logo

Intellexa remotely accessed Predator spyware customer systems, investigation finds

ID: 2e9f5a51-23ed-5405-91b5-a021a235db4e

STIX ID: report--2e9f5a51-23ed-5405-91b5-a021a235db4e

Feed Name: CyberScoop

Threat Score
80/100

Date Published: 2025-12-04

Date Updated: 2026-04-21

Author: Tim Starks

...
...

Leaked training videos and multi-source investigations allege that Intellexa’s Predator spyware retained remote-access capability to customer systems, used malicious mobile ads (named “Aladdin”) and zero‑day browser exploits to infect targets, and was actively deployed against activists, journalists and lawyers across multiple countries; research from Google, Recorded Future and Amnesty highlights operational ties, spoofed domains, and ongoing Predator activity despite sanctions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.