UAE BlackBerry users hit by spyware
Thursday 23 July 2009
BlackBerry users in the Mideast business centres of Dubai and Abu Dhabi who were directed by their service provider to upgrade their phones were actually installing spy software that could allow outsiders to peer inside, according to the device's maker.
While many questions about the breach remain unanswered, including who ordered it sent and why, analysts say the disclosure highlights the security risks posed by increasingly popular smart phones like the BlackBerry.
Richard M. Smith, an internet security and privacy consultant at Boston Software Forensics, said smart phones are "the perfect personal spying devices" because as tiny computers they can be programmed to send back a broad range of information.
"This is an evolving threat. As the technology advances, the security problems follow behind," he said.
Research in Motion, the Canadian company that makes the mobile gadgets, said in a statement that it did not authorise the software installation and "was not involved in any way in the testing, promotion or distribution of this software application."
It is directing customers on how to remove the software.
"Independent sources have concluded that it is possible that the installed software could...enable unauthorised access to private or confidential information stored on the user's smart phone," the company said in an eight-page statement strongly distancing itself from the decision to install the software.
The Abu Dhabi-based mobile service provider Etisalat, which is majority owned by the United Arab Emirates government, earlier sent text messages to BlackBerry customers in the country instructing them to follow a link to update their phones.
Etisalat says it has more than 145,000 BlackBerry users in the UAE.
Some customers who installed the new software said it quickly drained the device's batteries, prompting hundreds of complaints to Etisalat and sending users to internet message boards looking for ways to fix the problem.
In a statement issued following complaints last week, Etisalat described the software change as an "upgrade...required for service enhancements." It said the upgrades were required and linked to a handover to the 3G wireless technology standard.
The BlackBerry maker dismissed that explanation.
"RIM is not aware of any technical network concerns with the performance of BlackBerry smart phones on Etisalat's network in the UAE," the company said, adding that it "does not endorse this software application."
Etisalat did not respond to requests for comment.
RIM said the application users unwittingly installed was a surveillance program developed by a privately held Silicon Valley company called SS8 Networks.
SS8 describes itself in a company brochure as "the leader in communications interception and a worldwide provider of regulatory compliant, electronic intercept and surveillance solutions."
It markets its services to intelligence agencies, law enforcement and communication service providers.
A person who answered the phone at SS8's Middle East office in Dubai declined to comment and refused to provide a name. He said the company's regional head, Derek Roga, was out of the country.
A spokesman at the company's headquarters in Milpitas, California, could not be reached.
It is not clear why Etisalat encouraged users to install the application or if any private information was compromised.
The company, one of two major telecommunications providers in the UAE, regularly blocks hundreds of web addresses - ranging from pornographic sites to the photo-sharing portal Flikr.com - in line with state censorship guidelines.
Etisalat operates phone networks in countries throughout the Middle East and Africa, but a Blackberry spokeswoman said the device maker believes the snooping software was sent only to the operator's UAE customers.
Smith, the security and privacy consultant, said a data thief tapping into a smart phone in theory could turn on the microphone to listen in on a private conversation, provide a list of previous calls or send back the user's location.
Bruce Schneier, an author and chief security technology officer at BT, the British telecommunications operator, said smart phones are "not inherently more secure."
"We've mostly been protected because it's annoying and inconvenient to write software for these devices," he said.
The Persian Gulf country is the Arab world's largest economy after Saudi Arabia. Its most populous city Dubai is trying to position itself as a leading commercial hub, making BlackBerry devices popular among its professional elite.
Geoffrey Macnab reviews American Hustle, also starring Christian Bale and Bradley Cooper
Dennis Rodman will coach the North Korea basketball team
Life & Style blogs
The 10 Best Scotch Whiskies
America's 'virgin births'? One in 200 mothers 'became pregnant without having sex'
Why we must save the banana
Best smartphones of 2013: the iPhone 5s, Motorola Moto G, and more than one Nokia
The best tablets of 2013: the Apple iPad Air, the Lumia 2520 and the Tesco Hudl
- 1 America's 'virgin births'? One in 200 mothers 'became pregnant without having sex'
- 2 Sun will 'flip upside down' within weeks, says Nasa
- 3 Christmas comes early: Justin Bieber is 'retiring from music'
- 4 Iain Duncan Smith leaves Commons food banks debate early
- 5 Children evacuated from swimming pool after prosthetic leg mistaken for paedophile
- < Previous
- Next >
iJobs Gadgets & Tech
£500 - £680 per day: Harrington Starr: Murex Business Analyst - 1000 CHF per d...
£35000 - £42000 per annum + excellent company benefits: Pro-Recruitment Group:...
29,800-31,000 GBP: Transcargo Europe Limited: Developing software for sea trad...
£25000 - £28000 Per Annum: Clearwater People Solutions Ltd: 2nd Line Support T...