European Journalists Targeted by Paragon Spyware, Citizen Lab ConfirmsInfosecurity Magazine·Jun 13, 12:30 UTC · Jun 13, 2025MalwareCVE-2025-4320060
Researchers find Jordan government used Cellebrite phoneCyberScoop·Jan 22, 17:26 UTC · Jan 22, 2026Exploit / PoC in the wild60
Jordan used Cellebrite phone-hacking tools against activists critical of Gaza war, report findsThe Record·Jan 22, 02:35 UTC · Jan 22, 2026Malware55
NSO Group used iOS exploits to spy on human rights advocates: Citizen LabThe Record·Apr 20, 14:50 UTC · Apr 20, 2023Exploit / PoC60
Pegasus spyware active in 45 countries, Citizen Lab saysCyberScoop·Sep 18, 17:14 UTC · Sep 18, 2018Malware in the wild60
Researchers suggest 25 countries are using a kind of mobile spyware that monitors texts, locationCyberScoop·Dec 1, 23:02 UTC · Dec 1, 2020Malware in the wild60
NSO Group spyware used to target widow of Mexican journalist, researchers sayCyberScoop·Mar 21, 13:42 UTC · Mar 21, 2019Malware in the wild60
Religious, political leaders in Togo allegedly targeted with NSO Group spywareCyberScoop·Aug 3, 22:06 UTC · Aug 3, 2020Malware in the wild60
3 iOS 0-days, a cellular network compromise, and HTTP used to infect an iPhoneArs Technica · Security·Sep 23, 00:23 UTC · Sep 23, 2023VulnerabilityCVE-2023-41993CVE-2023-41991CVE-2023-41992+1 CVEs60
Bahrain hacked activists' iPhones with NSO Group spyware, Citizen Lab saysCyberScoop·Aug 24, 14:44 UTC · Aug 24, 2021Malware in the wild60
Citizen Lab links Cellebrite to the hacking of a Kenyan presidential candidate’s phoneCyberScoop·Feb 17, 11:00 UTC · Feb 17, 2026Exploit / PoC in the wild60
Paragon spyware found on the phones of Euro journosCyberScoop·Jun 12, 13:32 UTC · Jun 12, 2025Malware in the wild60
It's super cheap to launch an effective cyberCyberScoop·Feb 1, 16:16 UTC · Feb 1, 2018Exploit / PoC in the wild60
Zero-click iPhone exploit, NSO Group spyware used to target Mideast journalists, Citizen Lab saysCyberScoop·Dec 21, 17:29 UTC · Dec 21, 2020Malware in the wild60
Researchers say Israeli government likely behind AICyberScoop·Oct 3, 17:16 UTC · Oct 3, 2025Exploit / PoC in the wild60
How phishing emails sent by Russian hackers produce propagandaCyberScoop·May 25, 19:24 UTC · May 25, 2017Phishing & fraud in the wild60
'Typosquatting' campaign imitated news outlets to spread propaganda for years, report saysCyberScoop·May 14, 13:28 UTC · May 14, 2019Threat actor in the wild60
PWNYOURHOME, FINDMYPWN, LATENTIMAGE: 3 iOS ZeroSecurity Affairs·Apr 19, 05:24 UTC · Apr 19, 2023Exploit / PoC in the wild60
Citizen Lab Finds Cellebrite Tool Used on Kenyan Activist’s Phone in Police CustodyThe Hacker News·Feb 21, 04:46 UTC · Feb 21, 2026Malware55
Six additional countries identified as suspected Paragon spyware customersCyberScoop·Mar 19, 21:38 UTC · Mar 19, 2025Malware in the wild60
Citizen Lab: Law Enforcement Used Webloc to Track 500 Million Devices via Ad DataThe Hacker News·Apr 11, 06:02 UTC · Apr 11, 2026Malware55
Vast hack-for-hire scheme against activists, corporate targets tied to Indian IT firmCyberScoop·Jun 9, 13:49 UTC · Jun 9, 2020Exploit / PoC in the wild60
Russia uses Cellebrite to break into human rights activist’s phone, even after cancellation of contractCyberScoop·Jun 25, 14:52 UTC · Jun 25, 2026Exploit / PoC in the wild60
Uyghur Diaspora Group Targeted with Remote Surveillance MalwareInfosecurity Magazine·Apr 28, 15:15 UTC · Apr 28, 2025Malware55
Russian Hackers Made 'Tainted Leaks' a Thing — Phishing to PropagandaThe Hacker News·May 29, 17:04 UTC · May 29, 2017Phishing & fraud55
WhatsApp fixed zero-day used to deploy Paragon Graphite spywareSecurity Affairs·Mar 20, 00:12 UTC · Mar 20, 2025Exploit / PoC60
Zero-days fixed by Apple were used to deliver Pegasus spywareSecurity Affairs·Sep 8, 06:15 UTC · Sep 8, 2023Malware in the wildCVE-2023-41064CVE-2023-41061CVE-2023-37450+10 CVEs60
Malware campaign that targeted Tibet's diaspora linked to wider operationCyberScoop·Aug 8, 21:55 UTC · Aug 8, 2018Malware in the wild60
How a Russian man’s harrowing tale shows the physical dangers of spywareCyberScoop·Dec 5, 11:00 UTC · Dec 5, 2024Malware in the wild60
Tens of Al Jazeera employees were targeted in a cyber espionage campaign leveraging a zero-click iOS zeroSecurity Affairs·Dec 21, 11:05 UTC · Dec 21, 2020Threat actor60
CISA adds recently discovered Apple zero-days to Known Exploited Vulnerabilities CatalogSecurity Affairs·Sep 11, 18:22 UTC · Sep 11, 2023Exploit / PoC in the wildCVE-2023-41064CVE-2023-41061CVE-2023-37450+10 CVEs60
Windows spyware and zero-days linked to prodigious Israeli hack-forThe Record·Dec 12, 00:00 UTC · Dec 12, 2022MalwareCVE-2021-21166CVE-2021-30551CVE-2021-33742+2 CVEs60
Apple fixes 3 zero-day vulnerabilities exploited to compromise iPhonesHelp Net Security·Sep 25, 10:01 UTC · Sep 25, 2023Exploit / PoC in the wildCVE-2023-41992CVE-2023-41991CVE-2023-41993+4 CVEs60
Research shows human rights activists in India were targeted with spywareCyberScoop·Jun 15, 19:55 UTC · Jun 15, 2020Malware in the wild60
A cyber-espionage effort against Tibetan leaders leveraged known Android, iOS vulnerabilitiesCyberScoop·Sep 24, 13:57 UTC · Sep 24, 2019Vulnerability in the wild60
Kaspersky Security Bulletin: APT predictions 2024Kaspersky Securelist·Nov 14, 10:00 UTC · Nov 14, 2023AdvisoryCVE-2020-35730CVE-2020-12641CVE-2021-44026+1 CVEs60
Zoom has fixed an eavesdropping issue tied to 'waiting rooms'CyberScoop·Apr 9, 17:25 UTC · Apr 9, 2020Exploit / PoC in the wild60
Apple patches against alleged NSO Group zeroCyberScoop·Sep 13, 20:17 UTC · Sep 13, 2021Vulnerability in the wild60
Israeli surveillance firm Candiru used Windows 0days to deploy spywareSecurity Affairs·Jul 15, 21:23 UTC · Jul 15, 2021MalwareCVE-2021-31979CVE-2021-3377160
NSO Group Pegasus spyware leverages new zeroSecurity Affairs·Apr 19, 10:10 UTC · Apr 19, 2022MalwareCVE-2019-356860