruiu then tried to boot the machine off a CD ROM, it refused. He also found that the machine could delete data and undo configuration changes with no prompting. He didn't know it then, but that odd firmware update would become a high-stakes malware mystery that would consume most of his waking hours.
In the following months, Ruiu observed more odd phenomena that seemed straight out of a science-fiction thriller. A computer running the Open BSD operating system also began to modify its settings and delete its data without explanation or prompting. His network transmitted data specific to the Internet's next-generation IPv6 networking protocol, even from computers that were supposed to have IPv6 completely disabled. Strangest of all was the ability of infected machines to transmit small amounts of network data with other infected machines even when their power cords and Ethernet cables were unplugged and their Wi-Fi and Bluetooth cards were removed. Further investigation soon showed that the list of affected operating systems also included multiple variants of Windows and Linux.
"We were like, 'Okay, we're totally owned,'" Ruiu told Ars. "'We have to erase all our systems and start from scratch,' which we did. It was a very painful exercise. I've been suspicious of stuff around here ever since."
In the intervening three years, Ruiu said, the infections have persisted, almost like a strain of bacteria that's able to survive extreme antibiotic therapies. Within hours or weeks of wiping an infected computer clean, the odd behavior would return. The most visible sign of contamination is a machine's inability to boot off a CD, but other, more subtle behaviors can be observed when using tools such as Process Monitor, which is designed for troubleshooting and forensic investigations.
Another intriguing characteristic: in addition to jumping "airgaps" designed to isolate infected or sensitive machines from all other networked computers, the malware seems to have self-healing capabilities.
"We had an air-gapped computer that just had its [firmware] BIOS reflashed, a fresh disk drive installed, and zero data on it, installed from a Windows system CD," Ruiu said. "At one point, we were editing some of the components and our registry editor got disabled. It was like: wait a minute, how can that happen? How can the machine react and attack the software that we're using to attack it? This is an air-gapped machine and all of a sudden the search function in the registry editor stopped working when we were using it to search for their keys."
Over the past two weeks, Ruiu has taken to Twitter, Facebook, and Google Plus to document his investigative odyssey and share a theory that has captured the attention of some of the world's foremost security experts. The malware, Ruiu believes, is transmitted though USB drives to infect the lowest levels of computer hardware. With the ability to target a computer's Basic Input/Output System (BIOS), Unified Extensible Firmware Interface (UEFI), and possibly other firmware standards, the malware can attack a wide variety of platforms, escape common forms of detection, and survive most attempts to eradicate it.
But the story gets stranger still. In posts here, here, and here, Ruiu posited another theory that sounds like something from the screenplay of a post-apocalyptic movie: "badBIOS," as Ruiu dubbed the malware, has the ability to use high-frequency transmissions passed between computer speakers and microphones to bridge airgaps.

Bigfoot in the age of the advanced persistent threat

At times as I've reported this story, its outline has struck me as the stuff of urban legend, the advanced persistent threat equivalent of a Bigfoot sighting. Indeed, Ruiu has conceded that while several fellow security experts have assisted his investigation, none has peer reviewed his process or the tentative findings that he's beginning to draw. (A compilation of Ruiu's observations is here.)
Also unexplained is why Ruiu would be on the receiving end of such an advanced and exotic attack. As a security professional, the organizer of the internationally renowned CanSecWest and PacSec conferences, and the founder of the Pwn2Own hacking competition, he is no doubt an attractive target to state-sponsored spies and financially motivated hackers. But he's no more attractive a target than hundreds or thousands of his peers, who have so far not reported the kind of odd phenomena that has afflicted Ruiu's computers and networks.
In contrast to the skepticism that's common in the security and hacking cultures, Ruiu's peers have mostly responded with deep-seated concern and even fascination to his dispatches about badBIOS.
"Everybody in security needs to follow @dragosr and watch his analysis of #badBIOS," Alex Stamos, one of the more trusted and sober security researchers, wrote in a tweet last week. Jeff Moss—the founder of the Defcon and Blackhat security conferences who in 2009 began advising Department of Homeland Security Secretary Janet Napolitano on matters of computer security—retweeted the statement and added: "No joke it's really serious." Plenty of others agree.
"Dragos is definitely one of the good reliable guys, and I have never ever even remotely thought him dishonest," security researcher Arrigo Triulzi told Ars. "Nothing of what he describes is science fiction taken individually, but we have not seen it in the wild ever."

Been there, done that

Triulzi said he's seen plenty of firmware-targeting malware in the laboratory. A client of his once infected the UEFI-based BIOS of his Mac laptop as part of an experiment. Five years ago, Triulzi himself developed proof-of-concept malware that stealthily infected the network interface controllers that sit on a computer motherboard and provide the Ethernet jack that connects the machine to a network. His research built off of work by John Heasman that demonstrated how to plant hard-to-detect malware known as a rootkit in a computer's peripheral component interconnect, the Intel-developed connection that attaches hardware devices to a CPU.
It's also possible to use high-frequency sounds broadcast over speakers to send network packets. Early networking standards used the technique, said security expert Rob Graham. Ultrasonic-based networking is also the subject of a great deal of research, including this project by scientists at MIT.
Of course, it's one thing for researchers in the lab to demonstrate viable firmware-infecting rootkits and ultra high-frequency networking techniques. But as Triulzi suggested, it's another thing entirely to seamlessly fuse the two together and use the weapon in the real world against a seasoned security consultant. What's more, use of a USB stick to infect an array of computer platforms at the BIOS level rivals the payload delivery system found in the state-sponsored Stuxnet worm unleashed to disrupt Iran's nuclear program. And the reported ability of badBIOS to bridge airgaps also has parallels to Flame, another state-sponsored piece of malware that used Bluetooth radio signals to communicate with devices not connected to the Internet.
"Really, everything Dragos reports is something that's easily within the capabilities of a lot of people," said Graham, who is CEO of penetration testing firm Errata Security. "I could, if I spent a year, write a BIOS that does everything Dragos said badBIOS is doing. To communicate over ultrahigh frequency sound waves between computers is really, really easy."
Coincidentally, Italian newspapers this week reported that Russian spies attempted to monitor attendees of last month's G20 economic summit by giving them memory sticks and recharging cables programmed to intercept their communications.

Eureka

For most of the three years that Ruiu has been wrestling with badBIOS, its infection mechanism remained a mystery. A month or two ago, after buying a new computer, he noticed that it was almost immediately infected as soon as he plugged one of his USB drives into it. He soon theorized that infected computers have the ability to contaminate USB devices and vice versa.
"The suspicion right now is there's some kind of buffer overflow in the way the BIOS is reading the drive itself, and they're reprogramming the flash controller to overflow the BIOS and then adding a section to the BIOS table," he explained.
He still doesn't know if a USB stick was the initial infection trigger for his MacBook Air three years ago, or if the USB devices were infected only after they came into contact with his compromised machines, which he said now number between one and two dozen. He said he has been able to identify a variety of USB sticks that infect any computer they are plugged into. At next month's PacSec conference, Ruiu said he plans to get access to expensive USB analysis hardware that he hopes will provide new clues behind the infection mechanism.
He said he suspects badBIOS is only the initial module of a multi-staged payload that has the ability to infect the Windows, Mac OS X, BSD, and Linux operating systems.
"It's going out over the network to get something or it's going out to the USB key that it was infected from," he theorized. "That's also the conjecture of why it's not booting CDs. It's trying to keep its claws, as it were, on the machine. It doesn't want you to boot another OS it might not have code for."
To put it another way, he said, badBIOS "is the tip of the warhead, as it were."

“Things kept getting fixed”

Ruiu said he arrived at the theory about badBIOS's high-frequency networking capability after observing encrypted data packets being sent to and from an infected laptop that had no obvious network connection with—but was in close proximity to—another badBIOS-infected computer. The packets were transmitted even when the laptop had its Wi-Fi and Bluetooth cards removed. Ruiu also disconnected the machine's power cord so it ran only on battery to rule out the possibility that it was receiving signals over the electrical connection. Even then, forensic tools showed the packets continued to flow over the airgapped machine. Then, when Ruiu removed the internal speaker and microphone connected to the airgapped machine, the packets suddenly stopped.
With the speakers and mic intact, Ruiu said, the isolated computer seemed to be using the high-frequency connection to maintain the integrity of the badBIOS infection as he worked to dismantle software components the malware relied on.
"The airgapped machine is acting like it's connected to the Internet," he said. "Most of the problems we were having is we were slightly disabling bits of the components of the system. It would not let us disable some things. Things kept getting fixed automatically as soon as we tried to break them. It was weird."
It's too early to say with confidence that what Ruiu has been observing is a USB-transmitted rootkit that can burrow into a computer's lowest levels and use it as a jumping off point to infect a variety of operating systems with malware that can't be detected. It's even harder to know for sure that infected systems are using high-frequency sounds to communicate with isolated machines. But after almost two weeks of online discussion, no one has been able to rule out these troubling scenarios, either.
"It looks like the state of the art in intrusion stuff is a lot more advanced than we assumed it was," Ruiu concluded in an interview. "The take-away from this is a lot of our forensic procedures are weak when faced with challenges like this. A lot of companies have to take a lot more care when they use forensic data if they're faced with sophisticated attackers."
Fuente: http://arstechnica.com/security/2013/10/meet-badbios-the-mysterious-mac-and-pc-malware-that-jumps-airgaps/