New Mobile Phone Forensics Tool

Security Update News

Update Information

Title New Mobile Phone Forensics Tool
Update ID SCHNEIER:12F34334135591873F7D198C89A9F7D6
Type schneier
Published 2025-07-18T11:07:34
Last Updated 2025-07-17T16:12:29

Security Impact

Severity NONE

Update Details

The Chinese have a new tool called Massistant.

> * Massistant is the presumed successor to Chinese forensics tool, “MFSocket”, reported in 2019 and attributed to publicly traded cybersecurity company, Meiya Pico.
> * The forensics tool works in tandem with a corresponding desktop software.
> * Massistant gains access to device GPS location data, SMS messages, images, audio, contacts and phone services.
> * Meiya Pico maintains partnerships with domestic and international law enforcement partners, both as a surveillance hardware and software provider, as well as through training programs for law enforcement personnel.

From a news article:

> The good news, per Balaam, is that Massistant leaves evidence of its compromise on the seized device, meaning users can potentially identify and delete the malware, either because the hacking tool appears as an app, or can be found and deleted using more sophisticated tools such as the Android Debug Bridge, a command line tool that lets a user connect to a device through their computer.
>
> The bad news is that at the time of installing Massistant, the damage is done, and authorities already have the person’s data.

Slashdot thread.

View Advisory Details

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.