Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

Russian government hackers broke into thousands of home routers to steal passwords

After the data breach, the $10 billion startup Mercor is one month old

Battery recycling company Ascend Elements files for bankruptcy

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Anthropic has temporarily banned the creator of OpenClaw from accessing Claude

    11 April 2026

    Florida AG announces OpenAI investigation into shootings allegedly involving ChatGPT

    10 April 2026

    ChatGPT finally offers $100/month plan

    10 April 2026

    AWS boss explains why investing billions in both Anthropic and OpenAI is an okay conflict

    9 April 2026

    Poke makes using AI agents as easy as sending a text

    9 April 2026
  • Apps

    YouTube Premium and YouTube Music are getting more expensive

    11 April 2026

    Last 24 hours: Save up to $500 on your Disrupt 2026 Pass

    10 April 2026

    The EFF is the latest organization to leave X

    10 April 2026

    Last 2 days to save up to $500 on your Disrupt 2026 ticket

    9 April 2026

    Canva Doubles Down on AI and Marketing Automation with Simtheory, Ortto Acquisitions

    9 April 2026
  • Crypto

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025
  • Fintech

    Cash app launches ‘pay later’ feature for P2P transfers

    3 April 2026

    Doss raises $55 million for AI inventory management that connects to ERP

    24 March 2026

    Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

    23 March 2026

    Amid legal turmoil, Kalshi is temporarily banned in Nevada

    20 March 2026

    Nominations for the Startup Battlefield 200 are still open

    19 March 2026
  • Hardware

    Amazon is ending support for older Kindle devices

    9 April 2026

    Intel signs Elon Musk’s Terafab chip project

    8 April 2026

    The Xiaomi 17 Ultra has some impressive extras that make taking photos really fun

    6 April 2026

    In Japan, the robot doesn’t come for your job. fills the one no one wants

    6 April 2026

    Peter Thiel’s big bet on solar-powered cow collars

    5 April 2026
  • Media & Entertainment

    TechCrunch is headed to Tokyo — and it’s bringing the Startup Battlefield with it

    10 April 2026

    Spotify now allows everyone to turn off videos in its app

    9 April 2026

    As YouTube expands into TV, it sees more interactive video across all formats

    9 April 2026

    Tubi is the first streamer to launch a native app on ChatGPT

    8 April 2026

    Binge is a movie watching app that warns you about skips in real time

    7 April 2026
  • Security

    Russian government hackers broke into thousands of home routers to steal passwords

    11 April 2026

    France to abandon Windows for Linux to reduce dependence on US technology

    10 April 2026

    VeraCrypt encryption software developer says Windows users may experience startup problems after Microsoft shuts down its account

    10 April 2026

    Hackers steal and leak sensitive LAPD police documents

    9 April 2026

    The developer of WireGuard VPN cannot send software updates after Microsoft locks the account

    9 April 2026
  • Startups

    After the data breach, the $10 billion startup Mercor is one month old

    11 April 2026

    What founders can learn from Anjuna’s layoffs and recovery

    10 April 2026

    Former Tesla engineer’s startup taps Pronto to help automate a copper mine

    9 April 2026

    Databricks co-founder wins prestigious ACM award, says ‘AGI is already here’

    9 April 2026

    Why a former AirPods engineer is now building heat pumps

    8 April 2026
  • Transportation

    Battery recycling company Ascend Elements files for bankruptcy

    11 April 2026

    Volkswagen begins testing its self-driving minibuses in Los Angeles ahead of launch with Uber

    10 April 2026

    Volkswagen is dropping the all-electric ID.4 in the U.S

    10 April 2026

    Waymo robotaxis tracks potholes and shares that data with Waze users

    9 April 2026

    Self-driving car in Texas hits and kills mother duck, sparking neighborhood outrage

    9 April 2026
  • Venture

    How to make the Startup Battlefield Top 20 — and what each company gets regardless

    10 April 2026

    Collide Capital Raises $95M to Back Future-of-Work Fintech Startups

    9 April 2026

    VC Eclipse has a new $1.3 billion fund to back — and build — “natural AI” startups

    8 April 2026

    The AI ​​gold rush is pulling private wealth into riskier, older bets

    7 April 2026

    Save up to $500 on tickets this week for Disrupt 2026

    6 April 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Hack-for-hire group caught targeting Android devices and iCloud backups
Security

Hack-for-hire group caught targeting Android devices and iCloud backups

techtost.comBy techtost.com8 April 202604 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Hack For Hire Group Caught Targeting Android Devices And Icloud Backups
Share
Facebook Twitter LinkedIn Pinterest Email

Security researchers say they have identified a hack-for-hire group targeting journalists, activists and government officials across the Middle East and North Africa. Hackers used phishing attacks to gain access to targets’ iCloud backups and Signal messaging accounts, and developed Android spyware capable of taking over targets’ devices.

This hacking campaign highlights a growing trend of government agencies outsourcing their operations to private hack-for-hire companies. Some governments already rely on commercial companies that develop spyware and exploits used by police and intelligence agencies to access data from people’s phones.

Researchers from digital rights organization Access Now documented three cases of assault from 2023 to 2025 against two Egyptian journalists and a journalist in Lebanon whose case was also documented by digital rights organization SMEX.

Mobile cybersecurity company Lookout also investigated these attacks. The three organizations cooperated with each other and released separate reports on Wednesday.

According to Lookout, the attacks go beyond members of civil society in Egypt and Lebanon and include targets in the governments of Bahrain and Egypt, as well as targets in the United Arab Emirates, Saudi Arabia, the United Kingdom and possibly the United States or graduates of American universities.

Lookout has concluded that the hackers behind this hacking campaign work for a hack-for-hire vendor that researchers have codenamed BITTER, which the investigation cyber security companies suspect has ties to the Indian government.

Justin Albrecht, principal researcher at Lookout, told TechCrunch that the company behind BITTER may be named RebSec Solutionsand could be an offshoot of Indian hack-for-hire startup Appin. In 2022 and 2023, Reuters published extensive investigations to Appin and other similar India-based companies, which revealed how these companies are allegedly being hired to hack corporate executives, politicians, military officials and others.

Techcrunch event

San Francisco, California
|
13-15 October 2026

Appin was apparently later shut down, but Albrecht noted that the discovery of this new hacking campaign shows that the activity “didn’t go away and they just moved to smaller companies.”

These teams and their customers have “reasonable denial, since they manage all operations and infrastructure.” And for their customers, these hack-for-hire teams are probably cheaper than buying commercial spyware, Albrecht said.

RebSec could not be reached for comment as the company has deleted its social media accounts and website.

Contact us

Do you have more information about RedSec solutions? Or other hack-for-hire companies? From a non-working device, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382 or via Telegram and Keybase @lorenzofb or via email.

Mohammed Al-Maskati, a researcher at Access Now’s Digital Security Helpline who worked on these cases, said “these operations have become cheaper and it is possible to avoid liability, especially because we won’t know who the end customer is and the infrastructure won’t reveal the entity behind it.”

While groups like BITTER may not have the most advanced hacking and spying tools, their tactics can be very effective.

In the attack part of this campaign, the hackers used many different techniques. When targeting iPhone users, hackers tried to trick the targets into giving up their Apple ID credentials to then hack into their iCloud backups, which would essentially give them access to the full contents of the targets’ iPhones.

This is “potentially a cheaper alternative to using more sophisticated and expensive iOS hacking software,” according to Access Now.

When targeting Android users, the hackers used a spyware called ProSpy disguised as popular messaging and communication apps like Signal, WhatsApp and Zoom, as well as ToTok and Botim, two apps popular in the Middle East.

In some cases, hackers tried to trick victims into signing up and adding a new device — controlled by the hackers — to their Signal account, a technique popular with various hacking groups, including Russian spies.

A spokesman for the Indian embassy in Washington did not immediately respond to a request for comment.

AccessNow Android backups caught cyber espionage devices group hacker Hackforhire Hacking iCloud India iPhone Middle East Spyware Stand-by targeting
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleLast 3 days to save up to $500 on your Disrupt 2026 Pass
Next Article Tubi is the first streamer to launch a native app on ChatGPT
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Russian government hackers broke into thousands of home routers to steal passwords

11 April 2026

France to abandon Windows for Linux to reduce dependence on US technology

10 April 2026

VeraCrypt encryption software developer says Windows users may experience startup problems after Microsoft shuts down its account

10 April 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

Russian government hackers broke into thousands of home routers to steal passwords

11 April 2026

After the data breach, the $10 billion startup Mercor is one month old

11 April 2026

Battery recycling company Ascend Elements files for bankruptcy

11 April 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Cash app launches ‘pay later’ feature for P2P transfers

3 April 2026

Doss raises $55 million for AI inventory management that connects to ERP

24 March 2026

Despite stiff competition, Kalshi, Polymarket CEOs back $35m VC fund projections

23 March 2026
Startups

After the data breach, the $10 billion startup Mercor is one month old

What founders can learn from Anjuna’s layoffs and recovery

Former Tesla engineer’s startup taps Pronto to help automate a copper mine

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.