When in Cherepovets – visit Severstal Steel Plant.

My business schedule for this fall looks like it’ll be a full one, as usual. So it’s time to warm up before the long slog so as to ease into it gently and in high spirits… First up – a spot of the industrial

I’ve shown you pics of the iron-and-steel industry before here – from the Novolipetsk Steel Plant. But today you’re getting photos from another of KL’s respected customers…

Severstal! You no doubt will not have visited the city of Cherepovets :) or the Severstal steel mill here… but that’s just fine: I’ll be showing you around the latter in this here post – from where they turn ore (actually – agglomerate) into crude iron…

Read on: Converter, smelter, slabs, rolls!…

Five Years Trudging Through the Evolving Geopolitical Minefield.

[Originally published at Forbes]

“The hardest thing of all is to find a black cat in a dark room, especially if there’s no cat.”
– Ancient wisdom, commonly attributed to Confucius

For nearly five years, Kaspersky Lab has been in the line of fire from a handful of sources, which falsely report that we have covert and unethical ties to government organizations, possibly pose a threat to U.S. national security and/or our U.S. business is failing. That’s half a decade of news investigations, assumptions, hearsay, rumors, manipulations of publically available data, anonymous sources, conspiracy theories and fabrications. After five years – how much proof and concrete facts have they come up with? None. Nada. Zero. Zilch!

When politics use the news to shape facts, no one wins

And unfortunately, yesterday, a U.S. government agency sent out a directive for federal agencies telling them to stop using our products. I guess the good news is that U.S. government sales have not been a significant part of the company’s activity in North America. So, while unfortunate, we’ll continue to keep our focus on protecting our real customer base, enterprises and consumers.

Why are all these events occurring, you ask?

As I’ve stated numerous times, there is no evidence to confirm these false media reports, because Kaspersky Lab does not have inappropriate ties to any government.

In a way, I’m thankful for such an elaborate, long-term audit that’s found nothing amiss, but if anything is helping to verify my company’s commitment to transparency. As our customers and partners know firsthand, transparency and trust are the foundations of our 20-year-old business, and these guiding principles will never change, regardless of geopolitical tensions or inaccurate media representations.

Geopolitical debates don’t need truth; blame can be assigned by default without any evidence

During recent months, the heat has been cranked up several notches, as Kaspersky Lab became a talking point during U.S. Congressional hearings in which government officials express their concerns about KL’s products. But similar to sensational media reports, there’s a lack of facts or proof to validate any potential concerns, given that we haven’t done anything wrong.

In fact, I’ve repeatedly offered to meet with government officials, testify before the U.S. Congress, provide the company’s source code for an official audit and discuss any other means to help address any questions the U.S. government has about Kaspersky Lab – whatever it takes, I will do it. And I look forward to working with any agency or government officials that are interested.

And while we continue to suffer from these meritless accusations, the U.S. government continues to take actions against our products. These moves have even led to reports of a former national security expert agreeing that Kaspersky is being treated unfairly. In addition, serious concerns have been raised by some of the actions among cybersecurity experts, journalists and analysts as it violates an established transparency and due process for government contractors, breaks the presumption of innocence principle and sets up a very disturbing precedent that fuels national cyber protectionism.

So what exactly is going on? Well, it looks to me like the reason for being shunned (despite our many offers to assist) can only be one thing: geopolitical turbulence.

Whenever there are tensions at the government level, the business is always the one to suffer. But what is there to do when the selected target (my company) happens to provide the best cybersecurity products and cyberthreat research in the world? There is only option left: concentrate on the origin of the given company.

A recent article in the Washington Post sheds some light on the possible prime cause of the situation, which was being considered during the former president’s administration:

Despite a lack of evidence as to the reasons why we’re being targeted, one thing does seem to be crystal clear: we are caught in the middle of a geopolitical fight. And there will never be any evidence to prove these false accusations against us since we’re innocent; but instead you’ll just continue to see a lot of unfounded allegations, conspiracies and theories – which are alarmingly and unfortunately contagious.

As I’ve said before, it’s not popular to be Russian right now in some countries, but we cannot change our roots, and frankly, having these roots do not make us guilty.

Perhaps what’s most unsettling of all is that other cybersecurity companies from other countries may soon be in the same position as us. Geopolitical debates don’t need truth; blame can be assigned by default without any evidence.

Let’s take a look at the even bigger picture — these reckless actions can negatively impact global cybersecurity by limiting competition, slowing down technology innovations and ruining the industry and law enforcement agency cooperation required to catch the bad guys.

For several years, the landscape has become even more treacherous for companies caught in the minefield of geopolitics, and as a result, different businesses have become unwitting pawns in the game of high-level geopolitical chess. Australia bans China, the U.S. bans Russia, Russia bans the U.S., China bans everyone…sometimes I can’t believe my eyes when I read what’s going on in the 21st century. Why are countries ceasing to cooperate in the fight against the common cybercriminal enemy?

Tackling cybercriminals is possible only if we – the good guys – can overcome national boundaries, just as the cybercriminals do. Only joint efforts by law enforcement agencies of different countries can lead to success, and during recent years, thanks to such cooperation many cyber-villains have been put behind bars. That’s why we legally cooperate with cyber-police of different countries, and also international organizations like INTERPOL and Europol. Without cooperation, there won’t be any coordinated actions against cybercrime; consequently, there’s impunity for the cybercriminals and cyberattacks continue to thrive. People, businesses and economies all suffer.

I see how the fragile foundations of international cooperation in cybersecurity are splitting at the seams. Relationships between some countries are being pushed back 15 years. It’s not clear when the seemingly interminable geopolitical storm will pass, or how long it will take to reestablish good working relationships.

Who will win from the Balkanization of the security industry? Yes, that was a rhetorical question.

In any situation, it’s possible to find the positive. Thanks to this long-winded geopolitical storm, we’ve become more transparent than any other cybersecurity company in the industry. We’ve rallied around our company cause like never before, and our employees continue to stand with their heads held high knowing we will prevail in the end.

Despite the challenges, we continue to protect our users around the globe from any cyberthreat there is, regardless of its origin or intention. Now let me get back to work – there’s always much to do when saving the world from cyberthreats.

Politics is a dirty sport, sad to see it shape #cybersecurity. @e_kaspersky comments on recent DHS directiveTweet

Separating The Facts From The Assumptions.

[originally published at Forbes]

I was both astonished and, more so, frustrated by the recent op-ed by U.S. Senator Jeanne Shaheen in the NYT. It is not only damaging the reputation and livelihood of the 300-plus Kaspersky Lab employees in the United States, but also detracting from valid concerns about the ability of different nations to engage in cyberespionage and to direct digitally enabled attacks against critical infrastructure.

But I won’t argue almost every point in the piece here; you can see our post in which we explain how the ‘facts’ in it are anything but accurate.

I want to tell you another story here. A story of our interconnected world  – where geopolitical fears are not driving trade wars or aggressive protectionism. In this world, we have the opportunity to choose not just American, Russian, Chinese or Japanese – we can choose the best. Or the worst. Or proudly choose domestic. But we have the right to choose. And that is a cornerstone of modern democratic society – freedom of choice. And it’s a cornerstone of U.S. economic dominance. Customers all around the world can choose the best operating systems, the best smartphones, and the best software. And almost always, it’s an American product. And people choose it not because of its origin or because the government told them to, but because they want to. Look at the top-10 largest companies based on market value. Eight are American, two Chinese. Do you think they’d be doing so well if governments around the world banned them?

Are we now banning companies based on its origin? Is it really the path we go on now? Imagine just how easy it is for any other country to exclude, for example, Microsoft, Oracle, SAP, Hitachi from governmental contracts based on allegations and speculations, without evidence saying “They’re a potential threat…; we’re very concerned about them [foreign software developers] and the security of our country!”

Also, information security is a different challenge all together. To be the most effective, the cybersecurity community needs to work side-by-side with industries and governments to actively fight cybercriminals and cyberterrorists. Given that these attackers don’t respect geopolitical borders, working together, versus isolation, is the key to making significant steps in the fight against cyberattacks. Unfortunately, misinformation and inaccurate perceptions are driving forward a dangerous agenda that may impact global cybersecurity, as origin may start dictating what technology is used instead of being able to choose the best solutions and experts available.

Internet balkanization is already here. More and more countries developing protectionist legislation making it harder and harder for global companies to cooperate and share data. Trust between countries, companies and customers is corrupted. CEOs of well-known companies warn against such policies. “The biggest barriers I think that we see are not around engineering. It is around regulation. It is around protectionism. It is around trust, or lack thereof. It’s around policies and procedures,” says Xerox Chairman and CEO Ursula Burns. Apple CEO Tim Cook also praised globalization as generally “great for the world” and cautioned against isolationism.

No less important is the fact that the main beneficiaries of internet balkanization are cybercriminals. “US citizens lost over two billion personal records…over 100 million Americans had their medical records stolen,” according to Steve Langan, chief executive at Hiscox Insurance. Moreover, we are ready to support U.S. law enforcement agencies in the fight against cybercrime, in particular with the fight against Russian cybercrime. We have many cybersecurity experts based in Russia who are often the first to detect and protect from the threats coming from the cradle of cybercrime. They did it two years ago with Carbanak, one of the biggest cyber gangs in history. They did it earlier this year when we announced our research on Lazarus, the North Korean hacking group attacking many victims around the world, including Sony Pictures. We want to help, but unfortunately the current geopolitical turbulence and recent allegations do not help us in protecting America.

Are we returning to the days of McCarthyism? When did it become OK to declare a company is guilty without one shred of public evidence? In addition, while the U.S. has talented cybersecurity experts, smart people, who are dedicated to fighting cybercriminals, are born and educated all around the world. If the most sophisticated cyber threats are coming from countries outside of the U.S., don’t you think using cyberthreat data and technologies from experts located in those countries might be the most effective at protecting your valuable data, especially given that they are fighting against those local threat actors every day?

It is time to separate geopolitics from cybersecurity. We need to work together globally. Kaspersky Lab has good relationships and regularly helps law enforcement agencies all over the world fight cybercrime, and we hope the U.S. will also consider learning more about us, and who we truly are, versus the rhetoric and false assumptions. We’re ready to demonstrate that we have nothing to hide, and that we only want to help defeat cybercriminals and prevent cyberattacks.

With that said, I previously offered to meet with Senators, Representatives, Committees, and federal agencies, publicly or privately, to answer any questions regarding my company or me. The offer still stands.

Enter your email address to subscribe to this blog
(Required)

Sayan and Yenisei: Fun and frolics.

One of the most fascinating places along our Upper Yenisei adventure was where the Baliktik-Hem and Kizil-Hem rivers merge. It’s here where the ‘Yenisei’ is first mentioned on the maps (when viewing the rivers going down from the mountains); specifically, that first mention is Maliy Yenisei (Little Yenisei).

Round that corner is the Kizil-Hem, which starts out as a small stream in Mongolia!

Read on: Extreme tourists…

Sayan and Yenisei: the rapids.

Rafting on Balyktyg-Khem and Ka-Khem (aka the Little Yenisei) was pretty chilled – there were no particularly dangerous rapids to speak of. The plan of action was simple: keep paddling along the main part of the river, keep clear of rocks and immediately obey the captain’s orders. The instruction that our crew performed fastest was “Stop!”.

There were only a few rapids, probably five. Apart from that there were sand bars with light riffles, fast sections, two or three standstill sections. For rafters, standstills are an inconvenience – you have to paddle! Thankfully, we always had the wind at our backs, or there was no wind at all.

Read on: Unexpected pitstop…

Reaching the Upper Reaches of Yenisei.

So, just how exactly did we get to the upper reaches of the Yenisei?

Well, obviously, we didn’t walk. It involved various means of transport. First, we drove 400 km from Abakan to Kyzyl. The quality of the road was bearable – it is asphalt all the way, though there were lots of roadworks. Next year it should be in better shape. It took us 6-7 hours because of the repairs, detours and time spent waiting at traffic lights giving way to oncoming traffic on the single-lane sections.

But we finally made it to the city of Kyzyl, the capital of Tuva:

However, this is where things took an unexpected turn for the worse.

Read on: A marvelous artefact next to the airport…

Yenisei: You say ‘eh?’ I say ‘wey hey!’

The Yenisei River. Many of you won’t have even heard of it. But that doesn’t make it any less of a mega river: starting out in Mongolia (!), it’s the main river of three great Siberian ones, and the world’s largest river system flowing into the Arctic Ocean. Anyway; introductions over – we headed its way after our Tian Shan adventure

…And not long after we reached it, sure enough – we were heading down its rapids in rafts.

Now for a bit of geography…

Read on: Now for a bit of geography…

Farewell Tian Shan. Thank you ma’am.

No chronicle of our Tian Shan adventure would be complete without mentioning the travel agencies we used for the trip: 7 Summits Club and Ak-Sai Travel. All the hands-on fieldwork was undertaken by the latter: they met us there, ferried us about in the 4x4s, flew us in the helicopter, and were our guides on all the trekking and clambering and camping. Here’s Ak-Sai’s Ilya at the front with a ‘don’t get lost!’ flag – just like guides have when showing tourists in most any tourist attraction around the world (ok, not necessarily a flag; these days it’s more likely to be a selfie-stick or some such).

I’ve already told you about the camps we stayed at on our expedition, and how they fairly amazed me by their relative comfort in such harsh surroundings, so I won’t go over those again (but a restaurant tent with chairs and a big dining table, minibar, mini-shops, and other modern conveniences will never be forgotten!).

Read on: Occasionally things seemed to get a bit mixed up…

The best defense is attack – and that now includes when fighting patent trolls.

Hi folks!

What better way to start the day than with champagne? For that’s just what we should all be pouring ourselves after our latest victory in the ongoing war with patent trolls!

And it’s not just any old victory; it’s truly a landmark one. Indeed, our shooing off Wetro Lan with its tail between its legs will go down in the annals of patent law as a crucial precedent, since no one before has ever secured a victory like we just have: we not only forced the troll to withdraw its lawsuit; we also got it to pay us compensation! Ok, so the compensation was merely symbolic – it covered only a tiny fraction of our costs for defending ourselves – but, well, you know what they say: the first blow is half the battle…

Ok. Here’s how it went down:

Read on: Meanwhile in the rural district of Texas…