China's Massistant Tool Secretly Extracts SMS, GPS Data, and Images From Confiscated Phones
Briefly

Massistant is a mobile forensics tool developed by SDIC Intelligence Xiamen Information Co., Ltd. for Chinese law enforcement. It is a successor to MFSocket and works with desktop software to extract data from mobile devices. The tool can access GPS location, SMS messages, images, audio, contacts, and phone services, requiring physical access for installation. Lookout obtained Massistant samples from 2019 to 2023, which were signed with an Android certificate associated with Meiya Pico. Upon launch, users must grant permissions, and exiting the app prompts an error message.
Massistant is a mobile forensics tool used by law enforcement in China for data extraction from seized devices, developed by SDIC Intelligence Xiamen Information Co.
The tool works with desktop software to access GPS data, SMS, images, audio, contacts, and phone services, with physical access required.
Massistant and its predecessor MFSocket require connection to desktop forensics software to extract data and prompt for permissions upon launch.
If a user tries to exit Massistant, a message indicates that it is in 'get data' mode and exiting will lead to an error.
Read at The Hacker News
[
|
]