logo

I spy another mSpy breach: Millions more stalkerware buyers exposed

ID: 7bbe0ce8-6319-567e-9fd8-34c5bc5cf024

STIX ID: report--7bbe0ce8-6319-567e-9fd8-34c5bc5cf024

Feed Name: The Register (Security)

Threat Score
78/100

Date Published: 2024-07-15

Date Updated: 2026-04-26

Author: Brandon Vigliarolo

...
...

Infosec roundup: commercial stalkerware maker mSpy was breached again, leaking ~2.4M unique email addresses plus sensitive attachments; CISA and vendors disclosed high-severity vulnerabilities including a CVSS 10.0 flaw in PTC's license server; Linksys Velop routers were observed sending SSIDs, passwords, and session tokens in plaintext; active exploitation of an MSHTML/IE-related zero-day (CVE-2024-38112) has been observed in the wild; and Akira ransomware is reported targeting Latin American airlines — organizations and users are urged to patch, update firmware, and change exposed credentials.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.