PanamaTimes

Thursday, Oct 17, 2024

‘Weaponised app’: Is Egypt spying on COP27 delegates’ phones?

‘Weaponised app’: Is Egypt spying on COP27 delegates’ phones?

Security analysts warn smartphone app for Sharm el-Sheikh climate talks could be used for spying as it has ‘highly intrusive’ access to locations, conversations and images.

Cybersecurity concerns have been raised at the United Nations’ COP27 climate talks over an official smartphone app that reportedly has carte blanche to monitor locations, private conversations and photographs.

About 35,000 people are expected to attend the two-week climate conference in Egypt, and the app has been downloaded more than 10,000 times on Google Play, including by officials from France, Germany and Canada.

Egypt’s Ministry of Communications and Information Technology developed the app for the summit’s delegates.

It is meant to assist attendees in smoothly navigating the conference, but “the government of Egypt may have weaponised the app and now has the ability to surveil all of the summit attendees”, David Bader, an expert in data science and cybersecurity, told Al Jazeera.

Analysts warn the COP27 app can extensively monitor the user’s movement and communications, and is able to read users’ email and encrypted messages, record phone conversations, and even scan the entire device for sensitive information.

Bader noted while the developer states the app does not collect data: “Surprisingly the app does have the strange ability to access the user’s name, phone number and email address, all of the user’s email – with the ridiculous explanation for ‘app functionality’ and one’s photos for ‘account management’.

“Would you want a stranger accessing your private photos, let alone a foreign government?” Bader said, warning there could be more clandestinely going on with the app.




No ‘smoking gun’ on data collection


The majority of apps ask permission to access various aspects of a smartphone, including location for GPS functions or cameras for social media, but users need to be cautious, said Kevin Curran, professor of cybersecurity at Ulster University.

“One has to ask whether each of these permissions are necessary,” Curran said, describing the COP27 app as “highly intrusive”.

“In this case, it is difficult to identify a smoking gun. What we cannot ascertain is whether the Egyptian government is using this for data collection,” Curran told Al Jazeera.

He noted, however, the app could continue to provide information on users even after the climate conference ends on November 18.




‘Refuted completely’


According to an analysis of the app by American media group Politico, it can monitor communications even when the device is in sleep mode.

Egypt’s COP27 ambassador Wael Aboulmagd denounced the speculation, telling reporters a cybersecurity assessment was completed and, “I was told how unlikely, or physically or technically impossible” it would be to use the app so intrusively.

Since it is available on Google Play and the Apple Store, those companies “would never allow that” because of security protocols, he added.

“There has been a cybersecurity assessment done and it refuted that completely,” said Aboulmagd.

But Bader warned delegates with the app on their phones remain vulnerable. “Intelligence may be gathered not just about their positions on climate change, but also on trade negotiations, political activities and military operations,” he said.


Some rights activists have criticised the decision for Egypt to host COP27, citing a long track record of cracking down on political dissent. Tens of thousands of people are estimated to have been jailed.

A number of attendees have shared that the WiFi at the climate conference blocks access to websites such as Human Rights Watch and Egypt’s independent outlet Mada Masr, as well as Al Jazeera.

For those concerned about the COP27 app, cybersecurity experts recommend using a “burner phone”, or secondary device, while being aware their conversations and other communications could be monitored.

Those who already have the app should uninstall it as a first step, they say.


Comments

Oh ya 2 year ago
Yup 400 private jets fly in and they then tell you to stop driving your 4 cylinder Toyota. Pay more tax and buy a energy use heavy electric vehicle and all will be good. You realize your electric car is power by a fossil fuel fired power plant i hope

Newsletter

Related Articles

PanamaTimes
0:00
0:00
Close
Meta Faces Legal Battle Over Teen Social Media Addiction
UK Government Proposes Weight-Loss Injections to Combat Obesity and Boost Employment
Russia's Call for a BRICS Financial System Alternative
Indigenous Groups in Brazil Protest Carbon Credit Deal
Tesla's Robotaxi Design Strikes Controversy
Boeing to Reduce Workforce by 10% Amid Financial Strain
Brazilian Man Arrested for Decades-long Abuse and Imprisonment of Family
Donald Trump Amplifies Anti-Migrant Sentiments in Colorado Speech
Mass Looting of Chicago Cargo Train: 50 to 150 Looters Ransack Containers in Chaotic Scene
The Impact of Online Culture on Young Women: Survey Insights
Hypersonic Jet to Revolutionize Air Travel
Facilitated Communication: Miracle Tool or Manipulative Method?
US Election 2024: A Deadlock Between Trump and Harris
Dominica Sells Citizenship to Boost Climate Resilience
Elon Musk's X Faces Fines and Account Error in Brazil
Scott Jennings leaves CNN panel speechless as he tears apart Tim Walz's flimsy excuse of being "too dumb to tell the truth."
Earth Faces Severe Geomagnetic Storm from Solar Flare
China-Led Bloc Challenges The Quad in Indo-Pacific Region
Biden-Harris sent forklifts to open the border when Texas built a razor wall.
Storm Helene Devastates Eastern and Midwestern US, Claims 44 Lives
Trump Taps Elon Musk to Lead Federal Spending Cuts, Promising Trillions in Savings
Importing voters: With an election looming, the U.S. is approving citizenship applications at the fastest speed in years.
Hurricane Helene Set to Slam Florida with 'Unsurvivable' Conditions
El Salvadoran President Bukele at the UN: "Some complain that we put thousands in prison. In reality, we set millions free."
Google Commits 120 Million Dollars for Global AI Education: Sundar Pichai
Tennessee Woman Sentenced for Attempted Murder-For-Hire
Amazon Rainforest Suffers Massive Deforestation
Earth's Planetary Boundaries Breached
Elon Musk’s X Circumvents Brazil’s Supreme Court Block
Brazilian Judge Accuses Elon Musk’s X of Circumventing Court-Ordered Ban
Venezuelan Opposition Leader Coerced into Recognizing Maduro's Victory
Brazil's Firefighters Battle Amazon Blazes and Arsonists
X Social Media Platform Ordered Offline Again in Brazil
Global Workdays Required to Afford iPhone 16
In his podcast, Joe Rogan rightly questioned, "YOU NEED A VACCINE PASSPORT FOR FOOD, BUT VOTER ID IS ‘RACIST'?!"
Trump Unveils New Cryptocurrency Venture Amidst Campaign
X Update Enables App to Bypass Brazil Ban, Say Internet Providers
Delta Airlines Sets Strict Wardrobe Guidelines for Flight Attendants
Norway Achieves Milestone in Electric Vehicle Adoption
Hezbollah Hit by Explosive Pagers in Lebanon
Ex-Soldier Describes Trump Assassination Suspect's Troubled Ukraine Stint
Ghislaine Maxwell's Sex-Trafficking Conviction Upheld by Appeals Court
El Salvador's Bold Move: President Bukele Declares End to External Debt Reliance, Thanks to Bitcoin
Murdoch Family Succession Battle Begins
TikTok Faces Potential Ban in the US Amid Free Speech Concerns
Secret Service Investigates Elon Musk's Controversial Social Media Post
Meta Bans Russian State Media Networks
Impact and Aftermath of 9/11 Attacks on the US and the World
Internet Surpasses TV as UK's Leading News Source
Significant Corruption Concerns in Covid Contracts
×