Design World

  • Home
  • Technologies
    • ELECTRONICS • ELECTRICAL
    • Fastening • joining
    • FLUID POWER
    • LINEAR MOTION
    • MOTION CONTROL
    • SENSORS
    • TEST & MEASUREMENT
    • Factory automation
    • Warehouse automation
    • DIGITAL TRANSFORMATION
  • Learn
    • Tech Toolboxes
    • Learning center
    • eBooks • Tech Tips
    • Podcasts
    • Videos
    • Webinars • general engineering
    • Webinars • Automated warehousing
    • Voices
  • LEAP Awards
  • 2025 Leadership
    • 2024 Winners
    • 2023 Winners
    • 2022 Winners
    • 2021 Winners
  • Design Guides
  • Resources
    • 3D Cad Models
      • PARTsolutions
      • TraceParts
    • Digital Issues
      • Design World
      • EE World
    • Educational Assets
    • Engineering diversity
    • Reports
    • Trends
  • Supplier Listings
  • Advertise
  • SUBSCRIBE
    • MAGAZINE
    • NEWSLETTER

WikiLeaks: CIA Has Targeted Everyday Gadgets For Snooping

By Anick Jesdanun, AP Technology Writer | March 8, 2017

Maybe the CIA is spying on you through your television set after all.

Documents released by WikiLeaks allege a CIA surveillance program that targets everyday gadgets ranging from smart TVs to smartphones to cars. Such snooping, WikiLeaks said, could turn some of these devices into recorders of everyday conversations — and could also circumvent data-scrambling encryption on communications apps such as Facebook’s WhatsApp.

WikiLeaks is, for now, withholding details on the specific hacks used “until a consensus emerges” on the nature of the CIA’s program and how the methods should be “analyzed, disarmed and published.” But WikiLeaks — a nonprofit that routinely publishes confidential documents, frequently from government sources — claims that the data and documents it obtained reveal a broad program to bypass security measures on everyday products.

MORE PRIVACY CLASHES

If true, the disclosure could spark new privacy tensions between the government and the technology industry. Relations have been fraught since 2013, when former National Security Agency contractor Edward Snowden disclosed secret NSA surveillance of phone and digital communications.

Just last year, the two sides feuded over the FBI’s calls for Apple to rewrite its operating system so that agents could break into the locked iPhone used by one of the San Bernardino attackers. The FBI ultimately broke into the phone with the help of an outside party; the agency has neither disclosed the party nor the nature of the vulnerability, preventing Apple from fixing it.

According to WikiLeaks, much of the CIA program centered on dozens of vulnerabilities it discovered but didn’t disclose to the gadget makers. Common practice calls for government agencies to disclose such flaws to companies privately, so that they could fix them.

Instead, WikiLeaks claims, the CIA held on to the knowledge in order to conduct a variety of attacks. As a result, tech companies such as Apple, Google and Microsoft haven’t been able to make the necessary fixes.

“Serious vulnerabilities not disclosed to the manufacturers places huge swathes of the population and critical infrastructure at risk to foreign intelligence or cyber criminals who independently discover or hear rumors of the vulnerability,” WikiLeaks wrote in a press release. “If the CIA can discover such vulnerabilities so can others.”

A BIG YAWN TO SOME

Not everyone is worried, though.

Alan Paller, director of research for the cybersecurity training outfit SANS Institute, said the case boils down to “spies who use their tools to do what they are paid to do.” He said criminals already have similar tools — and he’s more worried about that.

Rich Mogull, CEO of the security research firm Securosis, said that agencies gathering intelligence on other organizations and governments need, by definition, technical exploits that aren’t public.

If they’re authentic, the leaked CIA documents frame a stark reality: It may be that no digital conversation, photo or other slice of life can be shielded from spies and other intruders prying into smartphones, personal computers, tablets or just about device connected to the internet.

“It’s getting to the point where anything you say, write or electronically transmit on a phone, you have to assume that it is going to be compromised in some way,” said Robert Cattanach, a former U.S. Department of Justice attorney who now specializes in cybersecurity and privacy for the law firm Dorsey & Whitney.

SIDESTEPPING ENCRYPTION

WikiLeaks claims the hacks allowed the CIA to collect audio and other messages from data-scrambling communication apps such as WhatsApp, Signal, Telegram and Confide by intercepting data before it is encrypted or after it’s decoded. The CIA didn’t appear to compromise the apps themselves, but rather the phone’s underlying operating system.

WikiLeaks says the CIA had separate teams looking for vulnerabilities in iPhones and Android phones and also targeted tablets such as iPads. According to WikiLeaks, the vulnerabilities were discovered by the CIA itself or obtained from other government agencies and cyberweapon contractors.

CARS, TRUCKS AND TVS

WikiLeaks also claims that the CIA worked with U.K. intelligence officials to turn microphones in Samsung smart TVs into listening devices. The microphones are normally there for viewers to make voice commands, such as requests for movie recommendations. If the TV is off, there’s no listening being done.

But WikiLeaks claims that a CIA hack makes the target TV appear to be off when it’s actually on — and listening. WikiLeaks says the audio goes to a covert CIA server rather than a party authorized by Samsung. In such cases, audio isn’t limited to TV commands but could include everyday conversations.

Other tools in the CIA’s arsenal target PCs running Microsoft’s Windows system, according to WikiLeaks, which says many of the attacks are in the form of viruses designed to spread through CDs and USB drives.

WikiLeaks also says the CIA was also targeting control systems used by cars and trucks. Although WikiLeaks didn’t have details on how that might be used, it said the capability might allow the CIA to “engage in nearly undetectable assassinations.”

Microsoft said it was aware of the reports and was looking into them.

Apple said an initial analysis showed many of the security gaps brought up in the leaked documents were already patched in the latest iOS.

“We will continue work to rapidly address any identified vulnerabilities,” it said.

Google and Samsung didn’t immediately respond to requests for comment. In a statement, General Motors said it would be premature to comment on the documents, including its authenticity. But GM added that it knew of no injuries or death resulting from the hacking of a vehicle.

___

AP Technology Writers Michael Liedtke in San Francisco and Mae Anderson in New York and Auto Writer Tom Krisher in Detroit contributed to this report.

You Might Also Like


Filed Under: Cybersecurity, Industry regulations + certifications

 

LEARNING CENTER

Design World Learning Center
“dw
EXPAND YOUR KNOWLEDGE AND STAY CONNECTED
Get the latest info on technologies, tools and strategies for Design Engineering Professionals.
Motor University

Design World Digital Edition

cover

Browse the most current issue of Design World and back issues in an easy to use high quality format. Clip, share and download with the leading design engineering magazine today.

EDABoard the Forum for Electronics

Top global problem solving EE forum covering Microcontrollers, DSP, Networking, Analog and Digital Design, RF, Power Electronics, PCB Routing and much more

EDABoard: Forum for electronics

Sponsored Content

  • Digitalization made easy: Bridging IT/OT with scalable network infrastructure
  • Apple Rubber custom o-rings for harsh underwater conditions
  • ASMPT chooses Renishaw for high-quality motion control
  • Innovating Together: How Italian Machine Builders Drive Industry Forward Through Collaboration
  • Efficiency Is the New Luxury — and Italy Is Delivering
  • Beyond the Build: How Italy’s Machine Makers Are Powering Smart Manufacturing
View More >>
Engineering Exchange

The Engineering Exchange is a global educational networking community for engineers.

Connect, share, and learn today »

Design World
  • About us
  • Contact
  • Manage your Design World Subscription
  • Subscribe
  • Design World Digital Network
  • Control Engineering
  • Consulting-Specifying Engineer
  • Plant Engineering
  • Engineering White Papers
  • Leap Awards

Copyright © 2025 WTWH Media LLC. All Rights Reserved. The material on this site may not be reproduced, distributed, transmitted, cached or otherwise used, except with the prior written permission of WTWH Media
Privacy Policy | Advertising | About Us

Search Design World

  • Home
  • Technologies
    • ELECTRONICS • ELECTRICAL
    • Fastening • joining
    • FLUID POWER
    • LINEAR MOTION
    • MOTION CONTROL
    • SENSORS
    • TEST & MEASUREMENT
    • Factory automation
    • Warehouse automation
    • DIGITAL TRANSFORMATION
  • Learn
    • Tech Toolboxes
    • Learning center
    • eBooks • Tech Tips
    • Podcasts
    • Videos
    • Webinars • general engineering
    • Webinars • Automated warehousing
    • Voices
  • LEAP Awards
  • 2025 Leadership
    • 2024 Winners
    • 2023 Winners
    • 2022 Winners
    • 2021 Winners
  • Design Guides
  • Resources
    • 3D Cad Models
      • PARTsolutions
      • TraceParts
    • Digital Issues
      • Design World
      • EE World
    • Educational Assets
    • Engineering diversity
    • Reports
    • Trends
  • Supplier Listings
  • Advertise
  • SUBSCRIBE
    • MAGAZINE
    • NEWSLETTER
We use cookies to personalize content and ads, to provide social media features, and to analyze our traffic. We share information about your use of our site with our social media, advertising, and analytics partners who may combine it with other information you’ve provided to them or that they’ve collected from your use of their services. You consent to our cookies if you continue to use this website.