- cross-posted to:
- globalnews@lemmy.zip
- cross-posted to:
- globalnews@lemmy.zip
Self-scans reveal that Pegasus, an invasive and powerful spyware that can secretly control phones and track owners, might be more widespread than previously thought. It was discovered on the phones of everyday phone users.
From wikiHow: How to Check Your Smartphone for Pegasus Spyware
Amnesty International provides a FOSS tool to check your mobile backups for traces of the Pegasus Spyware. I’d trust that over a sketchy proprietary app. Link: https://docs.mvt.re/.
Cool. I had no idea. Still…
MVT is a forensic research tool intended for technologists and investigators. Using it requires understanding the basics of forensic analysis and using command-line tools. MVT is not intended for end-user self-assessment. If you are concerned with the security of your device please seek expert assistance.
It can help you if you think you are BUT especially with iPhones it can only scan your backup, unless you jailbreak the phone and can do a full disk dump.
As a mobile security expert this is just one of the tools in the kit, but it ought not be used by a “end user” as a verification tool. This does NOT verify you aren’t being tracked, it can only verify that signatures of the malware exist.
And would signatures of Pegasus exist in the backup?
Yes. Maybe. Sometimes. Much more likely if you do an encrypted backup and decrypt it with the tool.
Regardless it’s not guaranteed to pick them up.
May give it a try one of these days. But knowing nothing of the reliability of the tool in detecting the malware decreases my motivation to even try I must say.
The warning was meant for you.
Everyone is safe from Pegasus …
Except cell phone owners (which is most everyone)
Exception to the exception : people who know about this excellent FOOS tool (and know someone who can use it) - - thanks
Ugh. So it looks like I can’t even do this with Termux. Gotta dig out one of my few cables that does data transfer.
You can use pip to install the tool.
it’s call mvt
Your package manager might have it.
If you’re on a Mac just use brew to install it.
Don’t use this third party app.
Download a random app an execute it blindly to check for some malware I’ve never heard of? Hard pass.
I fully understand, but not knowing about Pegasus malware is pretty weird. It’s state actor spyware made by Israel (with worldwide governmental funding).
If you’ve been around tech circles for any length of time, sure, but your average person probably hasn’t heard of it.
I’ve doublechecked this, and you are indeed correct. The news is still reported on, but Pegasus is not always mentioned by name and if it is it’s mostly a single mention in a little passage.
And google pixel flashed on Ubuntu touch? 😏
I’m hoping my Pixel flashed w/ GrapheneOS is good to go.
I forgot about Ubuntu touch. How is the experience?
Terrible experience. Nothing works, everything slow, and the main thing inside the blobs is still android, without which of course it will not work
Yeah, probably.
deleted by creator
I don’t think I saw it mentioned but if you’re already running/subbed to bitdefender av then you can install that on phone to detect it.
I’d be careful about completely trusting any AV to give you any certainty that you aren’t infected.
As I mentioned in another comment, Pegasus is comprised of many different exploits. So just because Bitdefender can detect some older Pegasus variants, doesn’t mean it can detect all of them.
In fact it’s quite unlikely they can detect the latest variants.
I don’t care. I’m a wage slave. Not a senator or exec at some financial firm.
Cool I bet you sleep with your curtains/blinds open, don’t lock your doors and post your address online right? Who cares about privacy.
Hey, that’s the mexican goverment’s favorite to spy on activists and journalists :D