Advertisement

This is how much an exploit merchant charges to break encryption

Its software gives hackers unlimited access to your phone.

Jack Guez/AFP/Getty Images

NSO Group, the exploit seller recently linked to a potential activist hack, charges just $650,000 to hack a group of 10 iPhones or Android devices, along with a $500,000 setup fee, the New York Times reports. For that cash outlay you'll get complete access to everything on those phones, including taking screenshots, capturing keystrokes and tracking GPS locations.

The Israeli firm can even tap into phone's microphones to record nearby sounds. It's not the only surveillance tech firm out there, but with tech companies making encryption more widely available to their customers, it's the sort of thing that governments are increasingly relying on.

An NSO Group spokesman says the company only sells its wares to authorized governments, who use it for criminal investigations. And sources tell the NYT that there's also a strong internal vetting process. Still, they also note that the company hasn't refused to sell its technology to any countries yet.

The company's tracking software, Pegasus, can also tap into BlackBerry and Symbian phones, on top of iPhones and Android devices. To get around encryption, the software can be installed via public WiFi hotspots, customized emails or texts, in-person or by "over the air stealth installation." Ahmed Mansoor, the human rights activist who brought NGO back into the news last month, was initially alerted by a strange text message with a link. Researchers found that the hack was trying to take advantage of three exploits in iOS, which Apple has been quick to fix.

According to the NYT, the NSO Group charges $500,000 to hack five BlackBerry users, and $300,000 for five Symbian phones, in addition to the setup fee. 10 additional targets will cost another $150,000; 20 more targets will cost $250,000; 50 will cost $500,000; and 100 more will cost $800,000.