Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • NCSC and partners share guidance for those at high risk of digital surveillance

Security

NCSC and partners share guidance for those at high risk of digital surveillance

In new advisories, the National Cyber Security Centre (NCSC) – a part of GCHQ – and agencies in Australia, Canada, Germany, New Zealand and the US, have revealed details about how malicious cyber actors are using two forms of spyware to target individuals in Uyghur, Tibetan and Taiwanese communities as well as civil society groups.

Image by Titima Ongkantong / copyright Shutterstock

The malicious software – dubbed MOONSHINE and BADBAZAAR – hide malicious functions inside otherwise legitimate apps in a technique known as ‘trojanising’.

Once installed, the apps have been observed variously accessing functions including microphones, cameras, messages, photos, and location data, including real-time tracking, without the user being aware.

Advertisement
ODU RT

The advisories warn that the apps specifically target individuals internationally who are connected to topics that are considered by the Chinese state to pose a threat to its stability, with some designed to appeal directly to victims or imitate popular apps.

Examples include ‘Tibet One’ and Audio Quran apps that have supported targets’ native languages and were promoted in online forums frequented by intended users, as well as some apps imitating the likes of legitimate brands such as Whatsapp and Skype.  

Individuals at risk of being targeted by these spyware apps are strongly encouraged to follow new advice to help protect their devices and data.

Both advisories have been developed in collaboration with industry experts from the NCSC’s Cyber League.   

NCSC Director of Operations Paul Chichester said: "With our international and industry partners, we are committed to helping equip individuals at risk of online surveillance with the information they need to counter spyware threats."

Advertisement
ODU RT

"We are seeing a rise in digital threats designed to silence, monitor, and intimidate communities across borders, and the use of these two forms of spyware is clearly unacceptable."

"The NCSC urges people at higher risk to exercise heightened vigilance and follow our practical advice outlined in the advisory to help keep their devices and data safe."

A second advisory contains technical analysis of the spyware as well as steps that app store operators, developers and social media companies can take to keep their users safe.

The individuals most at risk include anyone connected to: Taiwanese independence, Tibetan rights, Uyghur Muslims and other ethnic minorities in or from China’s Xinjiang Uyghur Autonomous Region, democracy advocacy, including Hong Kong and the Falun Gong spiritual movement.

Advertisement
Roke Roke
NCA investigation leads to Border Force seizing £1m at Heathrow

Aerospace Security

NCA investigation leads to Border Force seizing £1m at Heathrow

11 April 2025

As a result of a National Crime Agency (NCA) investigation, a man has been charged with money laundering after the seizure of £1 million in suitcases by the UK's Border Force at Heathrow Airport.

Smiths Detection to supply SDX 6040 Systems to cruise line operators

Security

Smiths Detection to supply SDX 6040 Systems to cruise line operators

11 April 2025

Smiths Detection, part of Smiths Group plc, today announced it is to supply SDX 6040 X-ray inspection systems to a number of major cruise line operators.

Sentinel Photonics strengthens Eastern European defence capabilities via strategic partnerships

Defence Security

Sentinel Photonics strengthens Eastern European defence capabilities via strategic partnerships

9 April 2025

Sentinel Photonics has announced three pivotal partnerships in Eastern Europe.

Belfast company launches UK and Ireland’s first Cyber Battle competition

Security

Belfast company launches UK and Ireland’s first Cyber Battle competition

7 April 2025

Cyberspark has announced the launch of the UK and Ireland’s first Cyber Battle competition, an initiative aimed at positioning Northern Ireland as a global leader in cyber security, education and workforce development.

Advertisement
ODU RT
Smiths Detection and NeuralGuard drive responsible open architecture forward

Security

Smiths Detection and NeuralGuard drive responsible open architecture forward

3 April 2025

Smiths Detection has today announced a new partnership with NeuralGuard to advance AI-driven threat detection in security screening.

Leonardo’s PRS receiver certified for defence and emergencies across Europe

Defence Security Space

Leonardo’s PRS receiver certified for defence and emergencies across Europe

1 April 2025

Leonardo has designed, developed and built the only receiver specifically conceived for the ultra-secure Public Regulated Service (PRS) - provided by the Galileo satellite navigation service - which is currently accredited for use throughout Europe.

Advertisement
ODU RT