AAKL, to Cybersecurity
@AAKL@noc.social avatar

deleted_by_author

  • Loading...
  • simontsui,

    @AAKL Unfortunately their government customers keep them flush with cash. Their fellow commercial spyware vendors Cytrox and Intellexa are also blacklisted by the United States but continue kicking. Amnesty International and European Investigative Collaborations (EIC) released a joint report on "Predator Files" on 05 October 2023 detailing the pervasiveness of surveillance industry and and how ineffective EU regulation has been in controlling it.
    Link: https://securitylab.amnesty.org/latest/2023/10/global-predator-files-investigation-reveals-catastrophic-failure-to-regulate-surveillance-trade/

    #Cytrox #Intellexa #Predator #spyware #surveillance #NSO #PegasusSpyware

    remixtures, to Cybersecurity Portuguese
    @remixtures@tldr.nettime.org avatar

    : "- Between May and September 2023, former Egyptian MP Ahmed Eltantawy was targeted with Cytrox’s Predator spyware via links sent on SMS and WhatsApp. The targeting took place after Eltantawy publicly stated his plans to run for President in the 2024 Egyptian elections.

    • In August and September 2023, Eltantawy’s Vodafone Egypt mobile connection was persistently selected for targeting via network injection; when Eltantawy visited certain websites not using HTTPS, a device installed at the border of Vodafone Egypt’s network automatically redirected him to a malicious website to infect his phone with Cytrox’s Predator spyware.

    • During our investigation, we worked with Google’s Threat Analysis Group (TAG) to obtain an iPhone zero-day exploit chain (CVE-2023-41991, CVE-2023-41992, CVE-2023-41993) designed to install Predator on iOS versions through 16.6.1. We also obtained the first stage of the spyware, which has notable similarities to a sample of Cytrox’s Predator spyware we obtained in 2021. We attribute the spyware to Cytrox’s Predator spyware with high confidence.

    • Given that Egypt is a known customer of Cytrox’s Predator spyware, and the spyware was delivered via network injection from a device located physically inside Egypt, we attribute the network injection attack to the Egyptian government with high confidence.

    • Eltantawy’s phone was additionally infected with Cytrox’s Predator spyware two years prior, in November 2021, via a text message containing a link to a Predator website."

    https://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/

    briankrebs, to random

    The commercial spyware industry is thriving. More 0days, y'all.

    "Last week Google’s Threat Analysis Group (TAG), in partnership with The Citizen Lab, discovered an in-the-wild 0-day exploit chain for iPhones. Developed by the commercial surveillance vendor, Intellexa, this exploit chain is used to install its Predator spyware surreptitiously onto a device."

    "In response, yesterday, Apple patched the bugs in iOS 16.7 and iOS 17.0.1 as CVE-2023-41991, CVE-2023-41992, CVE-2023-41993. This quick patching from Apple helps to better protect users and we encourage all iOS users to install them as soon as possible."

    https://blog.google/threat-analysis-group/0-days-exploited-by-commercial-surveillance-vendor-in-egypt/

    simontsui,

    @briankrebs Please note that The Citizen Lab published a separate blog detailing how former Egyptian MP Ahmed Eltantawy was targeted with Cytrox’s Predator spyware via links sent on SMS and WhatsApp. They attribute the network injection attack to the Egyptian government with high confidence.
    Link: https://citizenlab.ca/2023/09/predator-in-the-wires-ahmed-eltantawy-targeted-with-predator-spyware-after-announcing-presidential-ambitions/

    #freethewhales #citizenlab #CVE202341991 #CVE202341992 #CVE202341993 #Cytrox #predator #spyware #Egypt

    SophieintVeld, to random

    The US considers and spyware a threat to its security. Intellexa is based in the EU, doing business with EU gvts and exporting to third countries with European export licenses. What action can we expect from @EU_Commission @VDombrovskis @dreynders?
    <div class="rsshub-quote">
    Thanasis Koukakis: The Biden administration added two new foreign technology companies, Intellexa and Cytrox, to its export prohibition list, its latest bid to erect rules around the spyware industry https://www.wsj.com/articles/european-spyware-firms-threaten-global-security-and-privacy-u-s-says-ca86c35f via @WSJ
    </div>

    🐦🔗: https://n.respublicae.eu/SophieintVeld/status/1681321676766576640

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • thenastyranch
  • rosin
  • GTA5RPClips
  • osvaldo12
  • love
  • Youngstown
  • slotface
  • khanakhh
  • everett
  • kavyap
  • mdbf
  • DreamBathrooms
  • ngwrru68w68
  • provamag3
  • magazineikmin
  • InstantRegret
  • normalnudes
  • tacticalgear
  • cubers
  • ethstaker
  • modclub
  • cisconetworking
  • Durango
  • anitta
  • Leos
  • tester
  • JUstTest
  • All magazines