Runa Sandvik is a Norwegian-American[1] computer security expert and founder of Granitt.[2] She is noted for her extensive work in protecting at-risk civil society groups, including human rights defenders, lawyers, and journalists.[3] Sandvik was previously the Senior Director of Information Security at The New York Times, helping launch the company’s confidential tips page in December 2016.[4]
Runa Sandvik | |
---|---|
Born | 1987 (age 36–37) Oslo, Norway |
Occupation(s) | Computer security expert, founder |
Spouse | Michael Auger |
Career
editSandvik was an early developer of the Tor anonymity network, a cooperative facility that helps individuals obfuscate the Internet Protocol information they are using to access the Internet.[5] Sandvik is a technical advisor to the Freedom of the Press Foundation and serves on the review board of Black Hat Europe.[5] Sandvik interviewed Edward Snowden in May 2014.[6] In February 2015 Sandvik documented her efforts to retrieve information about herself through Freedom of Information Act requests.[7] Sandvik led efforts to make The New York Times a Tor Onion service, allowing Times employees and readers to access the newspaper's site in ways that impede intrusive government monitoring.[8]
Hacking of smart rifles
editSandvik, and her husband, Michael Auger, demonstrated how smart rifles with remote access can be remotely hacked.[9] The $13,000 TrackingPoint sniper rifle is equipped with an embedded linux computer.[10] According to Wired magazine, when used according to its specifications, the aiming computer can enable a novice to hit remote targets that would otherwise require a skilled marksman. However the manufacturers designed the aiming computer with WiFi capabilities, so the shooter could upload video of their shots. Sandvik and Auger found they could initiate a Unix shell command line interpreter, and use it to alter parameters the aiming computer relies on, so that it will always miss its targets. They found that a knowledgeable hacker could use the shell to acquire root access. Acquiring root access allowed an interloper to erase all the aiming computer's software—"bricking" the aiming computer.
Personal life
editShe acquired her first computer when she was fifteen years old.[11] She studied computer science at the Norwegian University of Science and Technology.[6] In 2014 Sandvik married Michael Auger, and the pair made their home in Washington, D.C.[12]
References
edit- ^ "Runa Sandvik". Twitter. 22 June 2022. Retrieved 2023-09-14.
- ^ Whittaker, Zack (2022-07-15). "Runa Sandvik's new startup Granitt secures at-risk people from hackers and nation states". TechCrunch. Retrieved 2023-09-14.
- ^ Crowell, Maddy. "The Hacker". Columbia Journalism Review. Retrieved 2023-09-14.
- ^ Hiltner, Stephen (2017-03-03). "How to Tell a Secret in the Digital Age". The New York Times. ISSN 0362-4331. Retrieved 2023-09-14.
- ^ a b
"Runa Sandvik". Corporate Learning Hub. Retrieved 2018-07-27.
She is a former developer with The Tor Project, a technical advisor to the Freedom of the Press Foundation and a member of the review board for Black Hat Europe.
- ^ a b Glenn Slydal Johansen (2016-03-08). "Norske Runa Sandvik skal jobbe med sikkerhet i New York Times" [Norwegian Runa Sandvik is going to work for safety in the New York Times]. Journalisten (in Norwegian). Retrieved 2018-07-27.
- ^
Runa Sandvik (2015-02-26). "How I requested my photographs from the Department of Homeland Security". Medium magazine. Retrieved 2018-07-27.
In response to a Freedom of Information Act request I filed in November 2014, the Department of Homeland Security released a document containing information collected about me under this program over the last four years.
- ^ Runa Sandvik (2017-10-27). "The New York Times is Now Available as a Tor Onion Service". The New York Times. Retrieved 2018-07-27.
- ^
Joseph Cox (2017-03-27). "Hacker Runa Sandvik Went From Hijacking a Smart Rifle to Securing The NYT". Vice motherboard. Retrieved 2018-07-27.
Sandvik has helped the Times launch a new series of tip-lines, where potential sources can leak documents or information securely. The Times now has a public-facing Signal and WhatsApp number, as well as a SecureDrop instance.
- ^
Andy Greenberg (2017-07-29). "Hackers Can Disable a Sniper Rifle—Or Change Its Target". Wired magazine. Retrieved 2018-07-27.
The married hacker couple have developed a set of techniques that could allow an attacker to compromise the rifle via its Wi-Fi connection and exploit vulnerabilities in its software.
- ^
"This Former Hacker Now Helps The Times Stay Safe Online". The New York Times. 2018-07-24. Retrieved 2018-07-27.
Outside The Times, she is well regarded in the information security community, Mr. McKinley said. She frequently attends conferences, speaks at events and hosts CryptoParties, or events that aim to educate people about digital security in an accessible way (two weeks ago, she co-hosted a Times-sponsored CryptoParty). Her friends see her as a tough stalwart of a male-dominated industry.
- ^ "Går det virkelig an å hacke en rifle?" [There is war in cyberspace. Hacker Runa Sandvik fits The New York Times]. Aftenposten (in Norwegian). 2016-10-06. Retrieved 2018-07-28.