MOBILE SPYWARE - FROM NOSY ADS TO NATION-STATE ESPIONAGE presented at BsidesCa 2017

by Adam Bauer, Christoph T. Hebeisen,

Summary : Mobile devices hold a plethora of sensitive personal and corporate data. While most of us have accepted some limitations on our privacy in exchange for free services, we tend to consider contents and metadata of communications off limits. Frequently though, the treasure trove of data on our devices proves too tempting to advertisers, personal connections or governments. We discuss the spectrum of mobile spying by examining the motivations, selection of exfiltrated data, and target groups of 3 malware families including a demonstration of the Chrysaor surveillanceware used by state actors.