BlackBerry 'spyware' can steal secrets

Research in Motion's (RIM) BlackBerry which is popular with corporate users due to its secure management of mobile e-mail is vulnerable to 'legal' spyware that has been classified as a Trojan by several security vendors.

RIM's BlackBerry has won significant market share in the corporate sector due to a perception that it is impervious to security attacks.

But an updated version of the FlexiSPY application, considered a security threat by most IT security vendors, enables a remote attacker to tap into phone calls and e-mails sent to and from a Blackberry-enabled device.

"This is the first [Trojan] for a BlackBerry we have ever seen," said Patrik Runald, senior security specialist with F-Secure.

Marketed as a spyware device for BlackBerry phones, the FlexiSPY application by Bangkok-based manufacturer Vervata is sold on the premise that it can "spill BlackBerry secrets."

Once physically installed on a mobile device, a remote user is given complete monitoring and access control.

This includes bugging voice calls, logging mobile e-mail messages and SMS, tracking the location of the user, or even remotely switching on the phone's microphone to bug a user regardless of whether they are on a call.

While FlexiSPY also works on Windows Mobile and Symbian-based devices, and is sold on the premise of catching a cheating spouse, 'disloyal' employee or for the monitoring children, there can be no doubt that a BlackBerry targeted version is aimed squarely at corporate espionage.

Its use in a boardroom, for example, could have catastrophic implications for any organisation.

RIM, manufacturer of the BlackBerry, was unavailable for comment by press time.

Advertisement

Talkback 2 comments

  1. JOKE ARTICLE Anonymous -- 03/07/07

    Seriously, who edits this? This passes for journalism?

    1. oi, anon. Anonymous -- 05/07/07

      do you have a blackberry?

      do you ever, even for 5 minutes, let it out of your sight?

      if you have done -- even once -- you might want to think about the consequences.

Add your opinion


Latest Videos

ZDNet's CIO Vision Series

Department of Defence | Greg Farr, CIO (part two)

In the second part of his interview, Defence CIO Greg Farr talks about outsourcing, the skills crisis and reveals his most urgent IT priority.

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Angus Kidman I'm a celebrity, don't back me up
    Celebrity comes with its perks — free alcohol, better-looking partners, lots of holiday time — and disadvantages — constant media intrusions, being forced to appear in films with Eddie Murphy for the long-term good of your career, and having to do mindless radio interviews with angry men who've been awake since 4am.
  • Array Lies, damned lies and telco stupidity
    Earlier this month, Telstra put out a press release trumpeting that it's come up with a new phone coaching service to help people who are "bamboozled" by their mobiles. Another excellent example of wrongheaded thinking from the mobile industry.
  • Array Dear carriers: More walking, less talking
    Sometimes, a well-placed and well-timed letter can make all the difference. Other times, it can make no difference at all — and even hurt your case. This week's missive by the Competitive Carriers' Coalition, I would suggest, falls into the latter category.
  • More blogs »

Tags

Back to top

Featured