Tag: spyware
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 111
Tags: banking, botnet, edr, infrastructure, international, linux, malware, ransomware, spyware, windowsSecurity Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Akira Hits Safe Mode: Ransomware Rebooting Around EDR Multi-Functional Linux Botnet “Evooo1Bot” StubMaker RubyGems Campaign Delivers a Windows Infostealer Hunting MacSync Stealer infrastructure through behavioral pivots Manic: Blend between Banking Malware & Spyware […]…
-
Your Expired Visa Card Could Be ‘Zombified’ to Make Contactless Payments
Plus: Apple sends out an “unprecedented” number of spyware warnings, Ukraine hits a Russian ecommerce giant with cyber and drone attacks, and more. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-your-expired-visa-card-could-be-zombiefied-to-make-contactless-payments/
-
Lawmakers seek watchdog review of federal hacking of Americans
Sen. Ron Wyden and Rep. Greg Casar want a GAO probe on the government’s use of spyware and other sophisticated hacking tools and authorities. First seen on cyberscoop.com Jump to article: cyberscoop.com/watchdog-review-federal-government-hacking-americans/
-
Senator asks US government watchdog to review how feds use hacking tools
Senator Ron Wyden sent a letter to the U.S. federal watchdog requesting a comprehensive review of how the FBI, DEA, ICE’s HSI, and the Secret Service use hacking tools and spyware against Americans. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/21/senator-asks-us-federal-watchdog-to-review-how-feds-use-hacking-tools/
-
New Manic Android Malware Targets 169 Apps, Steals PINs and Exfiltrates Data via Wi-Fi Mesh
A newly discovered Android malware family called Manic, which combines banking fraud functions with advanced spyware and remote device control capabilities. The operation’s active infrastructure dates back to February 2026, with early wrappers and implants emerging in late May. Manic has rapidly evolved through July, incorporating stronger anti-analysis protections, in-memory DEX loading, lock-screen phishing, and…
-
Manic: The Android Malware That Exfiltrates Data Even When the Phone Is Offline
Manic Android malware combines banking fraud and spyware, using a Bluetooth relay to steal data even when devices are offline. ThreatFabric’s Mobile Threat Intelligence team has identified a new Android malware, dubbed Manic, which has been active in the wild since at least February 2026. The researchers state that the malware is still under development…
-
Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices
A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications, as well as Russian and European financial institutions, global fintech and cryptocurrency services, and military-focused communications.”Manic sits at the intersection of Android banking malware and mobile spyware, combining financial-fraud First seen on thehackernews.com Jump to…
-
Apple Warns Users in 110 Countries of Mercenary Spyware as iPhone Alerts Get Harder to Miss
Apple sent a new wave of mercenary spyware threat notifications to targeted users in 110 countries, while making the warnings more visible on iPhones. The alerts signal suspected targeting, not confirmed compromise, and Apple is urging affected users to verify the warning, consider Lockdown Mode, and seek expert help. The post Apple Warns Users in…
-
FBI Pegasus Records Expose a Blind Spot in US Spyware Oversight
Federal court records show how far the FBI’s Pegasus review progressed, and why new US spyware reporting will still leave major gaps in government hacking transparency. The post FBI Pegasus Records Expose a Blind Spot in US Spyware Oversight appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-fbi-pegasus-spyware-oversight/
-
‘Unprecedented’ number of Apple users received recent spyware alert, say investigators
Cybersecurity experts who investigate spyware attacks say the number of people who received a recent threat notification from Apple is unusually high. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/17/unprecedented-number-of-apple-users-received-recent-spyware-alert-say-investigators/
-
US Courts To Begin Publishing Spyware Records From 2029
U.S. courts will begin separately tracking spyware-based interceptions, giving the public new data on government hacking while leaving key gaps. The post US Courts To Begin Publishing Spyware Records From 2029 appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-us-courts-government-spyware-wiretap-report/
-
Chinese-linked LightSpy spyware expands to over a dozen countries
First seen on scworld.com Jump to article: www.scworld.com/brief/chinese-linked-lightspy-spyware-expands-to-over-a-dozen-countries
-
China-Linked Surveillance Platform Spans at Least 117 Servers, Targets Routers
LightSpy, a China-linked surveillance platform, has grown into an operation using at least 117 servers with verified router infections. At Black Hat USA, Arctic Wolf researchers Dmitry Bestuzhev and Dmitry Melikov said LightSpy has been identified in more than 13 countries, growing well beyond the spyware, active since at least 2018 and publicly documented in…
-
Spyware auf Routern: Chinesische Spionageangriffe auf Europa aufgedeckt
Tags: spywareForscher konnten die Lightspy-Spyware zu einem chinesischen Unternehmen zurückverfolgen. Aufgeflogen ist dieses wohl wegen einer KFC-Bestellung. First seen on golem.de Jump to article: www.golem.de/news/spyware-auf-routern-chinesische-spionageangriffe-auf-europa-aufgedeckt-2608-211710.html
-
China-linked LightSpy spyware caught targeting victims in 13 countries, including the US
Researchers linked the latest malicious activity to a Chinese company, after one of the spyware’s operators placed an order with KFC using their real name and office address. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/06/china-linked-lightspy-spyware-caught-targeting-victims-in-13-countries-including-the-us/
-
KI macht Smartphones zur neuen Hochrisiko-Zone der Unternehmens-IT
Mobile Endgeräte rücken durch KI-gestützte Angriffe ins Zentrum der Cyberabwehr. Der »Global Mobile Threat Report 2026« von Zimperium zeigt, wie stark Phishing, Spyware, Schatten-KI und unsichere KI-generierte Apps die mobile Sicherheitslage in Unternehmen verschärfen und warum klassische Endpoint-Strategien nicht mehr ausreichen. Management Summary Mobile Security wird zur KI-Frage: KI-gesteuerte Phishing-Angriffe auf Mobilgeräte sind laut… First…
-
Bahrain cannot claim sovereign immunity for spyware attack against UK dissidents, top UK court rules
The UK’s Supreme Court rules that Bahrain cannot claim sovereign immunity for infecting the computers of two UK-based dissidents with German-made FinFisher spyware. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366646130/Bahrain-cannot-claim-sovereign-immunity-for-spyware-attack-against-UK-dissidents-top-UK-court-rules
-
UK court rejects Bahrain immunity claim in spyware case
The alleged hacking by officials in Bahrain “allowed access to and exfiltration of information on the computers, interception of communications conducted using the computers and use of the computers’ microphones and cameras to surveil the respondents,” according to the court opinion. First seen on therecord.media Jump to article: therecord.media/uk-court-rejects-bahrain-immunity-claim-spyware-case
-
The hacker who humiliated spyware makers and was never caught
An awe-inspiring hacktivist who hacked two controversial government spyware makers may be the most prolific hacker to have never gotten caught. What do we know about Phineas Fisher? First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/25/the-hacker-who-humiliated-spyware-makers-and-was-never-caught/
-
ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories
Most of this week’s trouble came dressed as something useful.A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Other threats hid in open systems, weak code, and normal network traffic. The threats change every week. Subscribe, and we’ll alert you…
-
Fake Bahrain Alert App Deploys Android Surveillance Malware
A malicious application delivers four-stage Android spyware via phony Google Play sites, exploiting civilian fear during Iranian missile strikes. First seen on darkreading.com Jump to article: www.darkreading.com/mobile-security/fake-bahrain-alert-apps-android-surveillance-malware
-
ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories
A lot of this week’s trouble starts with something that looks close enough.A familiar repo. A useful installer. A harmless sync setting. Then the handoff goes bad, the box starts talking to someone else, and the damage moves faster than the explanation.Old bugs are back, weak defaults are earning their keep, and some attack paths…
-
Greek victims file lawsuit against Intellexa over Predator spyware
The use of the spyware came to light in 2022, with traces of Predator found on dozens of phones. The scandal led to the resignation of Greece’s intelligence service chief and the prime minister’s chief of staff. First seen on therecord.media Jump to article: therecord.media/greek-victims-file-lawsuit-against-intellexa-spyware
-
RedWing Android Spyware Sold as a Service on Telegram
Zimperium found RedWing, an Android spyware sold as a service via Telegram to target banking apps First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/redwing-android-spyware-maas/
-
Telegram-Hosted RedWing Malware Lets Anyone Rent Android Spyware Tools
RedWing: The Android Banking Trojan You Can Rent on Telegram for Less Than a Coffee Subscription Zimperium’s zLabs team has uncovered RedWing, an Android spyware operation sold as a subscription service through Telegram, with links to Russian threat actors and apparent roots in the Oblivion malware family. It comes with documentation, tutorial videos, a referral…
-
Pegasus Used Against MEP Investigating Pegasus, Citizen Lab Finds
A former EU lawmaker was hacked with Pegasus spyware while investigating its use, according to Citizen Lab. The Citizen Lab published a report documenting one of the more darkly ironic findings in recent surveillance research: former Member of the European Parliament Stelios Kouloglou was repeatedly infected with NSO Group’s Pegasus spyware while serving on the…
-
Lawmaker Probing Pegasus Spyware Infected Using Same Malware
Members of European Parliament Seek Fresh Spyware Probe Following Revelations. Multiple European lawmakers are calling for a fresh investigation into spyware following new revelations that a European Parliament committee member probing Pegasus mobile device hacking software himself fell victim to attackers who wielded the surveillance tool against him. First seen on govinfosecurity.com Jump to article:…
-
Pegasus Spyware Hacked European Parliament Member Investigating Spyware Abuse
A newly disclosed forensic investigation has revealed that Pegasus spyware was used to hack a sitting Member of the European Parliament (MEP) who was actively investigating spyware abuses across the European Union. This raises serious concerns about surveillance targeting democratic institutions. According to a report by Citizen Lab dated July 3, 2026, former Greek MEP…
-
European Parliament Member Investigating Spyware Was Hacked With Pegasus
A new report from the Citizen Lab has revealed that former Member of the European Parliament Stelios Kouloglou had his mobile device repeatedly hacked with the notorious Pegasus spyware while serving on a committee that was tasked with investigating the abuse of such commercial surveillance tools in the bloc.”Through forensic analysis of his device, we…
-
Politician who investigated spyware abuses had his phone hacked with Pegasus spyware
A government customer of NSO Group used the company’s Pegasus spyware to hack into the phone of a European politician, who at the time was serving on an EU committee tasked with investigating the spyware industry. First seen on techcrunch.com Jump to article: techcrunch.com/2026/07/02/politician-who-investigated-spyware-abuses-had-his-phone-hacked-with-pegasus-spyware/

