logo

More vulnerable stalkerware victims’ data exposed in new TheTruthSpy flaw

ID: 9c5744d7-ab06-5cab-8bee-0587daed3d16

STIX ID: report--9c5744d7-ab06-5cab-8bee-0587daed3d16

Feed Name: Malwarebytes Blog

Threat Score
70/100

Date Published: 2025-08-27

Date Updated: 2026-04-28

...
...

A security researcher demonstrated to TechCrunch that TheTruthSpy’s Android stalkerware servers have a flaw allowing anyone to reset any account password and take over victims’ stored surveillance data; the report details the app’s invasive data collection (calls, texts, GPS, messaging activity, audio, keystrokes), its history of security issues and data leaks, the vendor’s response, and provides advice and tools for detecting and removing stalkerware.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.