Get the latest tech news

Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones


The spyware operation's exposed customer email addresses and passwords were shared with data breach notification service Have I Been Pwned.

The bug, which was discovered by security researcher Eric Daigle, spilled the spyware app’s full database of email addresses and plaintext passwords that Catwatchful customers use to access the data stolen from the phones of their victims. The incident shows that consumer-grade spyware continues to proliferate, despite being prone to shoddy coding and security failings that expose both paying customers and unsuspecting victims to data breaches. The spyware also uses Google’s Firebase, a web and mobile development platform, to host and store the victim’s stolen phone data, including their photos and ambient audio recordings.

Get the Android app

Or read this on TechCrunch

Read more on:

Photo of Phones

Phones

Photo of Thousands

Thousands

Photo of data breach

data breach

Related news:

News photo

Kelly Benefits says 2024 data breach impacts 550,000 customers

News photo

Norwegian Lotto Mistakenly Told Thousands They Were Filthy Rich After Math Error

News photo

Norwegian lotto mistakenly told thousands they were filthy rich after math error