Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Compliance

Popular Mideast App Accused of Spying Back on Google Play

The popular UAE-developed mobile application ToTok has returned to the Google Play Store after it was removed on claims it was being used for government spying, the company said Saturday.

The popular UAE-developed mobile application ToTok has returned to the Google Play Store after it was removed on claims it was being used for government spying, the company said Saturday.

Google and Apple removed the app from their online marketplaces last month after The New York Times reported ToTok allowed the UAE government to track the conversations, movements and other details of people who installed it on their phone.

“We are happy to inform you #ToTok is now available for download on the Google Play Store,” a statement on ToTok’s Twitter account said.

On its platform, Google lists a series of “updates” to the app, including requesting access to permissions and data and a “newly designed dialog to ask your authorisation of accessing and syncing your contact list”.

The app remains unavailable on the Apple Store.

Apple told AFP that ToTok was removed from its App Store pending a review, while Google said it was taken down from the Play Store “for a policy issue”.

ToTok became popular by offering free calling and messaging to millions of users in countries like the United Arab Emirates where internet calling services like Skype are blocked.

Launched in 2019, ToTok was developed by Breej Holding, which The Times reported is likely a “front company” affiliated with DarkMatter, an Abu Dhabi-based cyberintelligence and hacking firm.

Advertisement. Scroll to continue reading.

The UAE’s Telecommunications Regulatory Authority denied the accusations, saying that the country’s laws “prohibit any kind of data breach and unlawful interception”.

Security researcher Patrick Wardle, who assisted The New York Times, has said ToTok appeared to be part of a “mass surveillance operation”, which “likely afforded in-depth insight in a large percentage of the country’s population”.

ToTok appeared to trick users of iPhones and Android devices into handing over access to their location and private data on their devices, Wardle said.

It was also promoted by what appeared to be fake reviews, he added.

The UAE is investing heavily in new technologies and artificial intelligence, but many experts and organisations accuse the country of strictly restricting freedoms on the internet.

Related: Army’s Use of TikTok App Raises Concerns on Capitol Hill

Related: US Senators Call for Security Probe of TikTok

Related: TikTok Sued in US Over Alleged China Data Transfer

Written By

AFP 2023

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Mike Dube has joined cloud security company Aqua Security as CRO.

Cody Barrow has been appointed as CEO of threat intelligence company EclecticIQ.

Shay Mowlem has been named CMO of runtime and application security company Contrast Security.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cyberwarfare

WASHINGTON - Cyberattacks are the most serious threat facing the United States, even more so than terrorism, according to American defense experts. Almost half...

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Cyberwarfare

Russian espionage group Nomadic Octopus infiltrated a Tajikistani telecoms provider to spy on 18 entities, including government officials and public service infrastructures.

Malware & Threats

The NSA and FBI warn that a Chinese state-sponsored APT called BlackTech is hacking into network edge devices and using firmware implants to silently...

Cyberwarfare

Several hacker groups have joined in on the Israel-Hamas war that started over the weekend after the militant group launched a major attack.

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...