❌

Normal view

There are new articles available, click to refresh the page.
Yesterday β€” 28 February 2025Main stream

Serbian student’s Android phone compromised by exploit from Cellebrite

28 February 2025 at 15:08

Amnesty International on Friday said it determined that a zero-day exploit sold by controversial exploit vendor Cellebrite was used to compromise the phone of a Serbian student who had been critical of that country's government.

The human rights organization first called out Serbian authorities in December for what it said was its β€œpervasive and routine use of spyware” as part of a campaign of β€œwider state control and repression directed against civil society.” That report said the authorities were deploying exploits sold by Cellebrite and NSO, a separate exploit seller whose practices have also been sharply criticized over the past decade. In response to the December report, Cellebrite said it had suspended sales to β€œrelevant customers” in Serbia.

Campaign of surveillance

On Friday, Amnesty International said that it uncovered evidence of a new incident. It involves the sale by Cellebrite of an attack chain that could defeat the lock screen of fully patched Android devices. The exploits were used against a Serbian student who had been critical of Serbian officials. The chain exploited a series of vulnerabilities in device drivers the Linux kernel uses to support USB hardware.

Read full article

Comments

Β© Getty Images

❌
❌