1
0

Facebook Sues Israeli NSO Spyware Firm For Hacking WhatsApp Users


 invite response                
2019 Oct 30, 8:35pm   133 views  2 comments

by Patrick   ➕follow (55)   💰tip   ignore  

https://thehackernews.com/2019/10/whatsapp-nso-group-malware.html

Finally, for the very first time, an encrypted messaging service provider is taking legal action against a private entity that has carried out malicious attacks against its users.
Facebook filed a lawsuit against Israeli mobile surveillance firm NSO Group on Tuesday, alleging that the company was actively involved in hacking users of its end-to-end encrypted WhatsApp messaging service.

Earlier this year, it was discovered that WhatsApp had a critical vulnerability that attackers were found exploiting in the wild to remotely install Pegasus spyware on targeted Android and iOS devices.

The flaw (CVE-2019-3568) successfully allowed attackers to silently install the spyware app on targeted phones by merely placing a WhatsApp video call with specially crafted requests, even when the call was not answered.

Developed by NSO Group, Pegasus allows access to an incredible amount of data from victims' smartphones remotely, including their text messages, emails, WhatsApp chats, contact details, calls records, location, microphone, and camera.

Pegasus is NSO's signature product that has previously been used against several human rights activists and journalists, from Mexico to the United Arab Emirates two years ago, and Amnesty International staffers in Saudi Arabia and another Saudi human rights defender based abroad earlier last year.

Comments 1 - 2 of 2        Search these comments

1   Patrick   2022 Jun 27, 1:13pm  

https://citizenlab.ca/2018/09/hide-and-seek-tracking-nso-groups-pegasus-spyware-to-operations-in-45-countries/


HIDE AND SEEK
Tracking NSO Group’s Pegasus Spyware to Operations in 45 Countries
By Bill Marczak, John Scott-Railton, Sarah McKune, Bahr Abdul Razzak, and Ron Deibert September 18, 2018

Israel-based “Cyber Warfare” vendor NSO Group produces and sells a mobile phone spyware suite called Pegasus. To monitor a target, a government operator of Pegasus must convince the target to click on a specially crafted exploit link, which, when clicked, delivers a chain of zero-day exploits to penetrate security features on the phone and installs Pegasus without the user’s knowledge or permission. Once the phone is exploited and Pegasus is installed, it begins contacting the operator’s command and control (C&C) servers to receive and execute operators’ commands, and send back the target’s private data, including passwords, contact lists, calendar events, text messages, and live voice calls from popular mobile messaging apps. The operator can even turn on the phone’s camera and microphone to capture activity in the phone’s vicinity.
2   Patrick   2022 Jun 27, 1:16pm  

https://rwmalonemd.substack.com/p/rogue-agencies-and-the-covid-truth


There have been enough cloud-based hacks and backdoor data collection bots to think that it is only a matter of time before those of us whose personal lives have been completely upended by government spying will see that data being used by state-sponsored media, hackers and foreign governments for nefarious purposes.

An early case study of this happening was what happened to Jeff Bezos. Saudi Crown Prince Mohammed bin Salman (MBS) placed Pegasus on Bezos’ phone during a WhatsApp conversation. MBS probably wanted to spy on what Jamal Khashoggi, who was a reporter for The Washington Post was going to publish next about the kingdom. Of course, Pegasus was also placed on the phone of Jamal Khashoggi’s wife by United Arab Emeritis (MSB) and most likely helped in his assassination.

Eventually, The Enquirer used the Pegasus data of Bezo’s affair to try to blackmail Bezos to stop the investigation into the origins of Pegasus on his phone. With that, Bezos announced his affair to the world, rather than be blackmailed. Which of course, led to his divorce. This is one small case study - of how two phones infected with spyware, ultimately led to the death of a reporter and in the case of Bezos, completely upended his life.

Pegasus has been sold to governments, including our own.


Direct blatant violation of the Fourth Amendment.


The right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no warrants shall issue, but upon probable cause, supported by oath or affirmation, and particularly describing the place to be searched, and the persons or things to be seized.

Please register to comment:

api   best comments   contact   latest images   memes   one year ago   random   suggestions