Browse Definitions :
Definition

microphone hacking

Microphone hacking is the unauthorized interception of audio data captured through the microphone on a computer, smartphone or other device.

In 2014, whistleblower Edward Snowden revealed that government and intelligence community representatives could remotely activate a target smartphone’s microphone without causing any device behaviors that might alert the user. Smartphones that have been activated for surveillance purposes are sometimes referred to as roving bugs. In 2016, researchers at Ben Gurion University in Israel created a proof-of-concept hack that exploited the microphones in headphones to capture conversation as much as 20 feet away from the device.

As the Internet of Things (IoT) develops, more and more devices are equipped with microphones for voice interaction and communications. Microphones that have been activated unbeknownst to the users have been reported in various types of devices including not only mobile devices but also smart TVs, home automation hubs and smart speakers.

In a consumer surveillance context, a device microphone might be accessed to eavesdrop on user conversations for data that can be used for targeted advertising. Countless people have reported, for example, that Facebook ads have appeared featuring products and services that they had only spoken of and had neither searched for nor mentioned in text chat online.

On Mashable, Kellen Beck explained how to protect your device from microphone hacking: Plug a microphone-equipped pair of earbuds into the audio jack and cut off the bud end with the microphone on it just below the mic. When you plug the earbuds in, the device switches default audio input from the internal mic to the external one, and since you've removed the external mic, it can't capture audio.

This was last updated in November 2017

Continue Reading About microphone hacking

SearchCompliance
  • OPSEC (operations security)

    OPSEC (operations security) is a security and risk management process and strategy that classifies information, then determines ...

  • smart contract

    A smart contract is a decentralized application that executes business logic in response to events.

  • compliance risk

    Compliance risk is an organization's potential exposure to legal penalties, financial forfeiture and material loss, resulting ...

SearchSecurity
  • identity provider

    An identity provider (IdP) is a system component that provides an end user or internet-connected device with a single set of ...

  • remote access

    Remote access is the ability for an authorized person to access a computer or network from a geographical distance through a ...

  • malware

    Malware, or malicious software, is any program or file that is intentionally harmful to a computer, network or server.

SearchHealthIT
SearchDisasterRecovery
  • synchronous replication

    Synchronous replication is the process of copying data over a storage area network, local area network or wide area network so ...

  • What is risk mitigation?

    Risk mitigation is a strategy to prepare for and lessen the effects of threats faced by a business.

  • change control

    Change control is a systematic approach to managing all changes made to a product or system.

SearchStorage
  • cold storage

    Cold storage is a computer system or mode of operation designed for the retention of inactive data.

  • tiered storage

    Tiered storage is a method for assigning different categories of data to various types of storage media to reduce overall storage...

  • secondary storage

    Secondary storage is persistent storage for noncritical data that doesn't need to be accessed as frequently as data in primary ...

Close