Cybersecurity

Hacked, Leaked, Exposed: Who You Should Never Uses Stalkerware Apps

Using Stalkerware is Creeepy, UNETHALAL, Potenttiall Illegal, and Puts Your Datis and That Your Loved Ones in Dangger.

Hacked, Leaked, Exposed: Who You Should Never Uses Stalkerware Apps

Hacked, Leaked, Exposed: Who You Should Never Uses Stalkerware Apps

There. Multiple App Makers Market

Yet, despite How Sensitive This Data is, an increing number of these these these companies.

According to TechCrunch’s Tally, Counting The Latest Data Exposures of Cocospy and Spyic, There Have Been at Least 23 Stalkerware Companies Book 2017 That Are Known to Have Been Hacked, Or Leaked Customer and Victims’ Data online. That’s not a typo: at least 23 stalkerware compartments have either been hacked or had a signifanticant Data Exposure in Reward Years. And Four Stalkerware Companies Were Hacked Multiple Times.

Cocospy and Spyic Are The First Stalkerware Companies in 2025 to have inadvertenthenly expoled sensitive data. The Two Surveillance Operations Left Message, Photos, Call Logs, and Orther Personal and Sensitive Data of Millions of Victims Exposed Online, According to a Security Researcher Who Found a Bug That Allowed Theme to Access That Data.

In the Case of Cocospy, The Company Leaked 1.81 Million Customer Email Addresses, and Spyic Leaked 880,167 Customer Email Addresses. That’s A Total of 2.65 Million Email Addresses, After Removing Duplicate Addresses That Application In Both Breaches, According to An Analysis by Troy Hunt, Who Runs Data Breach Notification Site

In 2024, there were at least Four Massive Stalkerware Hacks. The Last Stalkerware Breach in 2024 Affressed Spytech, A Little-Known Spyware Maker Based in Minnesota, Whic Exposed Activity Logs from the Phones, and Computers Monitored with Monitored with Monitored Stalkerware Apps, Who One of the Longest-Running Stalions of Customer Support Tickets, which has inculded the personal data of the Millions of Millions of Millions.

Previously, an Unknown Hacker Broke into the Servers of the Us-Based Stalkerware Maker PCTATTALALALE. The Hacker Theen Stole and Leaked The Company’s Internal Data. They Also Defaced PCTATTETALE’s Official Website

AS A RESULT OF THIS HACK, Leak and Shame Operation, PCTATTLETALE FOUNDER Bryan Fleming Said He Was Shutting Download.

Consumer Spyware Apps Like MSPY and PCTATTTALALALALALALALALE ARE AS STALKERWARE Multiple Court Casses, Journalistic Investigations and Surveys of Domesti.

And that’s WHY HACKERS HAVE REPEATEDLY TARGETED SOME OF THOSE.

EVA GALPERIN, The Director of Cybersecurity at the Electronic Frontier Foundation and A Leading Researcher and Activist Who Has Investigated and Fought Stalkerware For Years, Said The Stalkerware

“Galperin Told Techcrunch.

Given The History of Stalkerware Comproises, That May Be an Understatement. And the Personal Data of the Personal Data of the Personal Data of the Doubles of the Doubles of the Double. The Stalkerware Customers may be breaking the Law, Abusing their Partners by illegally Spying on Them, and on Top of That, Putting Everyonee’s Danger.

A History of Stalkerware Hacks

The Flurry of Stalkerware Breaches Began in 2017? Those Two Hacks Revealed that the Companies Had A Total Number of 130,000 Customers All Over The World.

At the time, the hackers who – proudly – Claimed Responsibility for the Compromisas Explicitly Said Their Motivation.

“One of the hackers involved thein Told Motherboard,“ I’m Going to Burn Them to the Ground, and Leave Absolutyl

Reference to Flexispy, The Hacker Added: Howver, I Fear They Might and Give Birdh to Themselves Again in A New Form. But if they do, I’ll be there. “

Despite The Hack, and the Years of Negative Public Attention, Flexispy is Still Active Today. The Same Cannot be Said About Retina-X.

The hacker who broke into retina-x wired its servers with the goal of hampering its operations. The Company Bounced Back – and then it Got Hacked Again A Year Later. A Couple of Weeks After the Second Breach, Retina-X Announted That it was.

Just Days After the Second Retina-X Breach, Hackers Hit Mobistealth and Spy Master Pro, Stealing Gigabytes of Customer and Business Records, As Wel As Victims Another Stalkerware Vendor, The India-Based Spyhuman, Encoount Later, with Hackers Stealing Text Mesage and Call Metadata, Who Callled Who and Who.

Weeks Later, the first case of Accidental Data Exposure, Rather Than a Hack. Spyfone Left an Amazon-Hosted S3 Storege Bucket UNPROTTED Online, Who Meante Meante and Download Text Message, Photos, Audio Recordings, Scrambled Passwords and Login Formations. All That Data.

Operate Stalkerware Compranies That Over Haars Hears Hears IrresponsSibly Left Customer and Victims MSpy, Who Leaked Over 2 Million Customer Records in 2018; Xnore, Which Let Any of Its Customers See The Personal Data of Out Customers’ Targets, Who Included Chat Message, GPS Coordinates, Emails, Photos and More; Mobiispy, Which Left 25,000 Audio Recordings and 95,000 images on a Server Accessible to Anyone; Kidsguard, WHich Had a MisConfigurered Server That Leaked Victims’ Content; PCTATTETALE, WHich Prior to Its Hack Also Exposed Screenenhots of Victims Data; and now Cocospy and Spyic, Who Left Victims ‘Mesage, Photos, Call Logs, and other Personal Data, As Well As Customers’ email Addresses, Exposed Online.

As Far AS OPER STALKERWARE COMPARES THAT ACTION ACUALLY GOOT HACKED, Thee Was Copy9, WHIC SAW A HACKER Steal of All Its Surveillance Targets, Inclument Text Messages and Whatsapp Message History; Letmespy, Who Shut Down After Hackers Breached and Wiped Its Servers; The Brazil-Based Webdetive, Who Also Got Its Servers Wiped, and Then Hacked Again; OWNSPY, WHich Provides Much of the Back-End Software for Webdetive, Also Got Hacked; Spyhide, Which Had A Vulnerability in Its Code That Allowed a Hacker to Access The Back-End Databases and Years of Stolen AROUND 60,000 Victims’ Data; OOSpy, Which Was a Rebrand of Spyide, Shut Down for a Second Time; and the Latest Mspy Hack, Which is unreedioled.

Finally there is thetruthspy, a network of stalkerware apps, which Holds the DububioBous Record of Hail Hacked or HAVEING LEAKED DATA ON AT LEAST THREE Separate Occasions.

Hacked, but unrepented

Of these 23 Stalkerware Companies, Eight Have Shut Download, According to Techcrunch’s Tallly.

In a First and Far Unique Case, The Federal Trade Commission Banned Banned Spyfone and Its Chief Executive, Scott Zucmerman, From the Surveillance Industry Following An Earlier Security Lapse that Exposed Victims. Another Stalkerware Operation Linked to Zuckerman, Called SpyTRAC, Subsequently Shut Down Following a Techcrunch Investigation.

Phonespector and Highster, Another Two Companies that Are Not Known to Have Been Hacked, Also Shut Down After New York’s Attorney General Accused the Companies of Explicitly Encouraging Customers.

But a Company Closing Doesn’t Mean It’s Gone Forever. AS With Spyfone and Spyfone, Some of the Same Owers and Developers Behın A Shuttered Stalkerware Adventure Simply Rebranded.

“They do account Things, they do id id in it,” Galperin Said. “BUT YOU THAT If You Hack A Stalkerware Company, That They Will Simply Shake Their Fists, Curse Your Name, Disappear in A Puff of Blue Smoke and Never Been Again, That Has Most Definitely Not The Case.

“What Happens Most often, Who You Activally Manage to Kill A Stalkerware Company, Is The Stalkerware Company Comes Up Like Mushrooms After the Rain.

There is SOME Good News. In a Report Last Year, Security Company Malwarebytes Said That The Uses of Stalkerware is Declining, Account of it. ALSO, Galperin Reports Seeing An Increase In Negative Reviews of These Apps, with Customers or Prospective Customers Compleining.

But, Galperin Said that it’s Possible That Security Firms Aren’ts Aren’ts Aren’ts as they used to be, or stalkers have moved from Software-Based Surveillance to Physical Surveillan.

“Stalkerware do not exist in a vacuum. Stalkerware is part of a whole World of Tech-Enabled Abuse, ”Galperin Said.

Say No to Stalkerware

Using Spyware to Monitor Your Loved Ones is not only unethical, it’s also illegal in most jurisdictions, as it’s consuderted unlawful surveillance.

That is already a significant reason not to us stalkerware. Thes that are the issue that stalkerware makers have proven and time again that they cannot keep data secure.

Apart from Spying on Romantic Partners and Spouses, SOME PEOPLE USE STALKERware Apps to Monir. WHO This Type of Use, at Least in the United States, is Legitimate, it Doesn’t Mean Using Stalkerware to Snoop on Your Kids

EVEN IF It’s Lawful, Galperin Thinks Parents Should Not Spy On Their Children with the Telling Them, and With the Consent

IF Parents do not realize the children and get their go-ahead, parents shoud stay away from Incecure and Untrustworthy Stalkerware Apps, and Us Parental Tracking Tools Built Into Apple Phones and Table Android Devices that are Safer Overtly.

Recap of Breaches and Leaks

Here’s The Complete List of Stalkerware Companies that have been hacked or have leaked sensitive Data Exquir 2017, in Chronological Order:

  • Retina-X (2017, 2018)
  • Flexispy (2017)
  • Mobistealh (2018)
  • Spy Master Pro (2018)
  • Spyhuman (2018)
  • Spyfone (2018)
  • Familyorbit (2018)
  • MSPY (2018, 2024)
  • Xnore (2018)
  • COPY9 (2018)
  • Mobiispy (2019)
  • Kidsguard (2020)
  • PCTATTETALE (2021, 2024)
  • XNSPY (2022)
  • Spyhide (2023)
  • ThetruthSpy (2021, 2022, 2023, 2024)
  • Letmespy (2023)
  • Webdetetive (2023, 2024)
  • OWNSPY (2023)
  • OOSpy (2023)
  • Spytech (2024)
  • Cocospy (2025)
  • Spyic (2025)

Updated on February 20, 2025 to Include Cocospy and Spyic as the Latest Set of Buggy Stalkerware Apps.


IF You or Someone You Know Needs Help, The National Domestic Violence Hotline (1-800-799-7233) Provides 24/7 Free, Confidental Support to Victims of Domestic Abuse and Violence. IF you are in an emergency situation, Call 911.

About Author

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Share via
Copy link