{"id":153008,"date":"2025-02-28T19:38:33","date_gmt":"2025-02-28T19:38:33","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2025\/02\/28\/researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone-techcrunch\/"},"modified":"2025-02-28T19:38:33","modified_gmt":"2025-02-28T19:38:33","slug":"researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2025\/02\/28\/researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone-techcrunch\/","title":{"rendered":"Researchers uncover unknown Android flaws used to hack into a student&#8217;s phone | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">Amnesty International said that Google fixed previously unknown flaws in Android that allowed authorities to unlock phones using forensic tools.<\/p>\n<p class=\"wp-block-paragraph\">On Friday, <a rel=\"nofollow\" href=\"https:\/\/x.com\/DonnchaC\/status\/1895387281026097153\" target=\"_blank\">Amnesty International published a report<\/a> detailing a chain of three <a href=\"https:\/\/techcrunch.com\/2025\/01\/31\/techcrunch-reference-guide-to-security-terminology\/#zero-day\" target=\"_blank\" rel=\"noopener\">zero-day vulnerabilities<\/a> developed by phone-unlocking company Cellebrite, which its researchers found after investigating the hack of a student protester\u2019s phone in Serbia. The flaws were found in the core Linux USB kernel, meaning \u201cthe vulnerability is not limited to a particular device or vendor and could impact over a billion Android devices,\u201d according to the report.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Zero-days are bugs in products that when found are unknown to the software or hardware makers. Zero-days allow criminal and government hackers to break into systems in a way that\u2019s more effective because there is no patch that fixes them yet.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In this case, Amnesty said that it first found traces of one of the flaws in a case in mid-2024. Then, last year, after investigating the hack of a student activist in Serbia, the organization shared its findings with Google\u2019s anti-hacking unit Threat Analysis Group, which led the company researchers to identify and fix the three separate flaws.<\/p>\n<p class=\"wp-block-paragraph\">During the investigation into the activist\u2019s phone, Amnesty researchers found the USB exploit, which allowed Serbian authorities, with the use of Cellebrite tools, to unlock the activist\u2019s phone.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">When reached for comment, Cellebrite spokesperson Victor Cooper referred to <a rel=\"nofollow noopener\" href=\"https:\/\/cellebrite.com\/en\/cellebrite-statement-about-amnesty-international-report\/\" target=\"_blank\">a statement<\/a> that the company published earlier this week.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In December, <a href=\"https:\/\/techcrunch.com\/2024\/12\/15\/serbian-police-used-cellebrite-to-unlock-then-plant-spyware-on-a-journalists-phone\/\" target=\"_blank\" rel=\"noopener\">Amnesty reported that it had found two cases<\/a> where Serbian authorities had used Cellebrite forensic tools to unlock the phones of an activist and a journalist, and subsequently installed an Android spyware known as Novispy. Earlier this week, <a href=\"https:\/\/techcrunch.com\/2025\/02\/26\/cellebrite-suspends-serbia-as-customer-after-claims-police-used-firms-tech-to-plant-spyware\/\" target=\"_blank\" rel=\"noopener\">Cellebrite announced<\/a> that it had stopped its Serbian customer from using its technology following the allegations of abuse uncovered by Amnesty.<\/p>\n<p class=\"wp-block-paragraph\">\u201cAfter a review of the allegations brought forth by the December 2024 Amnesty International report, Cellebrite took precise steps to investigate each claim in accordance with our ethics and integrity policies. We found it appropriate to stop the use of our products by the relevant customers at this time,\u201d Cellebrite wrote in its statement.\u00a0<\/p>\n<div class=\"article-block block--callout block--right has-green-500-background-color\">\n<h4 class=\"block--callout__title\">Contact Us<\/h4>\n<p>\t\t\tDo you have more information about government spyware and its makers? From a non-work device, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or <a href=\"https:\/\/techcrunch.com\/2025\/02\/28\/researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone\/mailto:lorenzo@techcrunch.com\/\" target=\"_blank\" rel=\"noopener\">email<\/a><a href=\"https:\/\/techcrunch.com\/2025\/02\/28\/researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone\/mailto:lorenzo@techcrunch.com\/\" target=\"_blank\" rel=\"noopener\">.<\/a> You also can contact TechCrunch via <a href=\"https:\/\/techcrunch.com\/got-a-tip\/\" target=\"_blank\" rel=\"noopener\">SecureDrop<\/a>.\t\t<\/div>\n<p class=\"wp-block-paragraph\">In the new report, Amnesty said it was contacted in January to analyze the device of a youth activist arrested by the Serbian Security Information Agency (<em>Bezbedonosno-informativna agencija<\/em> or BIA) at the end of last year.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cThe circumstances of his arrest, and the behavior of the BIA officers, strongly matched the modus operandi that was used against protesters and that we documented in our report in December. A forensic investigation of the device conducted in January confirmed the use of Cellebrite on the student activist\u2019s phone,\u201d Amnesty wrote.<\/p>\n<p class=\"wp-block-paragraph\">Like in the other cases, the authorities used a Cellebrite device to unlock the activist\u2019s Samsung A32 phone \u201cwithout his knowledge or consent, and outside a legally sanctioned investigation,\u201d according to Amnesty.\u00a0\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cThe seemingly routine use of Cellebrite software against people for exercising their rights to freedom of expression and peaceful assembly can never be a legitimate aim,\u201d Amnesty wrote, \u201cand therefore is in violation of human rights law.\u201d<\/p>\n<p class=\"wp-block-paragraph\">Bill Marczak, a senior researcher at Citizen Lab, a digital rights organization that investigates spyware, <a rel=\"nofollow\" href=\"https:\/\/x.com\/billmarczak\/status\/1895457358245245018\" target=\"_blank\">wrote on X<\/a> that activists, journalists, and members of civil society \u201cwho might have their phone seized by authorities (protest, border, etc.) should consider switching to iPhone,\u201d because of these vulnerabilities.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Referring to Cellebrite\u2019s tools, Donncha \u00d3 Cearbhaill, the head of Amnesty\u2019s Security Lab, told TechCrunch that \u201cthe far-reaching availability of such tools leaves me fearing that we are just scratching the surface of harms from these products.\u201d<\/p>\n<p class=\"wp-block-paragraph\">Google did not immediately respond to a request for comment.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2025\/02\/28\/researchers-uncover-unknown-android-flaws-used-to-hack-into-a-students-phone\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Amnesty International said that Google fixed previously unknown flaws in Android that allowed authorities to unlock phones using forensic tools. On Friday, Amnesty International published a report detailing a chain of three zero-day vulnerabilities developed by phone-unlocking company Cellebrite, which its researchers found after investigating the hack of a student protester\u2019s phone in Serbia. The [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":153009,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-153008","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/153008","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=153008"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/153008\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/153009"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=153008"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=153008"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=153008"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}