Hack-for-hire group caught targeting Android devices and iCloud backups

TL;DR AI
2 min readKey summary
Researchers identified a hack-for-hire group targeting journalists, activists and officials across MENA.
Attackers used Apple ID phishing to access iCloud backups and to compromise Signal messaging accounts.
On Android the group distributed ProSpy disguised as messaging apps to install spyware and seize devices.
Lookout named the vendor BITTER and researchers suggested RebSec Solutions may be the operator.



