Home / Technology / Stalkerware Hack Exposes Spying Customers
Stalkerware Hack Exposes Spying Customers
9 Feb
Summary
- Hacktivist scraped over 500,000 payment records from spy app vendor.
- Exposed data includes customer emails and partial payment information.
- Vulnerabilities in surveillance apps continue to lead to data breaches.

A recent data breach has exposed more than 500,000 payment records from a provider of consumer-grade "stalkerware" phone surveillance applications. The hacktivist responsible, known as "wikkid," exploited a "trivial" bug to scrape customer data, including email addresses and partial payment information.
The compromised transactions cover services like Geofinder and uMobix, which are used for phone tracking, and Peekviewer for Instagram access. Notably, Xnspy, a known surveillance app previously involved in a 2022 data spill, is also implicated. This incident is the latest in a series of security failures by surveillance vendors.
The vendor, identified as the Ukrainian company Struktura through its identical website to the U.K.-presenting Ersten Group, had its customers' data exposed. While not including full payment details, the leaked information has verified authenticity, confirming the ongoing risks of using such invasive technologies.




