{"id":4556,"date":"2016-09-01T00:00:00","date_gmt":"2016-09-01T00:00:00","guid":{"rendered":"https:\/\/amabhungane.org\/amabhungane\/stories\/meet-the-grabber-how-govt-and-criminals-can-spy-on-you-and-how-to-protect-yourself\/"},"modified":"2016-09-01T00:00:00","modified_gmt":"2016-09-01T00:00:00","slug":"meet-the-grabber-how-govt-and-criminals-can-spy-on-you-and-how-to-protect-yourself","status":"publish","type":"post","link":"https:\/\/further.co.za\/amabwp\/meet-the-grabber-how-govt-and-criminals-can-spy-on-you-and-how-to-protect-yourself\/","title":{"rendered":"Meet the grabber: how govt and criminals can spy on you (and how to protect yourself)"},"content":{"rendered":"<p>A phone signal grabber or IMSI-catcher is one of the most powerful devices for conducting surveillance and invading your privacy \u2013 legally or illegally. Which is why not just anyone is allowed to possess one. This little beauty can perform loads of magic tricks including cloning your phone, intercepting calls and SMSes, turning your phone into a transmitter and much, much more.<\/p>\n<p>Last week an Israeli-made cellphone signal grabber, or IMSI-catcher, made headlines after <em>amaBhungane<\/em> published <a href=\"http:\/\/www.dailymaverick.co.za\/article\/2016-08-27-amabhungane-the-smuggler-the-spook-and-the-grabber\/\">an investigation<\/a> into Willie Lotter and Joseph Pooe, who were arrested by the Hawks for the alleged illegal possession of an IMSI-catcher.<\/p>\n<p>The implications of this device are enormous. In the wrong hands, it can be used to eliminate political rivals, curb a free press by targeting investigative journalists, and in the case of Lotter and Pooe, allegedly help bug members of the Airports Company of South Africa\u2019s bid adjudication committee which makes decision on contracts worth hundreds of millions of rand, according to <em>The Star<\/em>.<\/p>\n<p>What is even more frightening is that in recent years, IMSI-catcher technology &#8211; which was previously only within the grasp of governments \u2013 is now accessible to hackers and researchers who have been able to successfully build their own grabbing devices.<\/p>\n<p>Most recently, a research team from Helsinki and Berlin were able to build an IMSI-catcher device that works on newer 4G\/LTE networks (more advanced even than the Engage PI2\u2019s capabilities) and is able to precisely pinpoint a cellphone\u2019s location based on the signals it transmits when using apps such as WhatsApp and Facebook, with no knowledge from the owner of the phone that tracking is taking place.<\/p>\n<p>But what exactly is the device, and what can it do?<\/p>\n<p>IMSI-catchers, or grabbers, have been around since 1996, with German and Israeli companies pioneering the early technologies. The first publicly known IMSI-catcher was made by German electronics manufacturer <a href=\"https:\/\/www.rohde-schwarz.com\/us\/news-press\/press-room\/corporate-background_229354.html\">Rohde &amp; Schwarz<\/a>. Subsequent manufacturers have marketed the devices as <a href=\"http:\/\/www.pki-electronic.com\/products\/interception-and-monitoring-systems\/active-gsm-monitoring-system-with-imsi-catcher-and-decryption-unit\/\">\u201canti-terror equipment\u201d<\/a> with many law enforcement and intelligence agencies across the world making use of the devices \u2013 most notably and controversially perhaps is the use of the Stingray phone tracker by US police.<\/p>\n<p>Thanks to our friends from the amaBhungane Centre for Investigative Journalism,\u00a0<em>Daily Maverick<\/em> is in possession of a user manual for the Verint Engage GI2, a grabber which functions very similarly to the Engage PI2 device confiscated from Lotter and Pooe by the Hawks. <em>(See main photo)<\/em><\/p>\n<p>Simply, the device works as a cellphone tapper, tracker and locator. It does this by masquerading as a cellphone tower and forcing nearby handsets to connect to it. Once a handset has connected, the device can identify the target handset\u2019s international mobile subscriber identity (IMSI) number and use the number to track the phone\u2019s movements, pinpoint its location, intercept its calls, or eavesdrop on conversations occurring around the phone.<\/p>\n<p>This is all done covertly, and the data collected is analysed in real time by the device. Some grabbers, such the Engage PI2 and GI2, have sim cards that allow them to reroute the captured calls to third parties.<\/p>\n<p>The device comes in either a trolley case or attache-style case, and is controlled by a laptop computer. Most often the device is operated from a vehicle to allow it to get closer to target handsets \u2013 in the case of Lotter and Pooe, the unit was <a href=\"http:\/\/www.dailymaverick.co.za\/article\/2016-08-27-amabhungane-the-smuggler-the-spook-and-the-grabber\/\">installed in a Mercedes Viano<\/a>.<\/p>\n<p>The device falls under a special category of equipment in South Africa designated for the interests of national security and can therefore only be bought with presidential authority, and is said to be worth more than R25-million.<\/p>\n<p>The Engage GI2 has a number of features:<\/p>\n<p><strong>GSM Call Routing<\/strong>: The unit allows the user to route a target phone\u2019s call through the device and into the real GSM network, effectively acting as an invisible \u201cman in the middle\u201d who is able to eavesdrop on the target\u2019s conversation.<\/p>\n<p><img decoding=\"async\" src=\"http:\/\/cdn.mg.co.za\/content\/images\/2016\/09\/01\/750x489q70operationalconcept.jpg\" \/><\/p>\n<p><strong>Cloning<\/strong>: The device allows the user to clone a target\u2019s phone and make\/receive calls and text messages that will appear as if they are coming from the target\u2019s number.<\/p>\n<p><strong>SMS<\/strong>: The device allows the user to simulate a cell network, forcing phones over a large area to connect to the device. Once connected, the device is able to capture all text messages sent over that period.<\/p>\n<p><strong>Silent call<\/strong>: This function initiates a call to the target phone, turning the phone\u2019s transmitter into a location tracking beacon. While a silent call is active, the target phone is disconnected from the real network, shifted to an unused channel and cannot make or receive any calls. While a silent call is active, the phone appears to be in standby mode and can be used as a tracking device to determine the target\u2019s movements.<\/p>\n<p><strong>Eavesdropper<\/strong>: The device allows the user to listen and record audio from the target phone\u2019s handset. As described in the manual, \u201cThis functionality turns a target\u2019s own mobile phone against the target by turning it into a \u2018bug\u2019. The voice from the target\u2019s mobile is being recorded from the time the mobile starts ringing. The voice will continue to be recorded after the target hangs up.\u201d<\/p>\n<p>The device enables its operator to identify potential and known targets and build an intelligence picture in an area of operation. It also can help identify a potential target &#8211; it records all calls and SMSes and enables operators to listen to any call that appear relevant. The operator can choose to focus the operation on the targets for ongoing monitoring.<\/p>\n<p>It can build an intelligence picture of a known target by intercepting target\u2019s traffic according to predefined cellular identifiers, key words and voiceprints.<\/p>\n<p>\u201cThe real scandal here is not around this particular grabber,\u201d says Murray Hunter, spokesperson for the Right2Know Campaign, \u201cbut rather that the state has its own such devices. We don\u2019t know how many, we don\u2019t know how they\u2019re used, but what we do know is that the use of these devices is almost certainly illegal in terms of RICA.<\/p>\n<p>\u201cA judge has to sign a warrant before the state can intercept someone\u2019s phone information,\u201d he continues, \u201cand a grabber is a mass surveillance device so when you turn it on you\u2019re immediately intercepting 10,000 signals and you\u2019re tapping the phone of everyone in that radius.\u201d<\/p>\n<p>In <a href=\"http:\/\/www.r2k.org.za\/2015\/09\/03\/surveillance-device\/\">September last year<\/a>, Right2Know submitted a Promotion of Access to Information Act (PAIA) request to SAPS and SSA for evidence that they were given warrants to use these surveillance services, but all PAIA requests were denied.<\/p>\n<p>All\u2019s not lost, however. There are some steps that can be taken to prevent the government (or anyone else) from snooping on you with one of these devices. Various smartphone apps are now available which can minimise the risk of your signals being intercepted. One is the <a href=\"https:\/\/github.com\/CellularPrivacy\/Android-IMSI-Catcher-Detector\">Android IMSI-Catcher Detector<\/a> which alerts you if an IMSI-catcher attempts to connect to your phone and then blocks the signal. Another is\u00a0<a href=\"https:\/\/play.google.com\/store\/apps\/details?id=de.srlabs.snoopsnitch&amp;hl=en\">SnoopSnitch<\/a> which operates in a similar way.<\/p>\n<p>Some may not be concerned about this device and its capabilities because they may think they have \u201cnothing to hide\u201d, but that fundamentally misses the point. These capabilities in the wrong hands fundamentally violate our constitutional right to privacy of communications, and as Edward Snowden said, \u201cArguing that you don\u2019t care about the right to privacy because you have nothing to hide is no different than saying you don\u2019t care about free speech because you have nothing to say.\u201d<\/p>\n<p>\u201cThe next step for the public is not just about seeing the prosecution of a few shady characters,\u201d Murray Hunter says, \u201cbut really pushing government to come clean on how it uses surveillance and how it created the situation in which these men can be caught with an imported grabber in the boot of their car.\u201d<\/p>\n<p><em>This produced by the<\/em><em>\u00a0<a href=\"http:\/\/www.dailymaverick.co.za\/article\/2016-09-01-meet-the-grabber-how-government-and-criminals-can-spy-on-you-and-how-to-protect-yourself\/#.V8fhVJN96Hp\" target=\"_blank\" rel=\"noopener\">Daily Maverick<\/a>, <\/em><em>and republished with thanks.\u00a0<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The implications of this device are enormous.<\/p>\n","protected":false},"author":2,"featured_media":22477,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2],"tags":[],"class_list":["post-4556","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-stories"],"acf":[],"_links":{"self":[{"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/posts\/4556","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/comments?post=4556"}],"version-history":[{"count":0,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/posts\/4556\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/media\/22477"}],"wp:attachment":[{"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/media?parent=4556"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/categories?post=4556"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/further.co.za\/amabwp\/wp-json\/wp\/v2\/tags?post=4556"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}