Very possibly there is no need to make a long introduction when speaking about the famous FinSpy application, a product of the company FinFisher from
The large amount - 40 GB - of data downloaded illegally offers a topic for easy chat and also seriously concerns all those professionally, politically or just superficially interested.
I intend to deliver you the details of my research made on one of the stolen codes, made for Android phones. After presenting its structure we'll try to bring it to life in order to test its abilities. As a result of the analysis we will be able to create a well-crafted SMS which is able to disclose the exists of the tool on a device. Furthermore, with this technique, we will be able to hijack the tool and we would gain full access on the device - thus we may have a law-enforcement tool to spy for us.
It goes without saying that it's not a common application we are used to seeing everywhere. The technical solutions are quite interesting.