Close Menu
Finsider

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Money Expo Colombia 2026 Hits 75% Sold Out as LATAM Fintech Demand Surges

    June 11, 2026

    ShareHub Refer and Earn: How the 15% + 5% Referral Program Pays Up to 20% in USDT

    June 10, 2026

    MyKard.link: The Free Digital Business Card and Link in Bio for UAE, India and Pakistan

    June 9, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Money Expo Colombia 2026 Hits 75% Sold Out as LATAM Fintech Demand Surges
    • ShareHub Refer and Earn: How the 15% + 5% Referral Program Pays Up to 20% in USDT
    • MyKard.link: The Free Digital Business Card and Link in Bio for UAE, India and Pakistan
    • How to Make Money Online in 2026: A Realistic Guide for South Asia and Africa
    • How Remote Work Savings Are Reshaping Where Americans Live in 2026
    • Opinion: AI and the Future of Work — Why Augmentation Beats Automation
    • UAE Golden Visa 2026: Who Qualifies Now After the Big Expansion
    • AI Startup Funding Surges as Investors Chase Workflow Winners
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Finsider
    • Markets & Ecomony
    • Tech & Innovation
    • Money & Wealth
    • Business & Startups
    • Visa & Residency
    Finsider
    Home»Tech & Innovation»Another spyware maker caught distributing fake Android snooping apps
    Tech & Innovation

    Another spyware maker caught distributing fake Android snooping apps

    FinsiderBy FinsiderApril 24, 2026Updated:May 2, 2026No Comments5 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    spyware illustrated; blank smartphone screen over a pink background of multiple eyes
    Share
    Facebook Twitter LinkedIn Pinterest Email

    spyware illustrated; blank smartphone screen over a pink background of multiple eyes

    Quick context before the detail: another spyware maker caught distributing fake android snooping apps sits at the intersection of a few real-world decisions most readers face at some point. Here is a clear summary of what is going on, and why it matters.

    spyware illustrated; blank smartphone screen over a pink background of multiple eyes

    Yet another government spyware maker has been caught after its customers used fake Android apps to install its surveillance software on targets, as reported by a new report.

    On Thursday, Osservatorio Nessuno, an Italian digital rights organization that researches spyware, published a report on a new malware it calls Morpheus. The spyware, which masquerades as a phone updating app, is capable of stealing a broad range of data from an intended target’s device. 

    The researchers’ findings show that the demand for spyware by law enforcement and intelligence agencies is so high that there are many companies providing this technology, some of whom operate outside of the public spotlight.

    In this case, Osservatorio Nessuno concluded that the spyware is linked to IPS, an Italian company that has been operating for more than 30 years providing traditional so-called lawful interception technology, meaning tools used by governments to capture a person’s real-time communications that flow through the networks of phone and internet providers. 

    as reported by IPS’ website, the company operates in more than 20 countries, though that likely does not refer to its spyware product, which until today was a secret. The company lists several Italian police forces among its customers. 

    IPS did not respond to TechCrunch’s request for comment about the report.  

    The researchers called Morpheus “low cost” spyware because it relies on the rudimentary infection mechanism of tricking the targets into installing the spyware on their own. 

    More advanced government spyware makers, such as NSO Group and Paragon Solutions, allow their government customers to infect their targets with invisible techniques, known as zero-click attacks, which install the malware in a completely stealthy and invisible way by exploiting expensive and difficult-to-find vulnerabilities that break through a device’s security defenses.

    In this case, the researchers said the authorities had help from the target’s cellphone provider, which began deliberately blocking the target’s mobile data. At that point, the telecom provider sent the target an SMS, prompting them to install an app that was supposed to help them update the phone, and regain cellular data access. This is a strategy that has been well documented in other cases involving other Italian spyware makers.

    Image Credits:Osservatorio Nessuno

    Once the spyware was installed, it abused Android’s in-built accessibility features, which allows the spyware to read the data on the victim’s screen and interact with other apps. The malware was designed to access all kinds of information on the device, as reported by the researchers. 

    The spyware then prompted a fake update, showed the target a reboot screen, and finally spoofed the WhatsApp app asking the target to provide their biometrics to prove that it’s them. Unbeknownst to the target, the biometric tap granted the spyware full access to their WhatsApp account by adding a device to the account. This is a known strategy used by government hackers in Ukraine, as well as in a recent spy campaign in Italy.

    An old company with a new spyware

    Osservatorio Nessuno’s researchers, who asked to be referred only with their first names, Davide and Giulio, concluded that the spyware belongs to IPS based on the spyware’s infrastructure. 

    In particular, one of the IP addresses used in the campaign was registered to “IPS Intelligence Public Security.” 

    The two also found several fragments of code that contained Italian phrases — something that has seemingly become tradition among the Italian spyware industry. The malware code included words in Italian, including references to Gomorra, the famous book and TV show about the Neapolitan mob, and “spaghetti.” 

    Davide and Giulio told TechCrunch that they can’t provide specifics about who the target was, but they said they believe the attack is “related to political activism” in Italy, a world where “this type of targeted attacks are very common nowadays.” 

    A researcher at a cybersecurity firm told TechCrunch that their company has been tracking this specific malware. After reviewing the Osservatorio Nessuno report, the researcher said that the malware is definitely developed by an Italian surveillance tech maker.

    IPS is the latest in a long list of Italian spyware makers that have filled the void left by the long-defunct Italian company Hacking Team, one of the first spyware makers in the world. The company controlled a large share of the local market apart from selling abroad before it was hacked, and later sold and rebranded. In recent years, researchers have publicly exposed several Italian spyware makers, including CY4GATE, GR Sistemi, Movia, Negg, Raxir, RCS Lab, and most recently SIO. 

    Earlier this month WhatsApp notified around 200 users who installed a fake version of the app, which was actually spyware made by SIO. In 2021, Italian prosecutors suspended their use of CY4GATE and SIO spyware due to serious malfunctions.

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    Android apps caught distributing Fake maker snooping spyware

    The bottom line is simple: stories like this one rarely sit still for long. Watch the data, ignore the hype, and revisit the topic in a few months as the picture sharpens.

    Android apps caught distributing Fake maker snooping spyware

    Related reading

    • How To Password Protect Your Android Apps (And Why You Might Want To)
    • President Trump Just Gave Stock Investors 2 Reasons to Worry About Another Market Crash
    • How To Fix Gmail When It’s Not Working On Android
    Android apps caught distributing Fake maker snooping spyware
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleWhy the Digital Business Card Is Replacing Paper in Dubai Networking
    Next Article The Smartest Dividend ETF to Buy With $2,000 in April 2026
    Finsider
    • Website

    Related Posts

    Tech & Innovation

    MyKard.link: The Free Digital Business Card and Link in Bio for UAE, India and Pakistan

    June 9, 2026
    Tech & Innovation

    Microsoft Unveils New AI Coding Model to Cut Its Reliance on OpenAI

    June 2, 2026
    Tech & Innovation

    Google I/O 2026 Highlights: Gemini 3.5 Flash, Spark and Android XR

    May 20, 2026
    Add A Comment

    Comments are closed.

    Top Posts

    5 Ways Leaders Can Communicate Power

    July 18, 2025

    Money Expo Colombia 2026 Hits 75% Sold Out as LATAM Fintech Demand Surges

    June 11, 2026

    AI Is Changing Public Relations — Here’s How to Stay in Control

    July 25, 2025
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    What is Mistral AI? Everything to know about the OpenAI competitor

    July 18, 2025

    3 Ways to Mitigate Executive Turnover

    July 18, 2025

    5 Ways Leaders Can Communicate Power

    July 18, 2025
    news

    Money Expo Colombia 2026 Hits 75% Sold Out as LATAM Fintech Demand Surges

    June 11, 2026

    ShareHub Refer and Earn: How the 15% + 5% Referral Program Pays Up to 20% in USDT

    June 10, 2026

    MyKard.link: The Free Digital Business Card and Link in Bio for UAE, India and Pakistan

    June 9, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © 2020 - 2026 The Finsider . Powered by LINC GLOBAL Inc.
    • Contact us
    • Guest Post Policy
    • Privacy Policy
    • Terms of Service

    Type above and press Enter to search. Press Esc to cancel.