cybersécurité

The FBI’s phone for criminals included a custom version of Android

The phones the FBI sold to crooks for a sting operation weren’t just running a custom app — it appears the operating system was also tweaked for those goals. Motherboard has obtained one of the « Anom » phones (really, a modified Pixel 4a), and its mysterious « ArcaneOS » has a number of customizations that you wouldn’t necessarily expect, even for a privacy-oriented phone.

For one, there are no app stores. You also can’t toggle location tracking. And don’t think you can simply flash the device with third-party firmware to make it behave more like normal phones — the bootloader is locked even though the startup screen tells you the device has been modified.

Some user said Anom was based on the existing GrapheneOS, but Anom may have lied to buyers about the software to instill a false sense of trust.

The interface does include some security features that would appeal to the criminal target audience, including a hidden chat app (accessed through the « calculator » when it worked) and PIN scrambling. A wipe code feature that lets you erase a phone from the lock screen is also present, although the Justice Department clearly didn’t like that feature when it charged some Anom developers with alleged obstruction of law enforcement.

At least one second-hand Anom phone owner say they got a Pixel 3a, suggesting the FBI transitioned to different devices as the sting unfolded.

You wouldn’t want to buy one of these devices, then, even for curiosity’s sake. However, it’s now clear just how far the FBI went to bust criminals. The agency wanted to give unsuspecting drug dealers the impression they were using a true encrypted phone, right down to the OS, even as the device quietly exposed messages to law enforcement agents.

Veille-cyber

Recent Posts

Directive NIS 2 : Comprendre les obligations en cybersécurité pour les entreprises européennes

Directive NIS 2 : Comprendre les nouvelles obligations en cybersécurité pour les entreprises européennes La…

1 jour ago

NIS 2 : entre retard politique et pression cybersécuritaire, les entreprises dans le flou

Alors que la directive européenne NIS 2 s’apprête à transformer en profondeur la gouvernance de…

2 jours ago

Quand l’IA devient l’alliée des hackers : le phishing entre dans une nouvelle ère

L'intelligence artificielle (IA) révolutionne le paysage de la cybersécurité, mais pas toujours dans le bon…

3 jours ago

APT36 frappe l’Inde : des cyberattaques furtives infiltrent chemins de fer et énergie

Des chercheurs en cybersécurité ont détecté une intensification des activités du groupe APT36, affilié au…

3 jours ago

Vulnérabilités des objets connectés : comment protéger efficacement son réseau en 2025

📡 Objets connectés : des alliés numériques aux risques bien réels Les objets connectés (IoT)…

6 jours ago

Cybersécurité : comment détecter, réagir et se protéger efficacement en 2025

Identifier les signes d'une cyberattaque La vigilance est essentielle pour repérer rapidement une intrusion. Certains…

6 jours ago

This website uses cookies.