UNCOS

Serbian student’s Android phone compromised by exploit from Cellebrite

Serbian student’s Android phone compromised by exploit from Cellebrite

image via Ars Technica

February 28, 2025, 11:08 PM

  • Amnesty International says Serbian authorities used a Cellebrite exploit to target a student who was critical of the government.
  • The exploit targeted Linux kernel USB drivers and could affect a wide range of devices.
  • Android users who haven't installed Google's February patch batch should do so ASAP.

Amnesty International has discovered that Serbian authorities used a zero-day exploit sold by controversial exploit vendor Cellebrite to compromise the phone of a Serbian student who had been critical of that country's government. The exploit targets core Linux kernel USB drivers, and could affect a very wide range of devices. The February 2025 Android Security Bulletin patched one of the vulnerabilities, but two others have not yet been incorporated into Android. Any Android users who have yet to install the February patch batch should do so as soon as possible.

Read original article

Entities Mentioned

Amnesty InternationalSerbian authoritiesCellebrite

Topics Covered

Biz & ITSecurityAmnesty InternationalandroidCellebritenso groupzero days

Comments (0)

No comments yet.