Wiretapping Skype calls: virus eavesdrops on VoIP

September 2, 2009 By JORDAN ROBERTSON , AP Technology Writer

(AP) -- Some computer viruses have a crude but scary ability to spy on people by logging every keystroke they type. Now hackers and potentially law enforcement have another weapon: a virus that can eavesdrop on voice conversations that go over computers instead of a regular phone line.

The capability has been shown in a new "Trojan horse" virus that records Voice over Internet Protocol (VoIP) calls through the popular service. Skype calls are free or low cost and can work between two computers or between one computer and a phone.

There were 480 million Skype users worldwide at the end of June, but it's unlikely many would be hit by the new virus. It's better suited for targeted rather than mass infections because criminals would have to sift through an unfathomable amount of audio recordings generated by the virus.

Law enforcement in the U.S. would presumably need a court order to surveil someone's Skype calls, but the barriers to deploying the virus might be lower for intelligence agencies and authorities in other countries.

The virus, which security firm Symantec Corp. calls the first "wiretap Trojan," doesn't target a particular vulnerability in Skype. Instead, it hooks into parts of the Windows operating system that handle audio processing. Then it intercepts all audio data coming from Skype before it's encrypted by the software, according to Symantec's analysis.

The audio gets saved as MP3 files and can be sent to computers controlled by the criminals.

"It's more interesting than dangerous," said Kevin Haley, director of Symantec Security Response. "It's an espionage tool. That's its clear purpose. It's not practical for any type of broad-based attacks."

The virus was designed and released by Ruben Unteregger, a Swiss programmer who said he started researching on his own before turning it into a project for his employer, ERA IT Solutions.

In 2006 the software company was reported by the Swiss newspaper SonntagsZeitung to have been working on a VoIP-cracking virus for the Swiss government, an account Unteregger said he couldn't confirm because of a nondisclosure agreement he signed for the project.

ERA IT Solutions says it never had an order from a government agency to develop the program, and that it stopped working on it when Unteregger left the company last year.

"This is Ruben's affair only," said company representative Riccardo Gubser.

Unteregger said in an e-mail interview with the AP that his goal in releasing the virus' programming code was to make people aware that "we are now becoming a surveillance society" and that "police Trojans are reality and questionable."

©2009 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.


print this article email this article download pdf blog this article bookmark this article     Stumble it Digg this share on Facebook retweet share on Reddit add to delicious
Rate this story - 5 /5 (4 votes)

Rank Filter

Move the slider to adjust rank threshold, so that you can hide some of the comments.


Display comments: newest first

  • fixer - Sep 02, 2009
    • Rank: not rated yet
    This should bankrupt Skype overnight.
    Many of these skype calls are medical in nature and are priviliged info.
  • RayCherry - Sep 03, 2009
    • Rank: not rated yet
    Skype joins all the other phone and communications providers who are unable to ensure privacy for any client.

September 2, 2009 all stories

Comments: 2

5 /5 (4 votes)
  • Stumble this up

  • Digg this

  • share this

  • hide
  • Related Stories

  • Skype user reports protocol hack
    created Jul 17, 2006 | popularity not rated yet | comments 0
  • Skype comes to iPhones on Tuesday
    created Mar 30, 2009 | popularity not rated yet | comments 0
  • New trojan detected for Microsoft Word
    created May 22, 2006 | popularity not rated yet | comments 0
  • Make Free Internet Calls From Your Regular Phone With Internet Phone Wizard
    created Jan 08, 2005 | popularity not rated yet | comments 0
  • Motorola and Skype announce certified Bluetooth headset
    created Nov 22, 2005 | popularity not rated yet | comments 0



  • hide
  • Relevant PhysicsForums posts

  • Aspiring Engineering major looking for general answers
    created Nov 19, 2009
  • Calculating max load of square tube (steel)
    created Nov 19, 2009
  • Passive Chemical Heating
    created Nov 19, 2009
  • Shortening Boat Trailer
    created Nov 18, 2009
  • More from Physics Forums - General Engineering

Other News

China is the world's largest emitter of the greenhouse gases blamed for global warming

China harnesses mountain wind power

Technology / Energy

created 6 hours ago | popularity 5 / 5 (2) | comments 0

In the mountains above the southwestern Chinese town of Dali, dozens of new wind turbines dot the landscape -- a symbol of the country's sky-high ambitions for clean, green energy.


Hackers leak e-mails, stoke climate debate

Technology / Internet

created 17 hours ago | popularity 4.4 / 5 (21) | comments 18

(AP) -- Computer hackers have broken into a server at a well-respected climate change research center in Britain and posted hundreds of private e-mails and documents online - stoking debate over whether some scientists have ...


Analysts say AmEx is most interested in the so-called peer-to-peer services of Revolution

American Express takes aim at PayPal with Revolution

Technology / Internet

created 3 hours ago | popularity not rated yet | comments 0

With its deal to buy Revolution Money, American Express is taking aim at the growing market for online and alternative payments, in a challenge to recognized leader PayPal, analysts say.


Ubisoft steps up videogame fitness with virtual coach

Technology / Software

created 6 hours ago | popularity not rated yet | comments 0

French videogame powerhouse Ubisoft will have a virtual fitness coach whipping Wii users into shape starting Tuesday.


plug-in hybrid electric vehicle

Pulling the plug on hybrid myths

Technology / Energy

created Nov 19, 2009 | popularity 3.8 / 5 (12) | comments 17

(PhysOrg.com) -- Whether you call them myths, urban legends, fables or old wives' tales, there's a lot of misinformation out there about plug-in electric hybrid vehicles. These vehicles, abbreviated PHEVs, ...