Belgrade, Dec 18, 2024 – NoviSpy spyware exploits Qualcomm flaws to target Serbian journalists and activists. Cellebrite tools aid installation. Stricter regulations are urgently needed.
A chilling revelation has rocked Serbia as a new Android spyware called NoviSpy exploits critical Qualcomm vulnerabilities to infiltrate devices.
First discovered after journalist Slaviša Milanov’s phone exhibited suspicious behavior, Amnesty International’s Security Lab has uncovered a web of digital espionage involving Serbian authorities and advanced tools like Cellebrite UFED.
This spyware, while less sophisticated than infamous Pegasus, has the ability to remotely activate microphones and cameras, capture sensitive personal data, and enable zero-click attacks through Android’s Rich Communication Suite (RCS) features. Qualcomm’s unpatched vulnerabilities, including CVE-2024-49848, played a pivotal role in enabling this attack chain.
Donncha Ó Cearbhaill, Head of Amnesty’s Security Lab said:
Our forensic evidence proves NoviSpy was installed while Serbian police had possession of Slaviša’s device.
A similar infection targeted environmental activist Nikola Ristić, pointing to a systematic misuse of surveillance tools. The spyware’s deployment highlights the troubling role of Cellebrite’s forensic products, which Amnesty claims are used to bypass device security before planting spyware.
Dinushika Dissanayake, Amnesty’s Deputy Regional Director for Europe emphasized:
This misuse of technology violates international law and endangers human rights.
The report also sheds light on Serbia’s decade-long procurement of spyware, with ties to notorious vendors like NSO Group. Google’s Threat Analysis Group collaborated on the investigation, identifying five additional Qualcomm vulnerabilities exploited in the attack chain.
As these revelations unfold, human rights advocates demand stricter oversight of surveillance tools to protect civil society from digital repression.
Other News At VPNRanks
Hey, wait!
Stay informed on the latest privacy updates, cybersecurity insights, and internet freedom news by following VPNRanks news daily! As your primary resource for critical updates in online security, we ensure you’re always in the know. Make VPNRanks your go-to guide for safeguarding your digital life!