SIM maker Gemalto confirms possible spy attacks

Image
AFP Paris
Last Updated : Feb 25 2015 | 5:00 PM IST
European SIM maker Gemalto today said it had suffered hacking attacks that may have been conducted by US and British intelligence agencies but denied any "massive theft" of encryption keys that could be used to spy on conversations.
Investigative website The Intercept last week said the US National Security Agency and Britain's GCHQ hacked into the firm in 2010 and 2011 and stole SIM encryption keys, with which they can reportedly monitor communications over mobiles without using a warrant or wiretap.
The website made the allegations on the theft of the keys -- which encrypt and decrypt data -- based on a document leaked by former NSA contractor Edward Snowden, and its report prompted some experts to decry a huge breach in mobile privacy.
"In 2010 and 2011, we detected two particularly sophisticated intrusions which could be related to the operation," Gemalto said in a statement.
"During the same period, we also detected several attempts to access the PCs of Gemalto employees who had regular contact with customers," it added.
"At the time we were unable to identify the perpetrators but we now think that they could be related to the NSA and GCHQ operation."
But the company denied that these attacks resulted in a large-scale theft of encryption keys.
"The attacks against Gemalto only breached its office networks and could not have resulted in a massive theft of SIM encryption keys," it said.
The company said the aim of the operation was to intercept the encryption keys as they were exchanged between mobile operators and suppliers such as Gemalto.
But "by 2010, Gemalto had already widely deployed a secure transfer system with its customers and only rare exceptions to this scheme could have led to theft."
"In the case of an eventual key theft, the intelligence services would only be able to spy on communications on second generation 2G mobile networks.
"3G and 4G networks are not vulnerable to this type of attack."
The NSA has come under intense scrutiny both at home and abroad after Snowden leaked documents from June 2013 about government surveillance programmes that sweep up data from Americans as well as foreigners.
The revelations led to a public outcry and strained relations with US allies.
Snowden, who fled the United States, has now sought temporary asylum in Russia.
*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

First Published: Feb 25 2015 | 5:00 PM IST

Next Story