Chinese authorities are using a new tool to hack seized phones and extract data


Security researchers say Chinese authorities are using a new type of malware to extract data from seized phones, allowing them to obtain text messages — including from chat apps such as Signal — images, location histories, audio recordings, contacts, and more.

In a report shared exclusively with TechCrunch, mobile cybersecurity company Lookout detailed the hacking tool called Massistant, which the company said was developed by Chinese tech giant Xiamen Meiya Pico.

Read more…
Source: TechCrunch News


Sign up for the Cyber Security Review Newsletter
The latest cyber security news and insights delivered right to your inbox


Related:

  • China’s Cyber Security Law: The Impossibility Of Compliance?

    May 29, 2017

    China’s much-anticipated Cyber Security Law (CSL) will come into effect on 1 June 2017.  The new law is the first comprehensive law to address cyber security concerns at the national level and to some extent consolidates cyber activities captured in other laws and regulations. The move by China to beef up its laws and regulations governing ...

  • Trade groups appeal to Beijing to postpone cybersecurity law

    May 15, 2017

    A coalition of 54 global business groups appealed to Chinese authorities Monday to postpone enforcing a cybersecurity law they warned violates Beijing’s free-trade pledges and might harm information security. The appeal by groups from the United States, Japan, Britain and other countries adds to complaints Beijing is improperly limiting access to its markets for technology products, ...

  • Japan and China wake up to global ‘ransomware’ cyberattack while Microsoft slams US government

    May 15, 2017

    Japan and China have fallen victim of a global “ransomware” cyberattack that has created chaos in 150 countries as Microsoft pinned blame on the US government for not disclosing more software vulnerabilities. The initial attack, known as “WannaCry,” paralyzed more than 200,000 computers, including those which that run Britain’s hospital network, Germany’s national railway and other companies and government agencies ...

  • Taiwan government to block Google’s public DNS in favor of HiNet’s

    May 11, 2017

    The Taiwanese government intends to block Google’s public DNS service, citing cybersecurity concerns. The question is whether those concerns are the government’s or its citizens’, with the government pushing its own DNS service – a setup that is typically used to spy on people’s internet communications. The announcement comes, somewhat unusually, in the form of a PDF ...

  • Hong Kong to tighten cyber security rules after broker hacks

    April 20, 2017

    Hong Kong plans to toughen information security rules after a series of embarrassing hacks at the city’s brokers, the securities regulator said on Thursday. The draft rules would likely include requirements for two-step authentication for account log-in and for brokers to notify clients when a transaction had been made, a Hong Kong Securities and Futures Commission ...

  • This Phishing Attack is Almost Impossible to Detect On Chrome, Firefox and Opera

    April 17, 2017

    A Chinese infosec researcher has discovered a new “almost impossible to detect” phishing attack that can be used to trick even the most careful users on the Internet. He warned, Hackers can use a known vulnerability in the Chrome, Firefox and Opera web browsers to display their fake domain names as the websites of legitimate services, ...