Feeds

Free download turns BlackBerry into remote bugging device

Coming to a handset near you

The Essential Guide to IT Transformation

A free software program released Thursday turns everyday BlackBerry smartphones into remote bugging devices.

Dubbed PhoneSnoop by creator Sheran Gunasekera, the software sits quietly on a targeted BlackBerry and monitors the phone number of each incoming call. When it detects a number set up in the program's preferences section, it silently turns on the speakerphone, allowing an attacker to monitor all conversations within earshot of the device.

Although programs such as FlexiSPY have long claimed to do much the same thing, Gunasekera said he believes PhoneSnoop is the first software to bring those capabilities to the BlackBerry free of charge.

"What I wanted to do was bring some awareness to this problem, so I'm releasing it pretty much for free and trying to show them that this can be done," said Gunasekera, who is director of security for Hermis Consulting in Jakarta, Indonesia. "It's not well known that these threats exist."

Gunasekera said he was inspired to write PhoneSnoop after witnessing an attempt in July by United Arab Emirates mobile operator Etisalat to sneak snooping software onto customers' Blackberry handsets. Subscribers reported receiving an SMS message from the carrier instructing them to install an official patch.

An analysis and reverse engineering of the update made it clear that the update installed a program that had the ability to forward all outgoing emails to a server under Etisalat's control, Gunasekera said. He added that it's not known if the spyware was ever activated. Because the software cloaked itself from users, it may never have been discovered were it not for a bug that drained batteries in as little as 30 minutes.

The carrier denied the software spied on its customers, but even BlackBerry maker Research in Motion warned users of the SMS message and took the unusual step of offering an application that removed the Etisalat software.

Unlike FlexiSPY and the spyware that was installed on Etisalat customers' handsets, PhoneSnoop doesn't try to hide itself. But Gunasekera said it would be trivial for him to modify the program to hide all its processes and icons from casual users. He plans to release a free utility in a week or two that will make it easy for users to list all software and processes running on their BlackBerries.

PhoneSnoop complements a previous program Gunasekera released at this month's Hack in the Box security conference that silently forwards emails to an attacker. Eventually, he plans to release companion software that will forward all SMS messages and monitor a user's location using the BlackBerry's built-in GPS features.

Unlike Apple's iPhone and other smartphones, the BlackBerry hasn't suffered from known vulnerabilities over the past couple of years that would allow an attacker to remotely install snooping software onto the device. That means attackers need physical access to the device they want to bug or somehow trick its user into installing it.

But those scenarios are by no means out of the question, as Etisalat customers know all too well. ®

Update

A RIM spokesman responds:

"Security has always been, and continues to be, a core part of the BlackBerry solution. BlackBerry is widely recognized for the high level of security built into BlackBerry smartphones and, as this article points outs, this type of software relies on tricking an unsuspecting user into downloading, installing and running a malicious application."

Users should download apps only from trusted sources, he added.

Build a business case: developing custom apps

More from The Register

next story
14 antivirus apps found to have security problems
Vendors just don't care, says researcher, after finding basic boo-boos in security software
Secure microkernel that uses maths to be 'bug free' goes open source
Hacker-repelling, drone-protecting code will soon be yours to tweak as you see fit
Only '3% of web servers in top corps' fully fixed after Heartbleed snafu
Just slapping a patched OpenSSL on a machine ain't going to cut it, we're told
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Israel's Iron Dome missile tech stolen by Chinese hackers
Corporate raiders Comment Crew fingered for attacks
Roll out the welcome mat to hackers and crackers
Security chap pens guide to bug bounty programs that won't fail like Yahoo!'s
HIDDEN packet sniffer spy tech in MILLIONS of iPhones, iPads – expert
Don't panic though – Apple's backdoor is not wide open to all, guru tells us
Researcher sat on critical IE bugs for THREE YEARS
VUPEN waited for Pwn2Own cash while IE's sandbox leaked
prev story

Whitepapers

Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
The Essential Guide to IT Transformation
ServiceNow discusses three IT transformations that can help CIO's automate IT services to transform IT and the enterprise.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.