Latest News

  • Home
  • Global
  • WhatsApp Security Breach May Have Targeted Human Rights Groups
WhatsApp Security Breach May Have Targeted Human Rights Groups
Wednesday, May 15, 2019 IST
WhatsApp Security Breach May Have Targeted Human Rights Groups

WhatsApp said it was "deeply concerned about the abuse" of such surveillance technologies and that it believed human rights activists may have been the targets.
 

 
 

WASHINGTON: WhatsApp said on Tuesday that a security breach on its messaging app had signs of coming from a government using surveillance technology developed by a private company, and it may have targeted human rights groups.
 
WhatsApp, a unit of Facebook, said it had notified the U.S. Department of Justice to help with an investigation, and it encouraged all WhatsApp users to update to the latest version of the app, where the breach had been fixed.
 
WhatsApp, one of the world's most popular messaging tools, is used by 1.5 billion people monthly. It has touted its high level of security and privacy, with messages on its platform being encrypted end-to-end so that WhatsApp and third parties cannot read or listen to them.
 
The company said it was still investigating the breach but believed only a "select number of users were targeted through this vulnerability by an advanced cyber actor."
 
WhatsApp said its advice to all users to update came "out of an abundance of caution" and a recommendation by Citizen Lab, a research group at the University of Toronto that it notified about the vulnerability before the announcement.
 
It did not disclose how many users were affected. A technical advisory published on Facebook's security website said the vulnerability affected both Android and iPhones.
 
A WhatsApp spokesman said the attack was sophisticated and had all the hallmarks of a "private company working with governments on surveillance."
 
The FBI and Justice Department declined to comment.
 
Human rights lawyer a target
 
The Financial Times initially reported on the WhatsApp vulnerability that allowed attackers to inject spyware on phones via the app's voice-calling function.
 
WhatsApp told human rights groups it believed the spyware was developed by Israeli cyber surveillance company NSO Group, best known for its mobile hacking tools, said Eva Galperin, the director of cybersecurity at the Electronic Frontier Foundation, a San Francisco-based nonprofit.
 
"They said they believed it was NSO Group, but they also couched it in very careful terms with many caveats, because attribution is hard," she said.
 
Like Citizen Lab, EFF was among the groups WhatsApp notified several days ago about the vulnerability.
 
A second person familiar with the matter also identified NSO Group as the suspected culprit.
 
NSO did not comment on the specific attacks. In a statement sent to Reuters, NSO said it would investigate any "credible allegations of misuse" of its technology.

 
 

The company said it never picks or identifies targets of its technology, "which is solely operated by intelligence and law enforcement agencies. NSO would not or could not use its technology in its own right to target any person or organization, including this individual."
 
One target of the new WhatsApp exploit was a United Kingdom-based human rights lawyer who spoke on condition of anonymity. He said an attack against him took place on Sunday after WhatsApp issued its update and was not successful. The lawyer had contacted Citizen Lab after receiving previous suspicious WhatsApp calls.
 
The lawyer is helping a Saudi dissident and several Mexican journalists mount civil cases against NSO Group for its alleged role in selling hacking tools to the Saudi and Mexican governments, which they allege were used to hack into their phones.
 
There are currently four known legal cases against NSO Group, including three in Israel and one based in Cyprus. NSO is being sued for damages allegedly caused by the sale of its tools, which the company says it sells only to law enforcement and intelligence agencies pursuing legitimate targets, such as terrorists and criminals.
 
Human rights
 
WhatsApp said it was "deeply concerned about the abuse" of such surveillance technologies and that it believed human rights activists may have been the targets.
 
"We're working with human rights groups on learning as much as we can about who may have been impacted from their community. That's really where our highest concern is," the spokesman said.
 
Citizen Lab tweeted on Monday: "We believe an attacker tried (and was blocked by WhatsApp) to exploit it as recently as yesterday to target a human rights lawyer."
 
Citizen Lab told Reuters that the person was the UK lawyer, who had approached Citizen Lab after receiving multiple WhatsApp calls from unknown numbers at strange hours, making him suspicious.
 
Ireland's Data Protection Commission (DPC), WhatsApp's lead regulator in the European Union, said WhatsApp had notified the agency late on Monday of a "serious security vulnerability" on its platform.
 
"The DPC understands that the vulnerability may have enabled a malicious actor to install unauthorised software and gain access to personal data on devices which have WhatsApp installed," the regulator said in a statement.
 
Cyber security experts said the vast majority of WhatsApp users were unlikely to have been affected.
 

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
'Worse than prison': A rare look inside China's detention camps to 'brainwash' Muslims

ALMATY: Hour upon hour, day upon day, Omir Bekali and other detainees in far western China's new indoctrination camps had to disavow the...

Recently posted . 202K views . 1 min read
 

 Article
What The Shape Of Your Belly Button Says About Your Health

If you have payed attention to the belly buttons of people on the beach or the members of your family, you have probably noticed that they have different shapes and...

Recently posted . 9K views . 2 min read
 

 Article
Top 10 Horrifying Acts of Chemical Warfare and Gas Attacks

In this age of terror, there might be nothing more terrifying than the thought of an attack carried out with chemical weapons. We’ve all heard the horrific ...

Recently posted . 4K views . 4 min read
 

 Article
Top 10 Best Gym Equipment Brands in India 2018

Body fitness is one thing that everyone wants to maintain irrespective of age. Going to the gym and doing some great exercise always helps to maintain your body fit...

Recently posted . 4K views . 2 min read
 

 
 

More in Global

 Article
5 countries where most police officers do not carry firearms -- and it works well

LONDON — It has been another week of devastating gun violence in the United States: 37-year-old Alton Sterling and 32-year-old Philando Castile were both fata...

Recently posted. 772 views . 1 min read
 

 Article
The world of little people

Rarely has Indian cinema, mainstream or otherwise, cared to focus on the little people – the dwarfs. Award winning director Kaushik Ganguly decides to explore...

Recently posted. 945 views . 1 min read
 

 Article
What Will our Children Do? 20 Jobs of the Future

Back in January 2010 we wrote a report for UK government on The Shape of Jobs to Come. The study highlighted new jobs that might emerge in the global economy by 203...

Recently posted. 943 views . 2 min read
 

 Reviews
The Best 5 Hiking Backpacks in India – Reviews & Buying Guide



Recently posted . 2K views . 140 min read
 

 Reviews
Leaseweb hosting review



Recently posted . 2K views . 67 min read
 

 Article
Kansas shooting: Anger, sorrow as Indian Americans point the finger at Trump

The Indian American people group is responding with shock and pity to the lethal shooting of Srinivasan Kuchibhotla, an IT engineer from Hyderabad, at a Kansas bar ...

Recently posted. 795 views . 12 min read
 

 Article
Shah Rukh Khan makes a career out of rejected roles, reinvents Hindi film hero

Shah Rukh Khan is shirtless. On a typical Bombay afternoon, he is Ram Jaane, a cynical criminal in a film with the same name. A thick gold chain, knotted at the n...

Recently posted. 1K views . 3 min read
 

 
 
 

   Prashnavali

  Thought of the Day

People don’t care how much you know they want to know how much you care..!
Anonymous

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top