PanaTimes

Sunday, Mar 26, 2023

‘Weaponised app’: Is Egypt spying on COP27 delegates’ phones?

‘Weaponised app’: Is Egypt spying on COP27 delegates’ phones?

Security analysts warn smartphone app for Sharm el-Sheikh climate talks could be used for spying as it has ‘highly intrusive’ access to locations, conversations and images.

Cybersecurity concerns have been raised at the United Nations’ COP27 climate talks over an official smartphone app that reportedly has carte blanche to monitor locations, private conversations and photographs.

About 35,000 people are expected to attend the two-week climate conference in Egypt, and the app has been downloaded more than 10,000 times on Google Play, including by officials from France, Germany and Canada.

Egypt’s Ministry of Communications and Information Technology developed the app for the summit’s delegates.

It is meant to assist attendees in smoothly navigating the conference, but “the government of Egypt may have weaponised the app and now has the ability to surveil all of the summit attendees”, David Bader, an expert in data science and cybersecurity, told Al Jazeera.

Analysts warn the COP27 app can extensively monitor the user’s movement and communications, and is able to read users’ email and encrypted messages, record phone conversations, and even scan the entire device for sensitive information.

Bader noted while the developer states the app does not collect data: “Surprisingly the app does have the strange ability to access the user’s name, phone number and email address, all of the user’s email – with the ridiculous explanation for ‘app functionality’ and one’s photos for ‘account management’.

“Would you want a stranger accessing your private photos, let alone a foreign government?” Bader said, warning there could be more clandestinely going on with the app.




No ‘smoking gun’ on data collection


The majority of apps ask permission to access various aspects of a smartphone, including location for GPS functions or cameras for social media, but users need to be cautious, said Kevin Curran, professor of cybersecurity at Ulster University.

“One has to ask whether each of these permissions are necessary,” Curran said, describing the COP27 app as “highly intrusive”.

“In this case, it is difficult to identify a smoking gun. What we cannot ascertain is whether the Egyptian government is using this for data collection,” Curran told Al Jazeera.

He noted, however, the app could continue to provide information on users even after the climate conference ends on November 18.




‘Refuted completely’


According to an analysis of the app by American media group Politico, it can monitor communications even when the device is in sleep mode.

Egypt’s COP27 ambassador Wael Aboulmagd denounced the speculation, telling reporters a cybersecurity assessment was completed and, “I was told how unlikely, or physically or technically impossible” it would be to use the app so intrusively.

Since it is available on Google Play and the Apple Store, those companies “would never allow that” because of security protocols, he added.

“There has been a cybersecurity assessment done and it refuted that completely,” said Aboulmagd.

But Bader warned delegates with the app on their phones remain vulnerable. “Intelligence may be gathered not just about their positions on climate change, but also on trade negotiations, political activities and military operations,” he said.


Some rights activists have criticised the decision for Egypt to host COP27, citing a long track record of cracking down on political dissent. Tens of thousands of people are estimated to have been jailed.

A number of attendees have shared that the WiFi at the climate conference blocks access to websites such as Human Rights Watch and Egypt’s independent outlet Mada Masr, as well as Al Jazeera.

For those concerned about the COP27 app, cybersecurity experts recommend using a “burner phone”, or secondary device, while being aware their conversations and other communications could be monitored.

Those who already have the app should uninstall it as a first step, they say.


Comments

Oh ya 132 days ago
Yup 400 private jets fly in and they then tell you to stop driving your 4 cylinder Toyota. Pay more tax and buy a energy use heavy electric vehicle and all will be good. You realize your electric car is power by a fossil fuel fired power plant i hope

Newsletter

Related Articles

PanaTimes
Close
0:00
0:00
Powell: Silicon Valley Bank was an 'outlier'
Bordeaux town hall set on fire in France pro democracy protest
Police violence in Paris
Donald Trump arrested – Twitter goes wild with doctored pictures
NYPD is setting up barricades outside Manhattan Criminal Court ahead of Trump arrest.
Credit Suisse's Scandalous History Resulted in an Obvious Collapse - It's time for regulators who fail to do their job to be held accountable and serve as an example by being behind bars.
Paris Rioting vs Macron anti democratic law
'Sexual Fantasy' Assignment At US School Outrages Parents
The US government has charged Chinese businessman Guo Wengui with leading a $1 billion fraud scheme that cheated thousands of followers out of their money.
Credit Suisse to borrow $54 billion from Swiss central bank
Russian Hackers Preparing New Cyber Assault Against Ukraine
"Will Fly Wherever International Law Allows": US Warns Russia After Drone Incident
If this was in Tehran, Moscow or Hong Kong
TRUMP: "Standing before you today, I am the only candidate who can make this promise: I will prevent World War III."
Drew Barrymore
China is calling out the US, UK, and Australia on their submarine pact, claiming they are going further down a dangerous road
A brief banking situation report
Lady bites police officer and gets instantly reaction
We are witnessing widespread bank fails and the president just gave a 5 min speech then walked off camera.
Donald Trump's asked by Tucker Carlson question on if the U.S. should support regime change in Russia?.
Silicon Valley Bank exec was Lehman Brothers CFO
Elon Musk Is Planning To Build A Town In Texas For His Employees
The Silicon Valley Bank’s collapse effect is spreading around the world, affecting startup companies across the globe
City officials in Berlin announced on Thursday that all swimmers at public pools will soon be allowed to swim topless
Fitness scam
Market Chaos as USDC Loses Peg to USD after $3.3 Billion Reserves Held by Silicon Valley Bank Closed.
Senator Tom Cotton: If the Mexican Government Won’t Stop Cartels from Killing Americans, Then U.S. Government Should
Banking regulators close SVB, the largest bank failure since the financial crisis
Silicon Valley Bank: Struggles Threaten Tech Startup Ecosystem"
Man’s penis amputated by mistake after he’s wrongly diagnosed with a tumour
In a major snub to Downing Street's Silicon Valley dreams, UK chip giant Arm has dealt a serious blow to the government's economic strategy by opting for a US listing
It's the question on everyone's lips: could a four-day workweek be the future of employment?
Is Gold the Ultimate Safe Haven Asset in Times of Uncertainty?
Spain officials quit over trains that were too wide for tunnels...
Corruption and Influence Buying Uncovered in International Mainstream Media: Investigation Reveals Growing Disinformation Mercenaries
Givenchy Store in New York Robbed of $50,000 in Merchandise
European MP Clare Daly condemns US attack on Nord Stream
Former U.S. President Carter will spend his remaining time at home and receive hospice care instead of medication
Tucker Carlson called Trump a 'demonic force'
Kamala Harris: "The United States has formally determined that Russia has committed crimes against humanity."
US Joins 15 NATO Nations in Largest Space Data Collection Initiative in History
White House: No ETs over the United States
U.S. Jet Shoots Down Flying Object Over Canada
Nord Stream terror attack: David Sacks breaks down Sy Hersh's story
Being a Tiktoker might be expensive…
Miracle: El Salvador Search and Rescue teams, with the support of Turkish teams, rescued a woman and a child from the rubble 150 hours after the earthquake
SpaceX, the private space exploration company, made a significant breakthrough in their mission to reach space.
China's top tech firms, including Alibaba, Tencent, Baidu, NetEase, and JD.com, are developing their own versions of Open AI's AI-powered chatbot, ChatGPT
This shocking picture, showing how terrible is the results of the earthquake in Turkey
President Joe Biden delivered the 2023 State of the Union Address , in order to help Americans that missed the 2022 speech, do not have internet, and suffer from short memory.
×