WhatsApp Alerts 200 Users After Fake iOS App Installed Spyware; Italian Firm Faces Action
嗯,用户让我帮忙总结这篇文章,控制在100字以内,而且不需要用“文章内容总结”之类的开头。首先,我得通读一下文章,抓住主要信息。 文章讲的是WhatsApp发现有200名用户被诱骗安装了带有间谍软件的假iOS应用。大部分目标在意大利,攻击者用了社会工程学手段。WhatsApp让用户登出,并建议他们卸载恶意软件,重新下载官方应用。他们还起诉了意大利的Asigint公司,这家公司涉嫌制作假的WhatsApp应用。 接着,文章提到SIO公司之前也做过类似的事情,伪装成WhatsApp和其他应用来窃取数据。意大利有很多这样的公司,成了间谍软件中心。还有提到希腊的Predatorgate事件,政府被指控非法使用间谍软件,但后来法律合法化了这种行为。 西班牙也涉及类似的事件,NSO Group的Pegasus间谍软件被用来监视政客。这些公司声称他们的技术只卖给政府用于打击犯罪和国家安全。 总结一下,主要内容是WhatsApp发现间谍软件攻击事件,涉及意大利和希腊等欧洲国家的情况。需要把这些要点浓缩到100字以内。 </think> WhatsApp发现约200名用户被诱骗安装感染间谍软件的虚假iOS应用,多数目标位于意大利。该公司已使受影响用户登出,并建议其卸载恶意软件并下载官方应用。WhatsApp还起诉了涉嫌制作虚假版本的意大利公司Asigint。此前类似事件频发于欧洲多国,涉及非法间谍活动及政府监管问题。 2026-4-2 09:51:0 Author: thehackernews.com(查看原文) 阅读量:1 收藏

Surveillance / Mobile Security

Meta-owned messaging platform WhatsApp said it alerted about 200 users who were tricked into installing a bogus version of its iOS app that was infected with spyware.

According to reports from Italian newspaper La Repubblica and news agency ANSA, the vast majority of the targets are located in Italy. It's assessed that the threat actors behind the activity used social engineering tactics to get users to install malicious software that mimicked WhatsApp.

All the affected users have been logged out and have been recommended to uninstall the malware-laced apps and download the official WhatsApp app. WhatsApp did not reveal who was targeted in these attacks.

The tech giant said it's also taking action against Asigint, an Italian subsidiary of spyware company SIO, for allegedly creating a counterfeit version of WhatsApp. 

On its website, the company advertises solutions to law enforcement agencies, government organizations, and police and intelligence agencies for monitoring suspect activities, gathering intelligence, or conducting covert operations.

In December 2025, TechCrunch reported that SIO was behind a set of malicious Android apps that masqueraded as WhatsApp and other popular apps but stole private data from a target's device using a spyware family called Spyrtacus. The apps are believed to have been used by a government customer to target unknown victims in Italy.

SIO is one of the many Italian companies selling surveillance tools, including Cy4Gate, eSurv, GR Sistemi, Negg, Raxir, and RCS Lab, turning the country into a "spyware hub."

Early last year, WhatsApp alerted around 90 users that they were targeted with Paragon Solutions' spyware known as Graphite. Then, in August 2025, it notified less than 200 users who may have been targeted as part of a sophisticated campaign by chaining together zero-day vulnerabilities in iOS and the messaging app.

The development comes a little over a month after a Greek court sentenced Tal Dilian, the founder of the Intellexa Consortium, and three associates, Sara Hamou, Felix Bitzios, and Yiannis Lavranos, to prison for their role in the illegal use of the vendor's Predator spyware to target politicians, business leaders, and journalists in the country.

The 2022 surveillance scandal, dubbed Predatorgate or Greek Watergate, prompted the European Parliament to launch a formal inquiry into the use of such tools. However, a new law passed that year has since legalized government use under strict conditions. In July 2024, the Greek Supreme Court cleared the state intelligence service and government officials of wrongdoing. 

"Questions remain about the role of the Greek government, which has consistently denied purchasing or using Predator," Amnesty International said. "Transparency is a crucial part of accountability – as is remedy for the many victims of the human rights violations brought about by the unlawful use of this technology."

In a statement shared with Reuters late last month, Dilian said he intends to appeal the decision, adding, "I believe a conviction without evidence is not ⁠justice, it could be part of a cover-up and even a crime."

Italy and Greece are far from the only European countries to be caught in the spyware technology's crosshairs. Back in January 2026, Spain's High Court closed its probe into the use of NSO Group's Pegasus to spy on Spanish politicians, citing a lack of cooperation from Israeli authorities.

The case dates to May 2022, when the Spanish government disclosed that the Israeli company's spyware had been used to eavesdrop on devices belonging to Prime Minister Pedro Sánchez and Defence Minister Margarita Robles.

Companies like Intellexa and NSO Group have consistently maintained that their surveillance technology has only been licensed to governments to fight serious crimes and bolster national security. NSO Group's Executive Chairman David Friedman said the "world is a far safer place" when the company's tools "are in the right hands within the right countries."

Found this article interesting? Follow us on Google News, Twitter and LinkedIn to read more exclusive content we post.


文章来源: https://thehackernews.com/2026/04/whatsapp-alerts-200-users-after-fake.html
如有侵权请联系:admin#unsafe.sh