From r.deibert@utoronto.ca Fri Jul 6 02:35:41 2018 From: Ronald Deibert To: cypherpunks-legacy@lists.cpunks.org Subject: [liberationtech] New Citizen Lab report: Permission To Spy Date: Fri, 06 Jul 2018 02:35:41 +0000 Message-ID: <172289283404.3881296.4275052131291870215.generated@mail.pglaf.org> MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="===============8205081084102940296==" --===============8205081084102940296== Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: quoted-printable Dear LibTech I am pleased to announce a new Citizen Lab report: Permission to Spy: An Analysis of Android Malware Targeting Tibetans April 1, 2013 Key Findings A compromised version of Kakao Talk, an Android-based mobile messaging client= , was sent in a highly-targeted email to a prominent individual in the Tibeta= n community. This email message repurposed a legitimate private email message sent by an i= nformation security expert in the Tibetan community to a member of the Tibeta= n parliament-in-exile. This malware is designed to send a userb=19s contacts, SMS message history, a= nd cellular network location to attackers. The cellular network information gathered by this malware would only be usefu= l to actors with detailed knowledge of the cellular communication providerb= =19s technical infrastructure. The compromised application was not detected as malware by any of the three m= obile malware scanning applications we tested. Full report is here: https://citizenlab.org/2013/04/permission-to-spy-an-analysis-of-android-malwa= re-targeting-tibetans/ There is a Forbes news article about the report here: http://www.forbes.com/sites/andygreenberg/2013/04/01/evidence-mounts-that-chi= nese-government-hackers-spread-android-malware/ Regards Ron Ronald Deibert Director, the Citizen Lab=20 and the Canada Centre for Global Security Studies Munk School of Global Affairs University of Toronto (416) 946-8916 PGP: http://deibert.citizenlab.org/pubkey.txt http://deibert.citizenlab.org/ twitter.com/citizenlab r.deibert(a)utoronto.ca -- Too many emails? Unsubscribe, change to digest, or change password by emailin= g moderator at companys(a)stanford.edu or changing your settings at https://m= ailman.stanford.edu/mailman/listinfo/liberationtech ----- End forwarded message ----- --=20 Eugen* Leitl leitl http://leitl.org ______________________________________________________________ ICBM: 48.07100, 11.36820 http://www.ativel.com http://postbiota.org 8B29F6BE: 099D 78BA 2FD3 B014 B08A 7779 75B0 2443 8B29 F6BE --===============8205081084102940296==--