#stalkerware

Kevin Karhan :verified:kkarhan@infosec.space
2026-03-08

OFC you can use an #AirTag (or multiples!) to #stalk people, and whilst it's illegal (and I I'll condine it regardless of legality!) it's now even more rampant than pickpockets!...

You know how many of those #stalking devices I've microwaved already when someone asked me to check their stuff for #trackers?

  • I'd say it's a low-to-mid double-digit number, because by the time #police gets their hands on those as evidence, they got remote-wiped and even if they didn't the buyers obviously didn't link them to any #Apple - Account with real credentials...
    • Worst-case they abuse some homeless person as "#MeatProxy" to get blamed and as soon as that one's getting caught, they're already gone...

#Stalking is a Problem and #AirTags are #IoT - style, physical #StalkerWare that's rampant in the wild, as they are not just a #COTS product, but cheap, common and even #TechIlliterate assholes can use them.

your auntifa liza 🇵🇷 🦛 🦦blogdiva
2026-03-06

who is paying for these “age verification” laws? we need to find the names of the fascists flooding the zone with these proposals. wouldn’t shock me if all roads lead to Palantir and Gay Hitler.

your auntifa liza 🇵🇷 🦛 🦦blogdiva
2026-02-11

❝ Google didn’t immediately respond to questions from The Associated Press about how the footage of the masked person was captured while the camera was apparently disconnected. They also didn’t clarify how the footage was extracted from “backend servers” even though law enforcement said Guthrie didn’t have a subscription.

However, Google’s privacy policy… makes it clear that videos can be captured when a device is offline. ❞

apnews.com/article/nancy-guthr

2026-02-10

.. seneste eksempel på, leverandør af #overvågning -software, afsløret kunders oplysninger på grund af sikkerheds-brister

.. snesevis af #stalkerware -apps blevet hacket eller har mistet, lækket eller afsløret folks private data – ofte ofrenes egne – på grund af udbydernes mangelfulde sikkerhed

.. som uMobix og Xnspy uploader, når installeret, offerets private data, herunder opkalds-logger, tekst-beskeder, fotos, browser-historik og præcise lokaliserings-data
techcrunch.com/2026/02/09/hack

2026-02-10

Hacktivist leaks 530K+ customer payment records tied to stalkerware apps after exploiting a trivial website bug.

Emails, card details & app purchases exposed - another example of weak security in surveillance software.

technadu.com/stalkerware-data-

#Infosec #Privacy #DataBreach #Stalkerware

Stalkerware Data Breach: Hacktivist Leaks Over 530,000 Customer Records
Aidooaidoo
2026-02-09

Filtrados 536.000 registros de clientes de apps de vigilancia: emails y datos parciales de pago. TechCrunch verificó la fuga; el atacante dice explotar un fallo trivial. aidoo.news/noticia/6V328W

2026-01-08

Bryan Fleming, creator of pcTattletale, just pleaded guilty in US federal court for selling illegal stalkerware that let users secretly spy on phones and computers.

Read: hackread.com/pctattletale-stal

#pcTattletale #Stalkerware #Cybercrime #Privacy #BryanFleming

2026-01-07

The pcTattletale founder’s guilty plea marks the first U.S. federal conviction of a stalkerware operator in over ten years.

This case reinforces:
• Legal accountability for spyware misuse
• Growing scrutiny of consumer surveillance tools
• The role of infosec and law enforcement collaboration

An important precedent for privacy enforcement in the spyware ecosystem.

Read more via TechNadu and follow for objective infosec coverage:
technadu.com/founder-of-pctatt

#Infosec #Privacy #Stalkerware #CyberLaw #DigitalSurveillance #SecurityResearch

Founder of pcTattletale Spyware App Pleads Guilty in Federal Stalkerware Case
gtbarrygtbarry
2025-12-19

FTC upholds ban on stalkerware founder Scott Zuckerman

A stalkerware maker who was banned from the surveillance industry after a data breach that exposed the personal information of its customers, as well as the people they were spying on, will not be able to go back to selling the invasive software

techcrunch.com/2025/12/08/ftc-

Kevin Karhan :verified:kkarhan@infosec.space
2025-12-12

@condret I'd refuse to do install/use it as a matter of principle!

infosec.space/@kkarhan/1153073

Kevin Karhan :verified:kkarhan@infosec.space
2025-12-11

@mindpersephone @neil #Stalkerware on it's own is already illegal in my juristiction, espechally for minors, because they can't give informed consent!

Kevin Karhan :verified:kkarhan@infosec.space
2025-12-09

@dufthummel wegen sowas gehört "#Govware" jeglicher Art und besonders #Palantir genauso verboten wie #NSOgroup's #Stalkerware / #malware !

TechCrunch | Startup and Technology Newstechcrunch.com@web.brid.gy
2025-12-08
Kevin Karhan :verified:kkarhan@infosec.space
2025-12-08

„.. stalkerware has a tendency to have absolutely crap security, and at least 26 operations since 2017 have been hacked, breached, or otherwise exposed the vast amounts of data that they steal from people's phones.“ Benutzt sowas nicht, um Eure Kinder im Auge zu behalten. #Stalkerware

RE: https://bsky.app/profile/did:plc:6uqqv7asv2xsxwn224tyexng/post/3m7ea2n5t3k2z

Kevin Karhan :verified:kkarhan@infosec.space
2025-12-05

@PinoBatch There are few things that make me quit a job.

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst