Hackers Break Into Stalkerware Potentially Helping Thousands of Victims

2023-8-29 23:30

A report from TechCrunch reveals that Portuguese-language spyware called WebDetetive has compromised over 76,000 Android devices, predominantly in Brazil. However, white hat hackers claim to have deleted user data from its servers, potentially helping thousands.

The report states that unnamed hackers discovered and exploited vulnerabilities in WebDetetive’s servers. By hacking the spyware company’s web dashboard, the hackers accessed user databases and downloaded records, including customer emails.

Stalkerware Sends User Data to a Central Server Without Consent

According to the report, the dashboard hack also allowed the white hat hackers to sever connections between victims’ devices and WebDetetive’s servers. The hackers claimed this prevented devices from sending new data to WebDetetive.

WebDetetive is a type of software called “stalkerware,” a subgroup of spyware that is usually put on victims’ phones without their consent. Usually by a partner or spouse who suspects infidelity, but the reasons can be even more sinister.

Spyware is also incredibly popular among government spy agencies for surveillance purposes. By compromising WebDetetive’s servers, the hackers have potentially saved thousands from having their data stolen. 

Keep your data safe with these handy tips: Data Privacy: 10 Tips to Protect Your Digital Privacy

The hackers provided TechCrunch with a 1.5GB cache of data stolen from WebDetetive’s dashboard. The publication verified the authenticity of some device identifiers in the cache by matching them to endpoints on WebDetetive’s servers.

However, the outlet was not able to independently confirm that the hackers deleted user data, as claimed. Although, in a note seen by TechCrunch, the hackers wrote:

Which we definitely did. Because we could. Because #fuckstalkerware.”

Per the report, the cache contained information about WebDetetive customers and details on each compromised device. However, it did not include any contents taken from victims’ phones.

Stalkerware is often used by partners that suspect infidelity, but government spy agencies also use it too.

TechCrunch indicates the data showed WebDetetive had impacted 76,794 devices and contained info on over 74,000 unique customer emails. The report notes the stalkerware does not verify customer emails.

WebDetetive Linked to Another Spy App

Furthermore, WebDetetive also appears to be connected to another spyware called OwnSpy, developed in Spain. TechCrunch’s analysis found WebDetetive’s Android app contains largely recycled OwnSpy code.

Portions of OwnSpy’s infrastructure reportedly went offline shortly after TechCrunch contacted its developer.

However, white hat hacking such as this can have unintended consequences. Severing connections without warning could unintentionally alert the abusers who installed the spyware. This, in turn, could put victims in further danger.

The post Hackers Break Into Stalkerware Potentially Helping Thousands of Victims appeared first on BeInCrypto.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Streamr DATAcoin (DATA) íà Currencies.ru

$ 0.0528491 (+0.61%)
Îáúåì 24H $3.173m
Èçìåíåèÿ 24h: -5.00 %, 7d: -4.37 %
Cåãîäíÿ L: $0.0522428 - H: $0.0528837
Êàïèòàëèçàöèÿ $54.482m Rank 579
Öåíà â ÷àñ íîâîñòè $ 0.0211871 (149.44%)

hackers break thousands victims helping stalkerware potentially

hackers break → Ðåçóëüòàòîâ: 21


According to Meta, hackers are taking advantage of the popularity of AI chatbot ChatGPT, in the same way that they exploit cryptocurrencies.

Meta, the owner of Facebook, has released a security report warning that hackers are exploiting the growing global interest in the artificial intelligence-powered tool ChatGPT. The report highlights that hackers are utilizing similar tactics to those used in cryptocurrency scams to break into people’s devices.

2023-5-4 18:10


Ethereum Developer Challenges Hackers to Break ETH2 Testnets; Collect $10k Reward

Danny Ryan, one of the core developers of the Ethereum developer community, has challenged white hat hackers to hack into a pair of ETH2 testnets. Ethereum's most significant upgrade since its inception where the Ethereum mainnet will transition from Proof-of-Work (PoW) based mining consensus to Proof-of-Stake (PoS) and has been dubbed Ethereum 2.0. The transition […]

2020-7-22 23:13


Don’t be an idiot — here’s how to store and remember all your passwords

Welcome to TNW Basics, a collection of tips, guides, and advice on how to easily get the most out of your gadgets, apps, and other stuff. If you, like millions of other people, use the same password for just about every application you use, then I’m sorry to break it to you, but one of these days, you’ll probably get hacked, if you aren’t already.

2019-8-25 12:00