Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

Man Pleads Guilty to Selling StealthGenie Spyware

A Danish citizen pleaded guilty Tuesday in federal court to selling StealthGenie, a spyware application capable of remotely monitoring calls, texts, videos and other communications on mobile devices undetected.

A Danish citizen pleaded guilty Tuesday in federal court to selling StealthGenie, a spyware application capable of remotely monitoring calls, texts, videos and other communications on mobile devices undetected.

Hammad Akbar, 31, chief executive officer of InvoCode Pvt. Limited and Cubitium Limited, was ordered to pay a fine of $500,000 for advertising and selling StealthGenie online. StealthGenie could be installed on a variety of mobile phones, including the iPhone, Android devices, and Blackberry. Once installed, it could intercept all conversations and text messages sent using the phone. The app was undetectable by most users and was advertised as being untraceable, according to authorities.

“Spyware is an electronic eavesdropping tool that secretly and illegally invades individual privacy,” said Assistant Attorney General Leslie R. Caldwell, in a statement. “Make no mistake: selling spyware is a federal crime, and the Criminal Division will make a federal case out if it. [Tuesday’s] guilty plea by a creator of the StealthGenie spyware is another demonstration of our commitment to prosecuting those who would invade personal privacy.”

On Sept. 26, 2014, a court issued a temporary restraining order authorizing the FBI to temporarily disable the website hosting StealthGenie, which was hosted from a data center in Ashburn, Virginia. The court later converted the order into a temporary injunction, and the website remains offline. On Sept. 27, Akbar was arrested in Los Angeles. In addition to ordering him to pay the fine, the court sentenced him to time served and mandated that he forfeit the source code for StealthGenie to the government.

Advertisement. Scroll to continue reading.

In order to install the app, the purchaser needed at least temporary possession of the target phone, according to authorities. Once the app was activated, it was started as a background service and set up to launch automatically when the phone was powered on. The only time that the app interacted with the screen was during activation, and the icon for the app was removed from the phone’s menu.  Akbar admitted that because of these characteristics, a typical smartphone user would not know that StealthGenie had been installed on his or her smartphone.   

Akbar also admitted to distributing an advertisement for StealthGenie through his website on Nov. 5, 2011, and to selling the app to an undercover agent of the FBI on Dec. 14, 2012, authorities said. 

“The defendant advertised and sold a spyware app that could be secretly installed on smart phones without the knowledge of the phones owner,” said U.S. Attorney Dana J. Boente of the Eastern District of Virginia, in a statement. “This spyware app allowed individuals to intercept phone calls, electronic mail, text messages, voicemails and photographs of others. The product allowed for the wholesale invasion of privacy by other individuals, and this office in coordination with our law enforcement partners will prosecute not just users of apps like this, but the makers and marketers of such tools as well.”

Written By

Marketing professional with a background in journalism and a focus on IT security.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.