Germany Warns About Russian Anti-Virus Software

Germany's Federal Office for Information Security (BSI) cyber security authority has warned against using anti-virus software from Russian headquartered company Kaspersky. 

The BSI issued the statement concerning the conflict in Ukraine and said that the Russian information-technology businesses could be spied on, or forced to launch cyber attacks. 

The BSI has made no allegation of current problems with Kaspersky's products, but said the conflict in Ukraine and Russian threats against the European Union, NATO and Germany brought with them the risk of cyber attacks.

Kaspersky told BBC News that this notification had been "made on political grounds" and that it had no ties to the Russian government. "A Russian IT manufacturer can carry out offensive operations itself, be forced against its will to attack target systems, or be spied on as a victim of a cyber operation without its knowledge or as a tool for attacks against its own customers," the warning said.

The BSI advises that Kaspersky anti-virus products should be replaced with alternatives, but carefully, to avoid weakening defences.

Previously in 2017, US President Trump signed legislation banning Kaspersky software's use within the American Government Also in 2017, UK's National Cyber Security Centre said it would contact all government departments with concerns over the use of Kaspersky systems products relating the issues to national security.

Following the BSI warning, Eintracht Frankfurt football club spokesman Axel Hellmann told Bloomberg: "We have notified Kaspersky management that we are terminating our sponsorship agreement effective immediately... We very much regret the development." The high profile brand sponsorship deal that Kaspersky has with the Ferrari F1 motor racing team has not been affected, to date.

Kaspersky said it would seek clarification from the BSI on its decision, which was "not based on a technical assessment of Kaspersky products" and how to address its concerns.

As a private global cyber security Kaspersky said it does not have any ties to the Russian or any other governments and that its data-processing infrastructure has been moved to Switzerland in 2018. "The security and integrity of our data services and engineering practices have been confirmed by independent third-party assessments.. We believe that peaceful dialogue is the only possible instrument for resolving conflicts," it said.

Similar remarks on Twitter by founder Eugene Kaspersky two weeks ago attracted strong criticism from various other senior industry figures. 

Background Published By BSI

“For over a decade now, information technology has been changing our lives at a rapid rate: the Internet and mobile telecommunication have become the foundation for new forms of communication, commerce, and entertainment.

“Not only private industry has successfully made use of the new technical capabilities: public administrations now use modern IT to optimise their processes and to be able to offer citizens improved services. The term “e-Government” covers numerous online activities and may make many trips to public offices unnecessary in the future.”

“However, one basic human need must not be ignored: the need for security. It takes the knowledge and action of every person involved to maintain security in society. This applies especially to IT security since the threats to security often go unnoticed at first glance and are often underestimated.

“As a national cyber security authority, the goal of the Federal Office for Information Security (BSI) is to promote IT security in Germany. The BSI is first and foremost the central IT security service provider for the federal government in Germany."

“However, we also offer our services to IT manufacturers as well as private and commercial users and providers of information technology because effective security is only possible when everyone involved contributes. “For this reason, we want to work in even closer co-operation with all those working in the IT and Internet industry in the field of IT security.”

BSI:      Twitter / Eugene Kaspersky:     Bloomberg:     BBC

You Might Also Read: 

Germany Accuses Russia Of Electoral Interference:

 

« The Global Cyber Security Market Set To Grow By $190 Billion
In Many Cases Active Directory Is The Last Line Of Defence »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

ZenGRC

ZenGRC

ZenGRC - the first, easy-to-use, enterprise-grade information security solution for compliance and risk management - offers businesses efficient control tracking, testing, and enforcement.

Institute for National Security and Counterterrorism (INSCT)

Institute for National Security and Counterterrorism (INSCT)

INSCT is a center for the study of national security, international security, and counterterrorism. Research programs include New Frontiers in Science, Cyber, & Technology

Digital Defense Inc (DDI)

Digital Defense Inc (DDI)

DDI offers vulnerability scanning, penetration testing, web application testing, social engineering and additional security assessments.

Protectimus

Protectimus

Affordable two factor authentication (2FA) provider. Protect your data from theft with multi factor authentication service from Protectimus.

FoxGuard Solutions

FoxGuard Solutions

FoxGuard Solutions develops customized cyber security, compliance and industrial computing solutions for critical infrastructure entities and control system vendors.

PrivateVPN

PrivateVPN

PrivateVPN is a Virtual Private Network services provider offering secure encrypted access to the internet.

Cyscale

Cyscale

Cyscale automates the contextual analysis of cloud misconfigurations, vulnerabilities, access, and data, to provide an accurate and actionable assessment of risk.

Hacken

Hacken

Hacken provide a range of cybersecurity services including security assessments, blockchain security audits, and secure software development.

Fly Ventures

Fly Ventures

Fly Ventures is a seed-stage venture capital fund for outstanding teams building Enterprise and Deep Tech startups in Europe.

FAIR Institute

FAIR Institute

The FAIR Institute is a non-profit professional organization dedicated to advancing the discipline of measuring and managing information risk.

Luxembourg House of Financial Technology (LHoFT)

Luxembourg House of Financial Technology (LHoFT)

Offering start-up incubation, co-working spaces including a soft-landing platform, the LHoFT connects and creates value for the entire Luxembourg FinTech ecosystem.

Valimail

Valimail

Valimail delivers the only complete, cloud-native platform for validating and authenticating sender identity to stop phishing, protect and amplify brands, and ensure compliance.

ERCOM

ERCOM

Ercom, a subsidiary of the Thales Group, is a French company known for its mobility security solutions.

Precision Cybertechnologies & Digital Solutions (Precision-Cyber)

Precision Cybertechnologies & Digital Solutions (Precision-Cyber)

Precision-Cyber was founded on the philosophy of state-of-the-art cybersecurity and digital solutions. Our guiding principle is simply that we will provide and secure all your digital needs.

CompassMSP

CompassMSP

CompassMSP deliver Managed IT and cybersecurity solutions designed to unleash your business's full potential.

Custocy

Custocy

Custocy is a unique collaborative AI technology that identifies sophisticated and unknown (zero-day) attacks.

TisOva

TisOva

TisOva is an innovative cybersecurity startup dedicated to addressing the growing issue of online scams targeting students.