Monday, May 11, 2026
English News
  • Hyderabad
  • Telangana
  • AP News
  • India
  • World
  • Entertainment
  • Sport
  • Science and Tech
  • Business
  • Rewind
  • ...
    • NRI
    • View Point
    • cartoon
    • My Space
    • Education Today
    • Reviews
    • Property
    • Lifestyle
E-Paper
  • NRI
  • View Point
  • cartoon
  • My Space
  • Reviews
  • Education Today
  • Property
  • Lifestyle
Home | News | Forget Pegasus New Spyware Hermit Now Being Used By Govts

Forget Pegasus, new spyware ‘Hermit’ now being used by govts

New Delhi: Cyber-security researchers have unearthed a new enterprise-grade Android spyware called ‘Hermit’ that is being used by the governments via SMS messages to target high-profile people like business executives, human rights activists, journalists, academics and government officials. The team at cyber-security company Lookout Threat Lab uncovered the ‘surveillanceware’ that was used by the government of […]

By IANS
Published Date - 18 June 2022, 11:30 AM
Forget Pegasus, new spyware ‘Hermit’ now being used by govts
whatsapp facebook twitter telegram

New Delhi: Cyber-security researchers have unearthed a new enterprise-grade Android spyware called ‘Hermit’ that is being used by the governments via SMS messages to target high-profile people like business executives, human rights activists, journalists, academics and government officials.

The team at cyber-security company Lookout Threat Lab uncovered the ‘surveillanceware’ that was used by the government of Kazakhstan in April, four months after nationwide protests against government policies were violently suppressed.


“Based on our analysis, the spyware, which we named ‘Hermit’ is likely developed by Italian spyware vendor RCS Lab and Tykelab Srl, a telecommunications solutions company we suspect to be operating as a front company,” the researchers said in a blog post.

This isn’t the first time Hermit has been deployed.

Italian authorities used it in an anti-corruption operation in 2019.

“We also found evidence suggesting that an unknown actor used it in northeastern Syria, a predominantly Kurdish region that has been the setting of numerous regional conflicts,” the team noted.

RCS Lab, a known developer that has been active for over three decades, operates in the same market as Pegasus developer NSO Group Technologies and Gamma Group, which created FinFisher.

RCS Lab has engaged with military and intelligence agencies in Pakistan, Chile, Mongolia, Bangladesh, Vietnam, Myanmar and Turkmenistan.

Collectively branded as “lawful intercept” companies, they claim to only sell to customers with legitimate use for surveillanceware, such as intelligence and law enforcement agencies.

“In reality, such tools have often been abused under the guise of national security to spy on business executives, human rights activists, journalists, academics and government officials,” the researchers warned.

Hermit is a modular spyware that hides its malicious capabilities in packages downloaded after it’s deployed.

These modules, along with the permissions the core apps have, enable Hermit to exploit a rooted device, record audio and make and redirect phone calls, as well as collect data such as call logs, contacts, photos, device location and SMS messages.

“We theorise that the spyware is distributed via SMS messages pretending to come from a legitimate source. The malware samples analysed impersonated the applications of telecommunications companies or smartphone manufacturers,” said the Lookout team.

Hermit tricks users by serving up the legitimate webpages of the brands it impersonates as it kickstarts malicious activities in the background.

The researchers said they are also aware of an iOS version of Hermit “but were unable to obtain a sample for analysis”.

According to leaked documents published in WikiLeaks, RCS Lab was a reseller for another Italian spyware vendor HackingTeam, now known as Memento Labs, as early as 2012.

Hermit is a highly configurable spyware with enterprise-grade capabilities to collect and transmit data.

The spyware also attempts to maintain data integrity of collected aevidence’ by sending a hash-based message authentication code (HMAC).

“In a sense, electronic surveillance tools are not that different from any other type of weaponry. Just this month, faced with financial pressure, CEO of the NSO group Shalev Hulio opened up the possibility of selling to ‘risky’ clients,” said the researchers.

Pegasus was developed by the Israeli cyber company NSO Group that can be covertly installed on mobile phones and other devices.

It was capable of reading text messages, tracking calls, collecting passwords, location tracking, accessing the target device’s microphone and camera, and harvesting information from apps.

The spyware has been used for surveillance of activists, journalists and political leaders from several nations around the world, including in India.

The Supreme Court-appointed technical committee last month informed the court that it would submit the Pegasus probe report soon.

The committee informed the top court that 29 mobile devices have been examined.

The Supreme Court gave more time to the technical committee to finalise and submit its report.

  • Follow Us :
  • Tags
  • cyber-security
  • govt
  • Hermit
  • Pegasus

Related News

  • CrowdStrike details causes of Microsoft outage

    CrowdStrike details causes of Microsoft outage

  • Apple issues spyware threat alert to iPhone users in 98 countries

    Apple issues spyware threat alert to iPhone users in 98 countries

  • Researchers report surge in fake Pegasus spyware on dark web

    Researchers report surge in fake Pegasus spyware on dark web

  • Govt likely to step in as tomatoes go from boom to bust

    Govt likely to step in as tomatoes go from boom to bust

Latest News

  • Future of youth auctioned: Rahul Gandhi’s sharp attack on Modi govt over NEET

    2 hours ago
  • TCA appeal to HCA top official seeking restraint

    2 hours ago
  • Term Insurance vs Whole Life Insurance: Which One Should You Pick

    2 hours ago
  • ZKTOR Signals India’s Bid to Shape South Asia’s Next Digital Order

    2 hours ago
  • GHMC reports 1.27 lakh online self-enumeration entries

    3 hours ago
  • West Bengal CEO Manoj Agarwal named Chief Secretary under BJP rule

    3 hours ago
  • Q1 fuel losses may wipe out entire FY earnings of State oil firms

    3 hours ago
  • Sanshray Kumar emerges champion

    2 hours ago

company

  • Home
  • About Us
  • Contact Us
  • Privacy Policy

business

  • Subscribe

telangana today

  • Telangana
  • Hyderabad
  • Latest News
  • Entertainment
  • World
  • Andhra Pradesh
  • Science & Tech
  • Sport

follow us

  • Telangana Today Telangana Today
Telangana Today Telangana Today

© Copyrights 2024 TELANGANA PUBLICATIONS PVT. LTD. All rights reserved. Powered by Veegam