Get the latest tech news
Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones
The spyware operation's exposed customer email addresses and passwords were shared with data breach notification service Have I Been Pwned.
The bug, which was discovered by security researcher Eric Daigle, spilled the spyware app’s full database of email addresses and plaintext passwords that Catwatchful customers use to access the data stolen from the phones of their victims. The incident shows that consumer-grade spyware continues to proliferate, despite being prone to shoddy coding and security failings that expose both paying customers and unsuspecting victims to data breaches. The spyware also uses Google’s Firebase, a web and mobile development platform, to host and store the victim’s stolen phone data, including their photos and ambient audio recordings.
Or read this on TechCrunch