The use of malware as a means of obtaining evidence in brazilian criminal proceedings

the need for specific law and the impossibility of analogous use of other procedural devices

Authors

  • Gabriel Rodrigo de Sousa UNESP
  • Simone Silva Prudêncio UFU
  • Flávia Maria Gomes Campos UNESP

DOI:

https://doi.org/10.14393/RFADIR-53.1.2025.80516.114-137

Keywords:

Malware, Evidence, Criminal procedure

Abstract

This study aims to analyze the possibility of using malware as a covert means of obtaining evidence in Brazilian criminal proceedings, examining its compatibility with the fundamental rights to privacy, intimacy, the inviolability of communications, and the principle of strict legality. To this end, the research adopts the hypothetical-deductive method, grounded in a specialized literature review and in the analysis of the paradigmatic precedent of the Brazilian Superior Court of Justice in RHC 99.735/SC, in which the legality of highly intrusive digital investigative techniques was assessed. The results indicate that the installation of malware in electronic systems—by enabling access to past, present, and future data, as well as permitting domestic monitoring through cameras and microphones—goes beyond the scope of Law No. 9.296/1996 and lacks support in the current procedural criminal framework, thereby preventing the use of analogy or extensive interpretation to legitimize such practices. Moreover, the study shows that the Superior Court of Justice, upon recognizing the hybrid and atypical legal nature of these technological instruments, reaffirmed the principle of procedural legality and the need for enhanced protection of intimacy within the context of “third-generation evidence.” The conclusions reached demonstrate that, although malware constitutes a highly effective investigative tool in light of the increasing sophistication of digital crime, its use in Brazil requires specific legislative regulation capable of establishing exhaustive hypotheses for its application, proportionality requirements, and adequate judicial oversight safeguards, lest the practice compromise the Democratic Rule of Law and the essential guarantees of criminal procedure.

Author Biographies

  • Gabriel Rodrigo de Sousa, UNESP

    Bacharel e Mestre em Direito pela UFU. Especialista em Direitos Humanos e Processo Penal. Doutorando Direito UNESP. Oficial Legislativo da Câmara Municipal de Uberlândia. Advogado. 

  • Simone Silva Prudêncio, UFU

    Graduada em Direito pela Universidade Federal de Uberlândia, em 1997, Especialista em Ciências Criminais pela Universidade Federal de Uberlândia, com título obtido em 1999, Mestre em Direito pela Instituição Toledo de Ensino, em Bauru, com título obtido em novembro de 2002, Doutora em Direito das Relações Sociais pela Pontifícia Universidade Católica de São Paulo, com título obtido em novembro de 2012, exerceu a função de advogada municipal efetiva da Prefeitura Municipal de Uberlândia, de abril de 2003 a junho de 2008, com experiência docente em Instituições de Ensino Superior privadas, desde agosto de 2001, nas disciplinas de Direito Penal, Direito Processual Penal, Legislação Penal e Processual Penal extravagante, Criminologia e Jurisprudência Penal. Atualmente, é professora efetiva pela Universidade Federal de Uberlândia, na Faculdade de Direito Professor Jacy de Assis.

  • Flávia Maria Gomes Campos, UNESP

    Advogada OAB/MG 234.139.
    Bacharela em Direito pela Universidade Federal de Lavras.
    Mestranda em Direito pela Universidade Estadual Paulista "Júlio de Mesquita Filho"

Published

2026-10-06

How to Cite

The use of malware as a means of obtaining evidence in brazilian criminal proceedings: the need for specific law and the impossibility of analogous use of other procedural devices. (2026). Journal of the Faculty of Law of the Federal University of Uberlândia, 53(1), 114-137. https://doi.org/10.14393/RFADIR-53.1.2025.80516.114-137