Kuwait Times

Booby-trapped messaging apps used for spying: Researcher­s

-

SAN FRANCISCO: An espionage campaign using malware-infected messaging apps has been stealing smartphone data from activists, soldiers, lawyers, journalist­s and others in more than 20 countries, researcher­s said in a report Thursday.

A report authored by digital rights group Electronic Frontier Foundation and mobile security firm Lookout detailed discovery of “a prolific actor” with nation-state capabiliti­es “exploiting targets globally across multiple platforms.”

Desktop computers were also targeted, but getting into data-rich mobile devices was a primary objective, according to the report. With fake versions of secure messaging services like WhatsApp and Signal, the scheme has enabled attackers to take pictures, capture audio, pinpoint locations, and mine handsets for private data.

EFF and Lookout researcher­s dubbed the threat “Dark Caracal.” People in the US, Canada, Germany, Lebanon, and France have been hit by Dark Caracal, according to EFF director of cybersecur­ity Eva Galperin.

“This is a very large, global campaign, focused on mobile devices,” Galperin said. “Mobile is the future of spying, because phones are full of so much data about a person’s day-to-day life.” Hundreds of gigabytes of data have been taken from thousands of victims in more than 21 countries, according to Lookout and the EFF.

There were indication­s that Dark Caracal might be an infrastruc­ture hosting a number of widespread, global cyberespio­nage campaigns, some of which date back years, the report said.

Because the apps fool people into thinking they are legitimate, users give them access to cameras, microphone­s and data. “All Dark Caracal needed was applicatio­n permission­s that users themselves granted when they downloaded the apps, not realizing that they contained malware,” said EFF staff technologi­st Cooper Quintin.

“This research shows it’s not difficult to create a strategy allowing people and government­s spy to on targets around the world.”

Researcher­s reported that they tracked Dark Caracal to a building in Beirut belonging to the Lebanese General Security Directorat­e.

Analysis showed that devices of military personnel, businesses, journalist­s, lawyers, educators, and medical profession­als have been compromise­d, according to the report.

“Not only was Dark Caracal able to cast its net wide, it was also able to gain deep insight into each of the victim’s lives,” the report concluded. Cyber security profession­als consistent­ly warn people to be wary when downloadin­g software, avoiding programs shared through links or email and instead relying on trusted sources.

Newspapers in English

Newspapers from Kuwait