Spy services seeking access to Angela Merkel’s medical file, reports claim

Angela MerkelForeign intelligence agencies are allegedly trying to acquire the medical file of German Chancellor Angela Merkel after she was seen trembling uncontrollably in public twice in as many weeks. Reports about foreign spy interest in Merkel’s health emerged in German and British newspapers last weekend, after the German chancellor was seen trembling during high-level meetings earlier this month. The first incident took place during an official meeting with Ukrainian President Volodymyr Zelensky on June 18. The German Chancellery said Merkel had suffered from dehydration and “felt like herself again after drinking a few cups of water”. But the tremors were back again on June 27 during the German leader’s visit to Japan for the G20 Summit. Reports stated that the chancellor was seen “clutching her arms in a failed attempt to prevent herself shaking” during the ceremonial part of the proceedings. At a press conference afterwards, Merkel told reporters that the trembling had been caused by “psychological stress” and that she was convinced it would “disappear just like it appeared”. But she avoided answering questions about whether she had sought medical attention about the trembling.

On June 30, British newspaper The Sunday Times said that foreign spies were showing interest in finding out Merkel’s medical state. The paper added that “one Western intelligence agency believed that the German leader was suffering from a ‘neurological problem’”, but did not specify the agency or the alleged condition. Two days earlier, on June 28, the German tabloid Bild claimed that foreign intelligence agencies had been detected attempting to gain access to the German leader’s private medical file. The paper said that foreign governments in Europe and beyond were suspicious of Merkel’s health state following her refusal to speak openly about it to the media. Several intelligence agencies were therefore “trying to get their hands on Merkel’s medical records” in an attempt to verify whether her trembling was caused by stress and dehydration, or whether it may denote a deeper neurological cause, it said. The paper added that the German leader’s medical records were kept “in a secure military facility” somewhere in Germany.

There has been intense speculation in the German media in the past four days about whether Chancellor Merkel will be able to stay in power until the end of her final term as leader of the country. In October 2018, the German leader announced that she would not seek reelection as Chancellor once her current term expires in 2021. She is scheduled to be replaced by Annegret Kramp-Karrenbauer, who last year also replaced her as leader of the Christian Democratic Union Party.

Author: Joseph Fitsanakis | Date: 01 July 2019 | Permalink

Western spies used ‘crown jewel’ of espionage tools to hack into Russia’s Google

Yandex RussiaHackers used a malware described by experts as the “crown jewel” of cyber-espionage tools to hack into Russia’s version of Google, in an effort to breach user accounts, according to the Reuters news agency. The hackers targeted Yandex (Яндекс), a Moscow-headquartered company that operates as the Russian version of Google. Yandex is the largest technology venture company in the Russian Federation and the fifth most popular search engine in the world. It also provides services such as mapping and email in Russia and several other countries in Central Asia and the Middle East. It claims that it serves more than 150 million monthly users worldwide.

On Thursday, Reuters cited “four people with knowledge on the matter […] in Russia and elsewhere”, who said that Yandex was targeted by a sophisticated hacking operation between October and November of 2018. The news agency said that three of its sources had direct knowledge of the details of the cyber-espionage operation against Yandex. According to the unnamed sources, the hackers appeared to be primarily interested in breaching the accounts of specific employees in Yandex’s research and development unit. Their purpose was to acquire technical information about how Yandex authenticates user accounts. That information could potentially enable them to impersonate Yandex users and access private information, including email messages, geolocation information, and other sensitive private data. Reuters said that the hackers attempted to breach Yandex for purposes of espionage, not sabotage or disruption, or stealing intellectual property for commercial purposes.

Moreover, the hackers used Regin, a highly sophisticated malware that a technical expert from the Symantec Corporation described as “the crown jewel of attack frameworks used for espionage”. Regin was identified as a malware employed by intelligence services of the so-called Five Eyes intelligence alliance between spy agencies of the United Kingdom, Canada, New Zealand, Australia and the United States. It was identified as a Western cyber-espionage tool in 2014, based on revelations made by Edward Snowden, the American former employee of the National Security Agency and the Central Intelligence Agency who defected to Russia. The same malware was used in 2013 to access about a dozen mainframe computers of Belgacom, Belgium’s largest telecommunications service provider, which is partly state-owned. The attack was widely attributed to a consortium of Western intelligence services led by the NSA.

According to Reuters, the hackers were able to penetrate Yandex’s networks for several weeks or longer, without being noticed by the company’s cyber-security monitors. When the penetration was detected, Yandex hired a cyber-security team from the Russian anti-virus firm Kaspersky. The Kaspersky team identified Regin and, according to Reuters, concluded that the hackers behind the cyber-espionage operation were tied to Western intelligence agencies. Kaspersky, the Russian government, and intelligence agencies from the Five Eyes alliance declined requests by Reuters to comment on the story. Yandex confirmed the cyber-espionage attack in a statement to Reuters, but said that its cyber-security experts had been able to detect and “fully neutralize [it] before any damage was done”. Consequently, said Yandex, “no user data was compromised in the attack”.

Author: Joseph Fitsanakis | Date: 28 June 2019 | Permalink

ISIS could make bigger comeback than 2014 in Iraq and Syria, warns new report

ISIS meetingThe Islamic State is capable of make a sudden comeback in the Middle East that could be “faster and even more devastating” than 2014, when the group quickly conquered territory the size of Britain, according to a new report from the Institute for the Study of War (ISW). The Washington-based think-tank’s report is based on the most recent data about the presence in the Middle East of the militant Islamist group, which is also known as the Islamic State of Iraq and Syria. The 76-page report (.pdf) is titled ISIS’s Second Comeback: Assessing the Next ISIS Insurgency, and is written by ISW’s researchers Jennifer Cafarella, Brandon Wallace and Jason Zhou.

The authors claim that the Islamic State moved its forces undercover during the multinational military campaign that eventually sacked its self-proclaimed caliphate. They go on to explain that by “deliberately withdrawing and relocating may of its fighters and their families”, the group managed to preserve a large part of its fighting forces, which are “now dispersed across [Iraq and Syria] and are waging a capable insurgency”. The latter is funded through ISIS’ global finance network and armed with weapons and other war materiel that the group managed to hide in tunnel systems and other hidden facilities. Islamic State insurgents have thus been engaged in a broad and largely successful campaign to assassinate village and town elders across Iraq, and have even reestablished a sharia-based taxation system in some of Iraq’s predominantly Sunni areas. The group also retains a significant presence in Syria, where it continues to battle the Syrian regime, US-supported Kurdish forces, and other Sunni militant groups, including al-Qaeda, according to the report.

Through its widening insurgency, the Islamic State has managed to subvert Iraqi and Syrian government efforts to reintroduce a semblance of stability and safety in areas previously conquered by the militant group. In fact, not only are government forces finding it “increasingly difficult to establish durable and legitimate security and political structures” in those areas, but they should be worried about the possibility of ISIS actually reconquering territory in both countries, the report warns. The report’s authors place much of the blame for ISIS’ resurgence at Washington’s door, describing America’s hasty military withdrawal from Iraq and Syria as “a critical mistake”. In its recommendations section, the report calls on the United States to develop and implement a long-term counter-terrorism strategy against ISIS, which will combine military and community-building measures. “Another limited [military] intervention will not be sufficient” to eliminate the threat, the report’s authors claim.

Author: Joseph Fitsanakis | Date: 27 June 2019 | Permalink

Sister of N. Korean leader promoted to #2 position, says S. Korean spy agency

Kim Yo-jongThe younger sister of North Korea’s Supreme Leader Kim Jong-un appears to have been promoted to the number two position in the country’s ruling apparatus, according to a South Korean intelligence assessment. Until recently, Kim Yo-jong (pictured), 30, was Director of the Propaganda and Agitation Department of the ruling Workers’ Party of Korea (WPK). She also served as an alternate member of the Political Bureau, which is the highest decision-making body within the WPK.

Recently, however, she was spotted attending public festivities in Pyongyang, sitting in a prominent position next to General Kim Yong-chol, vice chairman of the WPK’s Central Committee. The festivities, which were televised nationwide, were held on the occasion of the Chinese President Xi Jinping’s visit to North Korea. The seating of North Korean officials in such high-profile events is carefully arranged to reflect their precise status within North Korea’s governing structure. Kim’s seating placement may signify a major government reshuffle, through which she has been elevated to one of the two or three most powerful posts in North Korea.

This assessment was delivered to South Korean lawmakers on Tuesday in a closed-door presentation by the National Intelligence Service (NIS), South Korea’s primary external spy agency. A summary of the presentation was shared with the media by Lee Hye-hoon, chairman of the Intelligence Committee at the South Korean National Assembly. According to Lee, the NIS’s assessment was that Kim’s authority appeared to be “enhanced due to an adjustment of roles” and that she seemed to have been promoted to the leader level”.

At the same time, the leadership status of North Korea’s other high-profile female official, Kim Song-hye, appears to have diminished. As intelNews reported earlier this month, there were rumors in Seoul that the North Korean nuclear negotiator had been stripped of her government post and sent to a labor camp. She was reportedly charged with having been “swayed by American imperialists to betray the Supreme Leader”. However, she reappeared on June 9, when she was seen attending a mass gymnastics ceremony in the North Korean capital. However, her public role appears notably muted in recent weeks.

Author: Joseph Fitsanakis | Date: 26 June 2019 | Permalink

Iran announces arrest of 16 oil ministry officials for spying for CIA

Iran Petroleum Oil MinistryIranian state media announced on Sunday the arrest of 16 officials in the country’s Ministry of Petroleum, allegedly for sabotaging Iranian energy policy. It is not known whether these arrests are in any way connected with Tehran’s announcement last week that it had dismantled “one of the most complicated” espionage operations by the United States Central Intelligence Agency in several countries. According to the state-owned Fars News Agency, the 16 officials were arrested over the weekend in synchronized pre-dawn raids. All of them had managerial positions in Iran’s oil industry —including in the areas of exploration, production and distribution of Iran’s oil and petrochemical products inside the country as well as abroad.

The report about the latest arrests cited Hossein Ali Haji Deligani, a senior legislator representing the most conservative political wing in the Iranian parliament. Deligani said that the ministry employees “operated under a woman”, whom he did not name. Working in concert, the employees had been “able to influence […] the oil ministry to put off important decisions” and to “make wrong decisions”. These decisions were “in line with the enemies’ goals and against Iran’s national interest”, and ultimately delivered “a blow to the country in the United States economic war against Iran”, said Deligani. He did not elaborate on the topic and did not discuss whether the arrests were linked to the dismantling of an alleged CIA cyber espionage operation, which Iran announced last week.

Sunday’s announcement by the Fars News Agency comes two days after the execution of Jalal Haji Zavar, an employee of Iran’s Aerospace Industries Organization, which operates under the Iranian a unit of the Ministry of Defense. Zavar was executed on Friday after a military court found him guilty of having committed espionage against Iran on behalf of the CIA. Media reports said that unspecified incriminating documents and “spying equipment” were found in Zavar’s home.

Author: Joseph Fitsanakis | Date: 25 June 2019 | Permalink

No evidence Islamic State had foreknowledge of Sri Lanka bombings, says official

Sri Lanka Easter bombingsIt is not at all clear that the Islamic State and its leader, Abu Bakr al-Baghdadi, who claimed responsibility of the Sri Lanka bombings in April, had foreknowledge of the attacks, according to a top official. The militant Sunni group claimed it was behind the nine suicide blasts that targeted Catholic churches and five-star hotels in Sri Lanka’s western and eastern coastal regions on April 21. The near-simultaneous bombings killed 258 people and injured over 500. They are believed to constitute the bloodiest terrorist attack in the country’s history. Interestingly, many questioned the authenticity of the Islamic State’s claim of responsibility, which came a full two days following the deadly blasts. The group typically issues statements immediately following attacks by its followers around the world. The 48-hour delay in the case of the Sri Lanka bombings, therefore, was deemed “uncharacteristic” by some experts.

Now The Hindu, India’s most-circulated English-language daily, has claimed that the Islamic State probably became aware of the Sri Lanka attacks after they happened. The Islamic State’s news agency, Amaq, issued a statement of responsibility, accompanied by a video showing the suicide bombers pledging allegiance to al-Baghdadi. But The Hindu has quoted “a senior official […] familiar with the probe” into the attacks, who claims that the militant group was contacted by its followers in Sri Lanka only after the attacks made international news headlines. A local Salafi jihadist communicated with the Islamic State on behalf of the National Thowheeth Jama’ath (NTJ), the local group that carried out the bombings. The Islamic State then secured the video of the suicide bombers “through a third party”, said the senior official. Sri Lankan Salafi jihadists eventually convinced the militant group to issue a statement endorsing the attacks in order to “honor those who sacrificed their lives” for the Islamic State’s cause, said the source. It follows, said the official, that the local suicide bombers “were all sympathizers of the Islamic State. But it remains unclear how they maintained links with the Islamic State, if in fact they did”, he added.

The deadly attacks continue to dominate the headlines in Sri Lanka, despite the passage of more than two months since they occurred. Three separate investigations have been launched by the government —one by former Supreme Court judges appointed by the president; one by the Sri Lankan parliament; and one by the country’s police and security services. None of these probes have uncovered evidence that the NTJ militants were in contact with the Islamic State before they launched their wave of suicide attacks on April 21, said The Hindu.

Author: Joseph Fitsanakis | Date: 24 June 2019 | Permalink

Israeli officials announce arrest of alleged deep-cover spy for Iran

Thaer Sha'afutIsraeli authorities announced on Thursday the arrest of a deep-cover intelligence operative who allegedly attempted to establish a base for Iranian intelligence in Israel and the West Bank, according to news reports from Israel. Shin Bet, Israel’s domestic security and counterintelligence agency, said it arrested Thaer Sha’afut (pictured), a Jordanian national, on espionage charges. The arrest reportedly occurred in April, but was only announced this week. According to Shin Bet officials, Sha’afut was an accredited deep-cover intelligence operative for the Iranian spy services. He was allegedly was commissioned “to carry out missions that were meant to establish a network in Israel and the West Bank, which would be used for covert operations by the Iranians”.

Israeli officials said Sha’afut received instructions from his Iranian handlers to enter Israeli territory between July and August of 2018. After entering Israel, his goal was “to form business ties” in the West Bank and in Israel proper. He planned to do that, said the Shin Bet, by hiring Shiite Muslims to staff a new factory in Jordan and then use the new venture “as an anchor for future Iranian activities in Israel and the West Bank”. These activities included the eventual recruitment of “spies who would help collect intelligence for Iranian interests”, according to court documents. The Shin Bet said that Sha’afut’s handlers were two Arabic-speaking Iranian intelligence officers based in Lebanon and Syria, who went by the names Abu Sadek and Abu Jaffar. They allegedly provided Shafut with “an encrypted communication device”, which he used to arrange clandestine meetings with them throughout 2018 and 2019.

Sha’afut’s Iranian handlers allegedly planned to use him as a conduit for transferring funds to spies in the West Bank and Israel. They had told Sha’afut that Iranian intelligence would make an initial investment of $500,000 in his factory venture in Jordan and to an import-export business, in order to sustain his base of operations, with more funds to follow. Once the factory was set up, Sha’afut was expected to travel clandestinely to Iran in order to complete his training as a deep-cover case officer. Israeli daily Haaretz said on Thursday that Sha’afut was indicted earlier this month by military prosecutors in Jerusalem for “contact with an enemy country, contact with a hostile organization, and conspiracy to funnel money from an enemy entity”.

Author: Joseph Fitsanakis | Date: 21 June 2019 | Permalink

Iran says it dismantled a ‘complicated’ CIA cyber operation in several countries

Ali ShamkhaniA senior Iranian security official said on Monday that Tehran had dismantled “one of the most complicated” espionage operations by the United States Central Intelligence Agency, leading to “arrests and confessions” of suspects in several countries. The announcement was made by Ali Shamkhani (pictured), secretary of the Supreme National Security Council of Iran, the Islamic Republic’s highest security decision-making body, which is chaired by the country’s president.

Speaking in Tehran to reporters from pro-government news agencies, including IRIB and Fars News, Shamkhani said that Iran had “exposed” what he described as a CIA-run cyber espionage network, which carried out “operations in different countries”. He said the alleged espionage network had been detected by Iranian counterintelligence agencies “some time ago and was dismantled”. Iran’s counterintelligence actions had led to the “identification and arrest of CIA intelligence agents”, said Shamkhani, many of whom had been arrested “in different countries”. The arrests occurred after Iran “shared the information about the exposed network with our allies”, said Shamkhani, which led to the “disclosure and dismantling of a network of CIA officers” as well as the “detention and punishment of several spies”. Shamkhani did not specify the number of people arrested, or in which countries, but appeared to refer to both CIA personnel and local assets. He concluded his remarks by saying that Iran was building a regional alliance “to counter American espionage”. He also urged Iran’s Ministry of Intelligence to release “videos and confessions” relating to the arrests.

Meanwhile, Iranian anti-government groups based abroad alleged on Monday that a senior official in the Islamic Revolutionary Guard Corps was arrested in Tehran for allegedly working for Israel. The unidentified individual is believed to have helped Israel’s Mossad intelligence agency gain access to the archive of the Iranian nuclear program in 2018, and steal an unspecified number of classified documents. It is not known whether this alleged arrest is connected with Shamkhani’s announcement on Monday.

Author: Joseph Fitsanakis | Date: 18 June 2019 | Permalink

Trump says US will not use spies on North Korea, then appears to retract statement

Trump CIA - JFUnited States President Donald Trump said on Tuesday that he would not allow American intelligence agencies to use spies against North Korea, raising eyebrows in Washington, before appearing to backtrack a day later. The American president was speaking to reporters at the White House on Tuesday, when he was asked about a report that appeared in The Wall Street Journal that day. According to the report, Kim Jong-nam, the half-brother of North Korean leader Kim Jong-un, held regular meetings with officers of the US Central Intelligence Agency before he was assassinated with VX nerve gas at a busy airport terminal in Malaysia in February 2017. The Wall Street Journal’s claim was echoed by a book written by Washington Post correspondent Anna Fifield, which also came out on Tuesday. In the book, entitled The Great Successor, Fifield claims that Kim had traveled to Malaysia to meet his CIA handler when he was killed.

On Tuesday, President Trump said he had seen “the information about the CIA, with respect to [North Korean Supreme Leader Kim Jong-un’s] half-brother. And I would tell [Kim] that would not happen under my auspices, that’s for sure”, said the US president, before repeating, “I wouldn’t let that happen under my auspices”. Reporters interpreted Trump’s comments to mean that he would not use human assets or any other kinds of informants to collect intelligence on the regime of the North Korean leader. As can be expected, the US president’s remarks raised eyebrows among lawmakers and national security experts in Washington. It was suggested that Trump appeared to voluntarily eliminate a potentially invaluable tool of intelligence collection from America’s arsenal. The president’s comments were even more peculiar given the hermetically sealed nature of the North Korean regime, which Western spy agencies would argue necessitates the use of human assets for intelligence collection. Moreover, President Trump’s comments appeared to once again place him at odds with his own Intelligence Community, as previously in the cases of Iran’s nuclear program, the current status of the Islamic State, or Russia’s meddling in American political life.

On Wednesday, however, the US president appeared to backtrack on his comments. When asked at a joint press conference with Polish President Andrzej Duda about his earlier remarks, Trump denied that he had implied the US would not use spies to collect information on North Korea. “No, it’s not what I meant”, the president responded to the reporter who asked him the question. “It’s what I said and I think it’s different, maybe, than your interpretation”, said President Trump, but refused to elaborate on what he actually meant with his statement on Tuesday. The Reuters news agency contacted the CIA seeking an official statement on the US president’s remarks, but the agency said it had no immediate comment on the issue.

Author: Joseph Fitsanakis | Date: 13 June 2019 | Permalink

North Korean leader’s half-brother worked with CIA before his death, paper claims

Kim Jong-nam murderKim Jong-nam, the half-brother of North Korean leader Kim Jong-un, held regular meetings with American intelligence officers before he was assassinated with VX nerve gas at a busy airport terminal in Malaysia. Two women approached Kim Jong-nam as he was waiting to board a plane at the Kuala Lumpur International Airport on February 13, 2017. The estranged half-brother of the North Korean leader was about to travel to the semi-autonomous Chinese territory of Macau, where he had been living in self-exile since 2007. Soon after his encounter with the two women, Kim collapsed and eventually died from symptoms associated with VX nerve agent inhalation.

But a new book published on Tuesday by a Washington Post reporter, and an article that came out in The Wall Street Journal on the same day, allege that Kim Jong-nam was working with the United States Central Intelligence Agency and was in fact in Malaysia to meet with his American spy hander when he was killed. The Wall Street Journal article said that many details of Kim Jong-nam’s precise relationship with the CIA remain “unclear”. It is doubtful that the late half-brother of the North Korean leader had much of a powerbase in the land of his birth, where few people even knew who he was. So his usefulness in providing the CIA with crucial details about the inner workings of the North Korean regime would have been limited. However, the paper quoted “a person knowledgeable about the matter” as saying that “there was a nexus” between the CIA and Kim. The article also alleges that Kim met with CIA case officers “on multiple occasions”, including during his fateful trip to Malaysia in February of 2017.

In her just-published book The Great Successor, Anna Fifield, a correspondent with The Washington Post, claims that Kim spent a number of days on the island of Langkawi, a well-known resort destination in Malaysia. Security footage at his hotel showed him meeting with “an Asian-looking man [Korean-American, according to The Wall Street Journal] who was reported to be an American intelligence [officer]”. It was one of regular trips Kim took to places like Singapore and Malaysia to meet his spy handlers, according to Fifield, who cites “someone with knowledge of the intelligence”. She adds that, although meeting with this CIA handler may not have necessarily been the sole purpose of Kim’s fateful trip to Malaysia, it was certainly a major reason. Fifield alleges that the backpack Kim was carrying when he was killed at the Kuala Lumpur International Airport was found to contain $120,000 in cash. The Wall Street Journal claims that, in addition to meeting with the CIA, Kim held regular meetings with spy agencies of other countries, including China.

Meanwhile, two South Korean government agencies, the National Intelligence Service and the Ministry of Reunification, said on Tuesday that they were unable to confirm that Kim was indeed an asset of the CIA or any other intelligence agency. They also said that they could not confirm whether Kim had traveled to Malaysia to meet with a CIA case officer at the time of his assassination.

Author: Joseph Fitsanakis | Date: 12 June 2019 | Permalink

ISIS in Afghanistan is now more dangerous than the Taliban, say experts

ISIS Islamic State AfghanistanThe Islamic State group in Afghanistan is now more threatening than the Taliban to both Afghan and Western interests, according to some experts, who warn that many of its fighters are moving there from the Middle East. It was in late 2014 when the Islamic State, known formerly as the Islamic State of Iraq and Syria (ISIS), made its initial appearance in Afghanistan. Soon an official Islamic State affiliate emerged in Afghanistan, calling itself Islamic State – Khorasan Province. Security observers estimated the group’s strength to below 150 armed fighters, most of them Pakistani Taliban who had sought refuge in Afghanistan, or small cadres of Afghan Taliban who pursued a more globalized Salafist agenda. Aided by the growing worldwide notoriety of its parent organization in Iraq and Syria, the Islamic State – Khorasan Province grew in size in 2015 and 2016. Its armed cadres were joined by Salafist-jihadists from Central Asia and the Indian subcontinent, as well as by radical Muslims from China’s northwestern Xinjiang Province. In 2016, as the Islamic State began retreating in the Middle East, fighters from there gradually began to make their way to Afghanistan, adding to the numerical strength of the organization’s Khorasan Province branch.

Today, the strength of the Islamic State in Afghanistan is concentrated in four northeastern Afghan provinces, Nuristan, Nangarhar, Kunar and Laghman. Nearly all of these provinces border Pakistan and none are far from the Afghan capital Kabul. According to the Associated Press’ Kathy Gannon, who wrote an extensive article about the current state of the Islamic State in Afghanistan, the primary military goal of the group’s Khorasan Province branch is to expand its territory. Some believe that the Islamic State aspires to one day conquer Jalalabad, a city of nearly 400,000 residents that serves as the administrative center of Nangarhar Province. This aspiration is not delusional; Gannon cites an unnamed US intelligence official who insists that the Islamic State is now a more deadly threat than the Taliban to Afghan and Western security. Islamic State fighters are acquiring increasingly sophisticated military hardware, which enables them to broaden their tactical capabilities. Additionally, unlike the Taliban, who largely follow a policy of limiting their attacks on government and military targets, the Islamic State appears to be deliberately targeting civilians. What is more, security experts see these attacks as “practice runs for even bigger attacks in Europe and the US”. In other words, the Islamic State – Khorasan Province is actively using its Afghan base to plan “external attacks in the US and Europe [and] it’s just a matter of time” before these occur, says a US intelligence official.

According to Gannon, the growth of the Islamic State in Afghanistan is so alarming that some security experts are beginning to see the Taliban as a potential partner of the West in containing the danger. One expert says that the Taliban remain bigger and stronger than the Islamic State, and their fighters “know the terrain [and] territory” of northeastern Afghanistan. Furthermore, the Islamic State has declared war on the Taliban and the two groups are active adversaries in the region. Gannon claims that Russia would not be opposed to the idea of utilizing the Taliban to fight off the Islamic State. As intelNews reported last month, Russia’s Federal Security Service warned that thousands of Islamic State fighters were operating in Afghanistan’s northern border regions and were attempting to destabilize former Soviet Republics with substantial Muslim populations.

Author: Joseph Fitsanakis | Date: 11 June 2019 | Permalink

Turkish spy agency develops phone app to help ex-pats inform on dissidents

BfV GermanyTurkey’s spy agency has developed a smart phone application to enable pro-government Turks living in Germany inform on their compatriots who speak out against the ruling Justice and Development Party (AKP). The existence of the phone application was revealed in the annual report of the Federal Office for the Protection of the Constitution (BfV), Germany’s primary counterintelligence agency. The report covers terrorist and foreign intelligence activity that took place in 2018 in Baden-Württemberg, a state in southwest Germany that borders Switzerland and France. Deutsche Welle, Germany’s state broadcaster, which cited the BfV report, said that 2018 saw a significant increase in intelligence activities by several countries, including China, Russia, Iran and Turkey. Much of the intelligence activity by Turkish spy agencies concentrated on the Turkish expatriate community in Baden-Württemberg. The federal state is home to approximately 15 percent of Germany’s 3-million-strong Turkish population.

According to the BfV report, Turkish intelligence operations in Baden-Württemberg have focused primarily on two groups since 2015. One group consists of supporters of the Kurdistan Workers’ Party (PKK), an armed separatist group that fights for the independence of Turkey’s Kurdish population. A ceasefire between the PKK and the Turkish government collapsed in 2015, leading to the outbreak of a low-intensity war in Turkey’s southeastern regions, which is ongoing. The other group consists of sympathizers of Fethullah Gülen, a Turkish Islamic scholar who is seen by the government of Turkey as the primary instigator of a coup that unsuccessfully tried to unseat the AKP in July 2016. The BfV report also states that pro-government Turks living in Germany are known to use a smart phone application developed by Turkey’s police force, the General Directorate of Security (EGM). The application allegedly enables supporters of the AKP to inform on suspected members of the PKK or followers of Gülen who live in Germany. These individuals are then questioned or even apprehended when they travel to Turkey to visit family members and friends.

The report also names several Turkish pro-AKP organizations that allegedly operate as intelligence collectors for a host of Turkish spy agencies. Among them are civic groups like the Union of International Democrats, or religious organizations like the Turkish-Islamic Union for Religious Affairs. Known as DİTİB, the organization administers the activities of several hundred Turkish Muslim organizations and mosques throughout Germany and is believed to be closely associated with the AKP and Turkish President Recep Tayyip Erdoğan. Several German intelligence officials and reports have claimed in recent years that the DİTİB operates as an intelligence collection arm of the Turkish state in Germany.

Author: Joseph Fitsanakis | Date: 10 June 2019 | Permalink

Despite spying allegations, African Union deepens ties with Chinese telecoms firm

African UnionDespite allegations in the French press that China has been spying for years on the internal communications of the African Union, the organization appears to be deepening its ties with a leading Chinese telecommunications firm. The allegations surfaced in January of last year in the Paris-based Le Monde Afrique newspaper. The paper claimed in a leading article that African Union technical staff found that the computer servers housed in the organization’s headquarters in Addis Ababa, Ethiopia, were secretly communicating with a server facility in Shanghai, China. The secret communications reportedly took place at the same time every night, namely between midnight and 2 in the morning. According to Le Monde Afrique, the African Union servers forwarded data to the servers in Shanghai from 2012, when the building opened its doors, until early 2017.

Beijing donated $200 million toward the project and hired the state-owned China State Construction Engineering Corporation to build the tower, which was completed in 2012. Since then, the impressive 330 feet, 19-storey skyscraper, with its reflective glass and brown stone exterior, has become the most recognizable feature of Addis Ababa’s skyline. The majority of the building material used to construct the tower was brought to Ethiopia from China. Beijing even paid for the cost of the furniture used in the impressive-looking building. The paper noted that, even though the organization was allegedly notified about the breach by its technical staff in January of 2017, there was no public reaction on record. However, according to Le Monde Afrique, African Union officials took immediate steps to terminate the breach. These included replacing the Chinese-made servers with new servers purchased with African Union funds, without Beijing’s mediation. Additionally, new encryption was installed on the servers, and a service contract with Ethio Telecom, Ethiopia’s state-owned telecommunications service provider, which uses Chinese hardware, has been terminated.

Last week, however, the African Union deepened its ties with Huawei Technologies, the Chinese telecommunications firm that provided all the hardware, as well as much of the software, used in the organization’s headquarters. Last week, at a meeting in the Ethiopian capital, Thomas Kwesi Quartey, deputy chair of the African Union’s Commission signed a memorandum of understanding with Philippe Wang, Huawei’s vice president for North Africa. According to the memorandum, Huawei will increase its provision of hardware and services to the African Union “on a range of technologies”. These range from broadband telecommunications to cloud computing, as well as 5G telecommunications capabilities and artificial intelligence systems. The Chinese firm will also continue to train African Union information technology and telecommunications technicians. Both the African Union and the government of China have denied the Le Monde Afrique allegations.

Author: Joseph Fitsanakis | Date: 07 June 2019 | Permalink

Leaked documents show Cuban spies targeted Miami International Airport

Miami International AirportDocuments that were allegedly leaked by a Cuban intelligence insider show that Cuban spies targeted the Miami International Airport (MIA) and may have acquired MIA internal files, passwords and other sensitive information. The documents were published on Monday by CiberCuba, an online news portal that was founded in 2014 by Cuban exiles in Spain. The website said that it was given access to several batches of classified Cuban intelligence files by an “anonymous source”. The files allegedly contain copies of internal emails and email attachments, personnel contracts, financial information, as well as intelligence collected on “persons of interest” to the Cuban government.

The Spain-based website said on Monday that the leaked documents, which it dubbed “CiberCubaleaks”, constitute one of history’s largest and most significant disclosures of internal files of the Cuban Ministry of Interior. In a lading article on Monday, CiberCuba published six documents from the Ministry’s Directorate of Counterintelligence, which are dated between mid-2015 and late 2017. The documents contain information provided by two spies in the United States, codenamed CHARLES and EL GORDO. They contain internal passcodes that can be used to access secure areas at MIA, sensitive records relating to the commercial airlines that use the airport, and descriptions of restricted areas at MIA.

But in a statement made to The Miami Herald, the Director of Aviation for Miami-Dade County, Lester Sola, dismissed the information in the leaked documents as “not credible”. Sola said that the description of MIA documents in the leaded files did not seem accurate and missed some basic clues, such as a correct description of the colors of MIAs security protocols. Consequently, said Sola, “nothing in the [CiberCuba] report poses a credible security threat”. However, his office did not ignore the information and shared it with government agencies; consequently, the Federal Bureau of Investigation was “looking into” the CiberCuba report as of Monday morning, he said.

Author: Joseph Fitsanakis | Date: 04 June 2019 | Permalink

North Korea said to have executed senior nuclear negotiators as ‘spies’

Kim Song-hye Kim Hyok-cholNorth Korea has executed at least five of its senior nuclear negotiators and imprisoned several others, according to a report in a leading South Korean newspaper. Rumors of executions of North Korean nuclear negotiators have circulated in international diplomatic circles since February, but specific allegations have not surfaced in the news media. That changed on Friday, when Chosun Ilbo, South Korea’s highest-circulation newspaper, said that at least five executions of nuclear negotiators took place in Pyongyang in March.

According to the paper, the most senior North Korean official to be executed was Kim Hyok-chol (pictured), who led the nuclear negotiations with Washington until February, when the North Korean Supreme Leader Kim Jong-un met US President Donald Trump in Vietnam. Citing an “anonymous source” Chosun Ilbo said on Friday that Kim was executed by a firing squad at the Pyongyang East Airfield in Mirim, a suburb of the North Korean capital. Four other Ministry of Foreign Affairs officials were executed at the same time, allegedly for having been “swayed by American imperialists to betray the Supreme Leader”, said the newspaper. Two more senior North Korean nuclear negotiators, Kim Yong-chol and Kim Song-hye (also pictured), have been stripped of their government posts and sent to labor camps, according to the report. Until recently, Kim Song-hye headed the Bureau of the Committee for the Peaceful Reunification of the Fatherland, Pyongyahg’s main agency for negotiations with South Korea. Kim Yong-chol was one of several vice-chairs of the ruling Workers’ Party of Korea. He visited Washington with Kim Song-hye for negotiations prior to last February’s high-level summit in Vietnam.

There have been no reports in North Korean media about purges of senior officials or executions of alleged spies. However, the three officials named in the Chosun Ilbo report have not been seen in public in nearly a month. Additionally, last week the official Workers’ Party of Korea newspaper, Rodong Sinmun, published an editorial that condemned “counter-party and counter-revolutionary actions” of government officials who “claim to labor for the Supreme Leader […] but clandestinely harbor other machinations behind the back of the Supreme Leader”. The New York Times reached out to the South Korean and American governments about the Chosun Ilbo report, but no-one would comment on record. If the Chosun Ilbo report is accurate, it would support the view that there is exasperation in Pyongyang about the breakdown of its nuclear negotiations with Washington. It would also signify that Kim has radically reshuffled his team of negotiators, but this does not necessarily denote a change in his negotiating stance.

Author: Joseph Fitsanakis | Date: 03 June 2019 | Permalink