Connect with us

Software

Brazilian phone spyware was hacked and victims’ devices were ‘deleted’ from server

blank

Published

on

blank

Portuguese-language WebDetetive spyware has compromised over 76,000 Android phones in South America, mostly in Brazil. WebDetetive is the latest phone spyware company hacked in recent months.

Unnamed hackers described how they exploited several security vulnerabilities to compromise WebDetetive’s servers and access its user databases in an undated note seen. The hackers said they enumerated and downloaded every dashboard record, including every customer’s email address, by exploiting other flaws in the spyware maker’s web dashboard, which abusers use to steal phone data.

The hackers said dashboard access allowed them to delete victim devices from the spyware network, severing the server connection to prevent data uploads. We definitely did. Because we could. Hackers wrote #fuckstalkerware in the note.

The spyware’s web dashboard cached over 1.5 gigabytes of data, including the note. That data included customer IP addresses and purchase history. The data also listed each customer’s compromised device, the spyware version running on the phone, and the data the spyware was collecting.

The cache did not contain victims’ phone contents.

DDoSecrets, a nonprofit transparency collective that indexes leaked and exposed datasets, gave the WebDetetive data for analysis.

WebDetetive had compromised 76,794 devices at the time of the breach. It also contained 74,336 unique customer email addresses, but WebDetetive does not verify email addresses when signing up, preventing meaningful analysis of the spyware’s customers.

The hackers of the WebDetetive breach did not provide contact information. Could not independently verify the hackers’ claim that it deleted victims’ devices from the network, but it did verify the stolen data by matching a selection of device identifiers in the cache against a publicly accessible endpoint on WebDetetive’s server.

WebDetetive is a phone monitoring app planted without consent, usually by someone who knows the phone’s passcode.

The spyware’s home screen icon changes after installation, making it hard to detect and remove. WebDetetive then stealthily uploads a person’s messages, call logs, phone call recordings, photos, ambient microphone recordings, social media apps, and real-time precise location data to its servers.

These “stalkerware” (or spouseware) apps have broad access to a victim’s personal and sensitive phone data, but spyware is notoriously buggy and shoddy, putting victims’ already-stolen data at risk.

Meet OwnSpy, WebDetetive
We know little about WebDetetive besides surveillance. Given the reputational and legal risks of spyware production and illegal surveillance, spyware makers often hide their identities. WebDetetive follows suit. Who owns and operates WebDetetive is not listed on its website.

The breached data reveals few details about WebDetetive’s administrators, but OwnSpy, another popular phone spying app, is its main source.

Since Apple and Google ban stalkerware apps from their app stores,  downloaded the WebDetetive Android app from its website and planted it on a virtual device to analyze it in a sandbox without giving it real data, such as our location. The WebDetetive app was largely repackaged OwnSpy spyware after we ran a network traffic analysis to understand its data flow. WebDetetive’s user agent, which it sends to the server to identify itself, still called itself OwnSpy even though it was uploading our virtual device’s dummy data.

blank

Mobile Innovations, led by Antonio Calatrava in Madrid, develops OwnSpy. OwnSpy claims to have 50,000 customers and has compromised 50,000 devices, but its website dates to 2010.

An archived copy of OwnSpy’s affiliates website shows that others can make a commission by promoting the app or offering “a new product to your clients” in exchange for a cut of the profits. No other operational links between OwnSpy and WebDetetive are known. Calatrava did not respond to a request for comment or WebDetetive administrator contact information.

OwnSpy’s infrastructure went offline shortly after we emailed Calatrava. In a separate network traffic analysis, Found that OwnSpy’s spyware app was briefly unusable at publication. WebDetetive’s app works.

Destructive attack?
WebDetetive is the second spyware maker to be hacked in recent months. After a hack exposed and deleted victims’ stolen phone data from LetMeSpy’s servers, Polish developer Rafal Lidwin shut down the spyware app. Lidwin refused to discuss the incident.

At least a dozen spyware companies have exposed, spilled, or otherwise compromised victims’ stolen phone data in recent years due to poor coding and easily exploitable security vulnerabilities, according to .

Couldn’t reach WebDetetive administrators for comment. A data breach email to WebDetetive’s support address, including whether the spyware maker has backups, went unanswered. If the spyware maker has the data or records to notify customers or victims of the data breach, it is unclear.

Despite their rarity, destructive attacks can harm spyware victims. Spyware alerts the abuser if the app stops working or is removed from a victim’s phone, and severing a connection without a safety plan could put spyware victims in danger. Those who suspect their phone is compromised can find resources on the Coalition Against Stalkerware website.

Find and remove WebDetetive
WebDetetive and OwnSpy disguise themselves as Android system-presenting Wi-Fi apps, unlike most phone monitoring apps.

WebDetetive is easy to spot. The app is called “WiFi” and has a white wireless icon in a blue circle on a white background.

blank

Tap and hold to view app info; app is called “Sistema.”

blank

If safe, our general guide can help you remove Android spyware from your phone. Google Play Protect can protect your device from malicious Android apps, so enable it. Google Play settings reveal its status.

As Editor here at GeekReply, I'm a big fan of all things Geeky. Most of my contributions to the site are technology related, but I'm also a big fan of video games. My genres of choice include RPGs, MMOs, Grand Strategy, and Simulation. If I'm not chasing after the latest gear on my MMO of choice, I'm here at GeekReply reporting on the latest in Geek culture.

Continue Reading

Apps

Mark Zuckerberg reports that Threads has a total of 150 million users who engage with the app on a monthly basis

blank

Published

on

blank

Threads, Meta’s alternative to Twitter and X, is experiencing consistent and steady growth. During the Q1 2024 earnings call, Mark Zuckerberg stated that the social network currently has over 150 million monthly active members, which is an increase from 130 million in February.

Threads made significant progress in integrating with ActivityPub, the decentralized protocol that powers networks such as Mastodon, during the last quarterly earnings conference. In March, the firm granted U.S.-based users who are 18 years of age or older the ability to link their accounts to the Fediverse, enabling their posts to be seen on other servers.

By June, the business intends to make its API available to a broad range of developers, enabling them to create experiences centered on the social network. Nevertheless, it remains uncertain whether Threads will enable developers to create comprehensive third-party clients.

Meta just introduced their AI chatbot on various platforms like Facebook, Messenger, WhatsApp, and Instagram. Threads was conspicuously omitted from this list, perhaps because of its lack of built-in direct messaging capabilities.

Threads introduced a new test feature on Wednesday that allows users to automatically archive their posts after a certain length of time. Additionally, users have the ability to store or remove specific postings from an archive and make them accessible to the public.

Threads is around nine months old, and Meta has consistently expanded its readership. Nevertheless, Threads cannot be considered a viable substitute for X, as Instagram’s head, Adam Mosseri, explicitly stated in October that Threads will not “amplify news on the platform.” However, Meta’s social network continues to grow in popularity. According to app analytics company Apptopia, Threads now has more daily active users in the U.S. than X, as Business Insider reported earlier this week.

Continue Reading

Android

TikTok Shop is now introducing its collection of pre-owned high-end fashion items to customers in the United Kingdom

blank

Published

on

blank

TikTok Shop, the social commerce marketplace of TikTok, is introducing a new section dedicated to secondhand luxury items in the United Kingdom. This move positions TikTok Shop in direct rivalry with existing platforms such as The RealReal, Vestiaire Collective, Depop, Poshmark, and Mercari. The offering has been present at TikTok Shop U.S. for a duration exceeding six months.

The addition of this new category enables clients in the United Kingdom to conveniently buy second-hand luxury garments, designer purses, and various accessories from within the TikTok application. Upon its inception, the platform offers a selection of only five British brands, namely Sellier, Luxe Collective, Sign of the Times, HardlyEverWornIt, and Break Archive.

Since its introduction in 2022, TikTok Shop has generated sales of approximately $1 billion or more in merchandise value. Nevertheless, despite its triumph, some contend that TikTok Shop is undermining the short-form video-sharing platform, alleging that counterfeit and substandard merchandise are inundating the market. The purchase of pre-owned luxury goods online carries the greatest danger of encountering counterfeit products, even for major e-commerce platforms such as Amazon, eBay, and others, which also struggle with ensuring authenticity.

TikTok Shop, like other resale marketplaces, implements an anti-counterfeit policy that ensures a complete reimbursement in the event that a seller is verified to have sold a counterfeit item. Bloomberg has disclosed that the corporation is engaged in discussions with luxury goods company LVMH to enhance efforts to combat counterfeiting.

Every secondhand brand on TikTok Shop in the U.S. must possess certificates from third-party authenticators. TikTok collaborated with authentication providers Entrupy and Real Authentication to verify the authenticity of designer handbags available on the platform.

Concurrently, a representative from TikTok informed me that the five British brands each possess their own internal verification procedure. They declined to provide the commencement date for accepting secondhand brands other than their own.

TikTok Shop’s introduction of a used luxury category is a calculated maneuver to access the expanding market for previously owned high-end goods. The secondhand luxury market is a prosperous industry valued at around $49.3 billion (€45 billion) in 2023, with global sales of pre-owned designer items.

Moreover, this expansion is in line with the growing inclination of individuals towards adopting preloved fashion, and it creates new opportunities for secondhand brands in the U.K. to access a broader client demographic. The prevalence of secondhand fashion on TikTok is apparent, as seen by more than 144,000 TikTok postings utilizing the hashtag #secondhandfashion, resulting in nearly 1.2 billion views.

Today’s statement follows closely after the U.S. House of Representatives passed a bill mandating that ByteDance sell TikTok or else risk a ban in the U.S. This bill seems to be gaining favor in the Senate. An embargo would have a significant impact on American merchants who sell their products on the application. As per the company’s statement, the brief video-sharing application produced a total of $14.7 billion in revenue for small- to mid-size enterprises in the year 2023.

Continue Reading

Android

Airchat, developed by Naval Ravikant, is a social application that focuses on conversation rather than written messages

blank

Published

on

blank

Airchat is a recently developed social media application that promotes and encourages users to engage in open and spontaneous conversations.

Last year, a previous iteration of Airchat was released. However, yesterday the team, which included Naval Ravikant, the founder of AngelList, and Brian Norgard, a former product executive for Tinder, rebuilt the application and reintroduced it on both iOS and Android platforms. At present, Airchat is exclusively accessible via invitation. However, it has already achieved a ranking of #27 in the social networking category on Apple’s App Store.

Airchat has a user interface that is visually familiar and easy to understand. Users can follow other users, navigate through a feed of posts, and interact with those posts by replying, liking, and sharing them. The distinction comes from the fact that the content consists of audio recordings for both posts and replies, which are subsequently converted into written form by the application.

Airchat automatically starts sending messages, which you can quickly navigate through by vertically swiping up and down. If you have the desire, you have the option to pause the audio and only read the text. Additionally, users have the capability to exchange photographs and videos. However, it appears that audio is the main point of interest for everyone, and Ravikant explains that it has the potential to significantly change the way social apps function, especially when contrasted to text-based platforms.

blank

Upon my recent enrollment in Airchat, the majority of the messages I encountered pertained to the application itself. Notably, Ravikant and Norgard actively engaged in responding to inquiries and seeking input from users.

“All humans are inherently capable of harmonious interactions with one another; it simply necessitates the use of our innate communication abilities,” Ravikant stated. “The prevalence of online text-only media has created the false belief that people are unable to get along, when in reality, everyone is capable of getting along.”

Past instances have seen digital entrepreneurs placing their bets on speech as the upcoming significant trend in social media. However, Airchat’s utilization of asynchronous, threaded messages provides a distinct experience compared to the transient live chat rooms that briefly gained popularity on Clubhouse and Twitter Spaces. Norgard claimed that this method eliminates the obstacle of stage fright when it comes to participation, as individuals have the freedom to make multiple attempts at producing a message without anybody being aware.

Indeed, he stated that during discussions with the first users, the team discovered that the majority of individuals currently utilizing AirChat exhibit introverted and timid characteristics.

Personally, I have not yet persuaded myself to publish anything. I was primarily intrigued by observing how other individuals were utilizing the application. Additionally, I had a complex emotional connection with the auditory perception of my own speech.

However, there is value in listening to Ravikant and Norgard articulate their perspective instead of solely relying on written transcriptions, as the latter may overlook subtle aspects such as excitement and tone. I am particularly interested in observing how deadpan humor and shitposting are conveyed, or not, in audio format.

I also encountered some difficulty with the velocity. The application automatically sets the audio playing to double the normal speed, which I found to be artificial, especially considering that the main purpose is to promote human interaction. To reset the speed, simply press and hold the pause button. However, when the speed is set to 1x, I observed that I would begin to skim through longer postings while listening, and I would often jump forward before listening to the entire audio. However, perhaps that is acceptable.

blank

However, Ravikant’s conviction in the efficacy of speech to reduce hostility does not always obviate the requirement for content-filtering functionalities. According to him, the feed operates based on intricate regulations that aim to conceal spam, trolls, and those that either you or they may prefer not to receive messages from. However, at the time of publication, he had not yet replied to a subsequent user inquiry regarding content moderation.

When questioned about monetization, namely the introduction of advertisements, whether in audio format or otherwise, Ravikant stated that the company is currently not under any obligation to generate revenue. (He characterized himself as “not the exclusive investor” but rather as a significant stakeholder in the company.)

“Monetization is of little importance to me,” he stated. “We will operate this project with minimal financial resources if necessary.”

Continue Reading

Trending