Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

eridani

(51,907 posts)
Fri May 22, 2015, 04:35 AM May 2015

NSA Planned to Hijack Google App Store to Hack Smartphones

http://readersupportednews.org/news-section2/318-66/30302-nsa-planned-to-hijack-google-app-store-to-hack-smartphones

The surveillance project was launched by a joint electronic eavesdropping unit called the Network Tradecraft Advancement Team, which includes spies from each of the countries in the “Five Eyes” alliance — the United States, Canada, the United Kingdom, New Zealand and Australia.

The top-secret document, obtained from NSA whistleblower Edward Snowden, was published Wednesday by CBC News in collaboration with The Intercept. The document outlines a series of tactics that the NSA and its counterparts in the Five Eyes were working on during workshops held in Australia and Canada between November 2011 and February 2012.

The main purpose of the workshops was to find new ways to exploit smartphone technology for surveillance. The agencies used the Internet spying system XKEYSCORE to identify smartphone traffic flowing across Internet cables and then to track down smartphone connections to app marketplace servers operated by Samsung and Google. (Google declined to comment for this story. Samsung said it would not be commenting “at this time.”)

As part of a pilot project codenamed IRRITANT HORN, the agencies were developing a method to hack and hijack phone users’ connections to app stores so that they would be able to send malicious “implants” to targeted devices. The implants could then be used to collect data from the phones without their users noticing.

Previous disclosures from the Snowden files have shown agencies in the Five Eyes alliance designed spyware for iPhones and Android smartphones, enabling them to infect targeted phones and grab emails, texts, web history, call records, videos, photos and other files stored on them. But methods used by the agencies to get the spyware onto phones in the first place have remained unclear.

The newly published document shows how the agencies wanted to “exploit” app store servers – using them to launch so-called “man-in-the-middle” attacks to infect phones with the implants. A man-in-the-middle attack is a technique in which hackers place themselves between computers as they are communicating with each other; it is a tactic sometimes used by criminal hackers to defraud people. In this instance, the method would have allowed the surveillance agencies to modify the content of data packets passing between targeted smartphones and the app servers while an app was being downloaded or updated, inserting spyware that would be covertly sent to the phones.
5 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
NSA Planned to Hijack Google App Store to Hack Smartphones (Original Post) eridani May 2015 OP
But stripper poles and boxes! hootinholler May 2015 #1
Yet another hysterically inadequate article about the NSA. randome May 2015 #2
You bloody well know that NSA has been hoovering up data on everyone eridani May 2015 #5
James Clapper's warm embrace FlatBaroque May 2015 #3
K & R !!! WillyT May 2015 #4
 

randome

(34,845 posts)
2. Yet another hysterically inadequate article about the NSA.
Fri May 22, 2015, 07:58 AM
May 2015

The first question that comes to mind is: were these contemplated techniques designed to use against legitimate targets? Too bad the article doesn't even pose the question.

"Wanted to exploit". Wow. They are actually looking at ways to use technology to catch bad guys. What a bunch of fascists. Now if anyone has evidence they are actively using this technology to endanger ordinary users or they are deliberately using it on our own citizens, now would be the time to point that out.
[hr][font color="blue"][center]The truth doesn’t always set you free.
Sometimes it builds a bigger cage around the one you’re already in.
[/center][/font][hr]

eridani

(51,907 posts)
5. You bloody well know that NSA has been hoovering up data on everyone
Fri May 22, 2015, 09:53 PM
May 2015

No warrants, no legitimate targets. That's how our Constitution says things are supposed to work. I'm sure you'd be thrilled with Jeb Bush pulling the same crap.

FlatBaroque

(3,160 posts)
3. James Clapper's warm embrace
Fri May 22, 2015, 09:25 AM
May 2015

protects me and makes me feel cozy and safe.

I am so glad that in the Obama administration one can lie to congress and not suffer any consequences. Thanks, O!

Latest Discussions»General Discussion»NSA Planned to Hijack Goo...