{"repo":"gommzystudio/device-activity-tracker","free":true,"listed":false,"github":"https://github.com/gommzystudio/device-activity-tracker","clone":"git clone https://github.com/gommzystudio/device-activity-tracker.git","description":"A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak sensitive device-activity patterns. (WhatsApp / Signal)","language":"TypeScript","stars":5088,"topics":["phone-number","signal","tracking","whatsapp","poc","baileys","exploit","messenger","nodejs","react"],"license":null,"category":"chat-messaging","readme_excerpt":"Device Activity Tracker WhatsApp & Signal Activity Tracker via RTT Analysis ⚠️ DISCLAIMER : Proof-of-concept for educational and security research purposes only. Demonstrates privacy vulnerabilities in WhatsApp and Signal. Overview This project implements the research from the paper \"Careless Whisper: Exploiting Silent Delivery Receipts to Monitor Users on Mobile Instant Messengers\" by Gabriel K. Gegenhuber, Maximilian Günther, Markus Maier, Aljosha Judmayer, Florian Holzbauer, Philipp É. Frenzel, and Johanna Ullrich (University of Vienna & SBA Research). What it does: By measuring Round-Trip Time (RTT) of WhatsApp message delivery receipts, this tool can detect: - When a user is actively using their device (low RTT) - When the device is in standby/idle mode (higher RTT) - Potential location changes (mobile data vs. WiFi) - Activity patterns over time Security implications: This demonstrates a significant privacy vulnerability in messaging apps that can be exploited for surveillance. Example The web interface shows real-time RTT measurements, device state detection, and activity patterns. Installation Requirements: Node.js 20+, npm, WhatsApp account Usage Docker (Recommended) The easiest way to run the application is using Docker: The application will be available at: - Frontend: http://localhost:3000 (or your configured CLIENT PORT ) - Backend: http://localhost:3001 (or your configured BACKEND PORT ) To stop the containers: Manual Setup Web Interface Open http://localhost:30","default_branch":null,"files":null,"tree":[],"storefront":"/r/gommzystudio","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/gommzystudio/device-activity-tracker/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}