WhatsUpp with Commercial Hacking Tools in Government Hands?

If you're like 1.5 billion other people on the planet – or if you are Jared Kushner – you conduct a lot of your personal or business conversations on WhatsApp, the Facebook-owned messaging app that says it's largely impervious to snoopers, hackers, and spooks.

But according to a bombshell report in The Financial Times earlier this week, the app has long contained a critical flaw that's enabled hackers to tap into your smartphone just by placing a WhatsApp voice call to you.

The hack relied on a program written by the Israeli tech firm NSO, which designs powerful snooping tools for law enforcement and counterterrorism officials in the Middle East and "western countries."

But it appears that political dissidents, human rights activists, and even a lawyer filing a liability suit against NSO itself were targeted – the FT report doesn't say who the attackers were.

WhatsApp says the bug has been fixed as of Monday. But this story – in which a commercial hacking program sold to governments was used to violate people's privacy and snoop on dissidents –illustrates a few big political challenges that we've highlighted in discussions about cybersecurity.

Cyber-arms control is hard. Cyberweapons, being scripts of computer code, can be very hard to control and contain, even with close oversight of who gets to buy them.

Mission creep is easy. Companies like NSO say they sell these products only to police and counterterrorism officials – but once they are in government hands, they can be used (or sold, or stolen) for other purposes or by other parts of the state.

Liability is murky. Who should be held accountable here: NSO for developing a product that was used beyond its (presumably) stated intent? Or WhatsApp for failing to guarantee the security of its own platform?

Surveillance and espionage are hardly new. But never before has there been a device that contained as much data about your thoughts, habits, preferences, movements, and personal relationships as the device you're holding or reading right this second.

The upshot: With hackers, governments, and commercial developers all trying to figure out how best to crack into it – what are the rules of the game?

More from GZERO Media

Police arrest Emory economics professor Caroline Fohlin during a rally in which Pro-Palestinian protestors set up an encampment at the Emory Campus in Atlanta, on Thursday, April 25, 2024.
Arvin Temkar/The Atlanta Journal-Constitution/TNS/ABACAPRESS.COM

Pro-Palestinian student demonstrations and encampments have popped up at dozens of US universities in recent weeks. Columbia University – where protests began – and other elite schools in the Northeast have grabbed plenty of headlines, but where they are facing the harshest pushback – and could ultimately help Republicans win back the White House – is in the South.

A cannabis rights activist waves a flag outside the Eisenhower Executive Office Building in Washington, D.C. on Oct. 24, 2022.
Alejandro Alvarez/Reuters

The Biden admin. says it’s high time to reclassify marijuana as a less dangerous drug, and it wants to knock it from Schedule I to Schedule III — meaning it would no longer be grouped with heroin and LSD.

Supporters and armed members of the Fatah movement protest against the Palestinian Hamas government during a rally in Jabalya camp September 22, 2006.
REUTERS/Mohammed Salem

Beijing, already a global economic power, wants to cut a larger figure in diplomacy, cultivating an image as a more honest broker than the US, with closer ties to the so-called “Global South.”

TikTok logo on a phone surrounded by the American, Israeli, and Chinese flags.
Jess Frampton

Last Wednesday, as part of the sweeping foreign-aid package that included much-neededfunding for Ukraine’s defense, President Joe Biden signed into law a bill requiring that TikTok’s Chinese owner, ByteDance, sell the popular video-sharing app to an American buyer within a year or face a ban in the United States.

Russia And China benefit from US infighting, says David Sanger | GZERO World with Ian Bremmer

On GZERO World, Pulitzer prize-winning New York Times correspondent David Sanger argues that China's rise and Russia's aggressive stance signal a new era of major power competition, with both countries fueling instability in the US to distract from their strategic ambitions.

NYPD officers arrive at Columbia University on April 30, 2024, to clear demonstrators from an occupied hall on campus.

John Lamparski/NurPhoto via Reuters

Last night, hundreds of NYPD officers entered Columbia University in riot gear, one night after students occupied a building on campus and 13 days after students pitched an encampment that threw kerosene on a student movement against the war in Gaza.

Israel seems intent on Rafah invasion despite global backlash | Ian Bremmer | World In :60

How will the international community respond to an Israeli invasion of Rafah? How would a Trump presidency be different from his first term? Are growing US campus protests a sign of a chaotic election in November? Ian Bremmer shares his insights on global politics this week on World In :60.