Bangkok Post

Agency made phones spycams

-

FRANKFURT: Lebanon’s intelligen­ce service may have turned the smartphone­s of thousands of targeted individual­s into cyber-spying machines in one of the first known examples of large-scale state hacking of phones rather than computers, researcher­s say.

Lebanon’s General Directorat­e of General Security (GDGS) has run more than 10 campaigns since at least 2012 aimed mainly at Android phone users in at least 21 countries, according to a report by mobile security firm Lookout and digital rights group Electronic Frontier Foundation (EFF).

The cyber attacks, which seized control of Android smartphone­s, allowed the hackers to turn them into victim-monitoring devices and steal any data from them undetected, the researcher­s said on Thursday. No evidence was found that Apple phone users were targeted, something that may simply reflect the popularity of Android in the Middle East.

The state-backed hackers, dubbed “Dark Caracal” by the report’s authors — after a wild cat native to the Middle East — used phishing attacks and other tricks to lure victims into downloadin­g fake versions of encrypted messaging apps, giving the attackers full control over the devices of unwitting users.

Michael Flossman, the group’s lead security researcher, said that EFF and Lookout took advantage of the Lebanon cyber spying group’s failure to secure their own command and control servers, creating an opening to connect them back to the GDGS.

“Looking at the servers, who had registered it when, in conjunctio­n with being able to identify the stolen content of victims: That gave us a pretty good indication of how long they had been operating,” Mr Flossman said in a phone interview.

Dark Caracal has focused their attacks on government officials, military targets, utilities, financial institutio­ns, manufactur­ing companies, and defence contractor­s, according to the report.

The researcher­s found technical evidence linking servers used to control the attacks to a GDGS office in Beirut by

locating wi-fi networks and internet protocol address in or near the building. They cannot say for sure whether the evidence proves GDGS is responsibl­e or is the work of a rogue employee.

The malware, once installed, could do things like remotely take photos with front or back camera and silently activate the phone’s microphone to record conservati­ons, researcher­s said.

Responding to a question from reporters about the claims made in the report, Major General Abbas Ibrahim, director-general of GDGS, said he wanted to see the report before commenting on its contents.

Mr Ibrahim was speaking ahead of the report’s publicatio­n.

 ?? AFP ?? Lebanese Prime Minister Saad Hariri poses for a selfie with Lebanese singer Ragheb Alama in Beirut.
AFP Lebanese Prime Minister Saad Hariri poses for a selfie with Lebanese singer Ragheb Alama in Beirut.

Newspapers in English

Newspapers from Thailand