Skip to main content

The CIA’s top secret virus control system

Early Friday morning, Wikileaks released its fifth batch of Vault 7 documents exposing the U.S. Central Intelligence Agency’s hacking techniques. The latest release, titled “Hive,” exposes the agency’s multi-platform malware suite that allows the CIA to monitor targets via malware as well as the ability to realize specific tasks on compromised machines.

Hive is said to provide customizable implants for a variety of operating systems for distinct types of devices, not just computers, tablets, and phones. Among the platforms vulnerable to Hive include Linux, Windows, Solaris, MikroTik (used in Internet routers), and AVTech Network Video Recorders (often used in CCTV recording). First released in 2010, Hive is essentially an “implant” that functions as both a beacon and shell, allowing CIA hackers to gain a foothold in devices that allow them to deploy any number of other tools, such as those detailed in previous releases.

Wikileaks has described Hive’s function as a “back-end infrastructure malware” that uses public HTTPS interfaces which provide “unsuspicious-looking cover domains” to hide its presence on infected devices. Each of those domains is linked to an IP address at a commercial Virtual Private Server (VPS) provider, which forwards all incoming traffic to what is termed a “Blot” server. All re-directed traffic is then examined by CIA hackers to see if it contains a valid beacon. If it does, then a tool handler – called Honeycomb in the released documents – and the CIA then begins initiating other actions on the target computer. The released user guide shows that Hive allows for the uploading and deleting of files as well as the execution of applications on the device.

Unlike some other Vault 7 tools which can persist indefinitely on targeted devices, Hive comes with a “self-delete” function that allows the malware to destroy itself if it receives no signal from the CIA for a set amount of time. The self-deletion leaves only a log and configuration file, containing only a time-stamp behind. Apparently this feature posed difficulties to CIA developers as the self-deletion can “be problematic due to the inability to accurately assess the reliability of the host’s system clock,” according to the Hive Developers Guide.

Wikileaks noted that anti-virus companies along with forensic experts have noticed before that malware, potentially originating from a state-actor, utilized the same back-end infrastructure implantation that Hive employs. Through the analysis of the communication between specific implants, these experts and software companies were able to determine that the malware’s origin came from a “well-resourced organization which was involved in intelligence gathering operations.”

However, there had been unable to attribute the back-end or the implants to the CIA, though Wikileaks’ release of Hive may change that. Indeed, Wikileaks noted in its press release that “The documents from this publication might further enable anti-malware researchers and forensic experts to analyse this kind of communication between malware implants and back-end servers used in previous illegal activities.

Wikileaks’ latest release comes on the heels of CIA director Mike Pompeo’s aggressive statements against the transparency organization in which he labeled them “non-state hostile intelligence service.” He also condemned Wikileaks’ editor-in-chief, Julian Assange of making “common cause with dictators.” While other CIA directors have targeted both Wikileaks and Assange in the past, Wikileaks now five releases of top secret CIA hacking tools may have prompted an escalation in Pompeo’s rhetoric. It remains to be seen if this rhetoric will translate into action, however.

Assange, for his part, doesn’t seem too concerned, choosing to respond with a witty retort that incisively pointed out the CIA’s lack of credibility in making such accusations:


Source and links:

Comments

Popular posts from this blog

Capitalism & Genocide - Yanis Varoufakis Speech at the Gaza Tribunal, 23rd October 2025, Istanbul

Yanis Varoufakis   On 23rd October, Yanis Varoufakis testified in front of the Jury of Conscience in the context of the Gaza Tribunal. His speech focused on the economic forces underpinning the genocide of the Palestinian people. In particular, he spoke on the manner in which capitalist dynamics have historically fuelled the white settler colonial project and, more recently, how the accumulation of a new form of capital - which he calls cloud capital - has accelerated, deepened and amplified the economic forces powering and propelling the machinery of genocide. 

Munich Shock: Rubio’s Vision of a New Western Century & World Order

GVS Deep Dive   At the 2026 Munich Security Conference, U.S. Secretary of State Marco Rubio delivered one of the most consequential foreign policy speeches of the year. Framed as a call for Western renewal, his address went far beyond NATO reassurance — outlining a vision of sovereignty, industrial consolidation, and civilizational confidence that may signal the end of the post-Cold War global order.   Is this the beginning of a Second Cold War?   Is the West reorganizing around bloc competition?   Or are we witnessing the construction of a new world order? 

What Iran, Russia & China just did is HUGE, War BACKFIRES on Trump

Danny Haiphong   Iran's shocking response to Trump's imminent attack is sending fear down the spines of the US military as war leaves them defenseless from Iranian missile fire says Mohammad Marandi. This video breaks down why this war is already backfiring on Trump. 

Saudi Arabia & Qatar caught Mossad agents planning false flag operations inside their soil to blame Iran

Tucker Carlson says Saudi Arabia & Qatar caught & arrested Israeli Mossad agents planning bombings in those countries. pic.twitter.com/6PUxWeUymu — Jackson Hinkle 🇺🇸 (@jacksonhinklle) March 3, 2026

US-Israeli attack on Iran expands into GLOBAL WAR: EU & UK join, Canada supports, Gulf regimes hit

Geopolitical Economy Report   The US-Israeli war on Iran is expanding into a global conflict. The European Union supports it. The UK is letting Trump use British bases. Germany and France are involved. Canada backs it. Tehran has retaliated, in self-defense, hitting US military bases in Gulf countries. Ben Norton explains. 

Billionaires are social distancing in super yachts as tens of millions lose jobs

Everyday, it becomes clearer: the COVID-19 pandemic is hitting poor, working, and marginalized communities the hardest. Millions of workers – especially low-wage retail, food service, hospitality, and care workers – have faced the terrible choice daily between going to work and risking their health, or staying home and risking their paychecks. Many other workers don’t even have that choice, with around 30 million people in the US filing for unemployment in the past six weeks. But billionaires don’t face these same problems. As tens of millions have lost their jobs over the past two months, billionaire wealth soared by a whopping $282 billion between March 18 and April 10, according to a new study from the Institute for Policy Studies.  And while finding enough space to wait out the pandemic is something many struggle with, billionaires have been escaping to their second (or third, or fourth) homes to ride it out in luxury – all while they position themselves to ...

A response to misinformation on Nicaragua: it was a coup, not a ‘massacre’

There is so much misinformation in mainstream corporate media about recent events in Nicaragua that it is a pity that Mary Ellsberg’s article for Pulse has added to it with a seemingly leftish critique. Ellsberg claims that recent articles, including from this website, often “ paint a picture of the crisis in Nicaragua that is dangerously misleading. ” Unfortunately, her own article does just that. It looks at the situation entirely from the perspective of those opposing Daniel Ortega’s government while whitewashing their malevolent behavior and downplaying the levels of US support they have relied on. Her piece is an incomplete depiction of what is happening on the ground, ignoring many salient facts that have come to light and which have been outdated by recent events. The following is a brief response to Ellsberg’s main points from someone who lives in Nicaragua and has observed the situation directly and intimately: https://grayzoneproject.com/2018/08/15/a-res...

This Is Why Iran Will DEFEAT The United States & Israel!

The Jimmy Dore Show    

Five reasons a war with Iran will mark the final fall of US empire

globinfo freexchange   1. The nature of war has changed dramatically since the Iraq war, due to technological developments. A ground invasion, especially against Iran, would be catastrophic for the US empire with unpredictable consequences, even if the regime-change mission successfully completed.  2. The Iran allies in the region are still active, despite their losses. This is connected with the first reason in a way because armed groups dispersed in the Middle-East and affiliated with Iran, can lead to an asymmetric, out-of-control conflict to the point where US forces may suddenly find themselves trapped in a wider deadly warzone with no exit. The new, relatively cheap technology of drones and small/middle range missiles, is easily accessible to these groups. The Ansar Allah group in Yemen, already demonstrated their ability to sabotage US military operations. 3. Iran is not Iraq. Not only due to its size and the fact that we live now in a very different period, but also be...

Η θύελλα έρχεται, Grexit τώρα!

globinfo freexchange Η εκστρατεία δαιμονοποίησης της πιθανότητας επιστροφής σε εθνικό νόμισμα συνεχίζεται αμείωτη, ακόμα και επί κυβέρνησης Τσίπρα. Η κυβέρνηση ΣΥΡΙΖΑ-ΑΝΕΛ είναι σίγουρο ότι δεν έχει την πραγματική εξουσία στη χώρα και αυτό φάνηκε τόσο από το οικονομικό πραξικόπημα Ντράγκι το περασμένο καλοκαίρι, όσο και από το γεγονός ότι επιβάλλονται στην παρούσα κυβέρνηση άνθρωποι σε θέσεις-κλειδιά, όπως για παράδειγμα ο τωρινός διοικητής της Τράπεζας της Ελλάδος, Γιάννης Στουρνάρας. Η προπαγάνδα της εγχώριας τραπεζομιντιακής δικτατορίας που διατηρεί ακόμα την πραγματική εξουσία, ως παράρτημα της Ευρωπαϊκής Χρηματοπιστωτικής Δικτατορίας (ΕΧΔ), δαιμονοποιεί με κάθε μέσο και με κάθε ευκαιρία, μέσα από τα γνωστά σενάρια ολέθρου, την πιθανότητα επιστροφής σε εθνικό νόμισμα. Όπως έχει επανειλημμένα τονιστεί σε παλαιότερα άρθρα, ο μόνος τρόπος για να σταματήσει η καταστροφική πορεία της χώρας, η οποία επιβάλλεται συστηματικά από τους μηχανισμούς της ευρω-δικτατορίας κ...