Apple, Android phones targeted by Italian spyware, says Google



SAN FRANCISCO (AFP) – Hacking tools from an Italian firm were used to spy on Apple and Android smartphones in Italy and Kazakhstan, Google said on Thursday (June 23), shedding light on a “thriving” spyware industry. Said happened.

Google’s threat analysis team said spyware created by RCS Lab targeted phones using a combination of tactics, including unusual “drive-by downloads,” which happen without victims being aware.

Concern over spyware was reported last year by media outlets that the Pegasus tools of Israeli firm NSO had been used by governments to survey opponents, activists and journalists.

“They claim to sell only to customers who have legitimate uses of surveillanceware, such as intelligence and law enforcement agencies,” mobile cybersecurity specialist Lookout said of companies like NSO and RCS.

“Indeed, such tools are often misused to spy on business executives, human rights activists, journalists, academics and government officials under the guise of national security,” Lookout said.



Google’s report states that the RCS spyware it uncovered, and dubbed “Hermit”, is the same one that Lookout previously reported.

Lookout researchers said in April they found the Hermit was being used by Kazakhstan’s government to spy on smartphones, just months after suppressing anti-government protests in that country.

“Like many spyware vendors, not much is known about RCS Lab and its customers,” Lookout said. “But based on the information we have, it has a considerable international presence.”

Growing Spyware Industry

The mobile security company said evidence showed the Hermit was used in the Kurdish region of Syria.

Lookout researchers said Hermit’s analysis showed it could be used to gain control of a smartphone, record audio, redirect calls, and collect data such as contacts, messages, photos and locations.

Google and Lookout noticed spyware spread by getting people to click on links in messages sent to Target.

“In some cases, we believe that the actors worked with the target’s ISP (Internet Service Provider) to disable the target’s mobile data connectivity,” Google said.

“Once disabled, the attacker will send a malicious link via SMS asking the target to install an application to recover their data connectivity.”

Source



Related News

WhatsApp Plus without ads: find out if there is a new July 2022 update TODAY

WhatsApp It has become a necessary application in various cell phones in the world from where you can do countless things from calling a person to reacting to

$500. best phone for less than

Most phone buyers would be rocking the latest and greatest model, were it not for budget constraints, lack of convincing new The features, or the fact that

Tired of advertising SMS and SPAM? We show you how to block them on Android and iPhone

It is true that except in certain contexts and territories, SMS messages they have gone from being a method of communication to a channel for receiving order

The terrible future of your games if Steam ever closes

The PC is experiencing a new golden age of video games. After several years in which the industry has left it a bit aside in favor of consoles, it finally

Gmail: so you can edit and delete contacts you no longer need from the app

Have multiple contacts in your account gmail It may be necessary to keep you exchanging important information for work issues or simply for personal things.

Find out who is spying on your Gmail account and how you can eliminate it

Despite the many functions and benefits of the app of gmailit may happen that your account is not completely secure and that third parties have accessed it