APPLE WARNS USERS OF TARGETED MERCENARY SPYWARE ATTACKS
Apple has sent threat notifications to select users across 110 countries warning them of targeted mercenary spyware attacks on their devices. The notifications were issued on Thursday following detection of activity consistent with such attacks. According to Apple, the spyware is designed to bypass built-in encryption and access private files, monitor conversations, capture audio and video, track location, and control the device. The attacks target journalists, activists, politicians, and diplomats rather than the general public.
Apple describes mercenary spyware as sophisticated surveillance tools typically sold by companies to state actors or governments, with Pegasus cited as an example of such technology. The company stated in an updated support page that these attacks cost millions of dollars and are vastly more sophisticated than regular cybercriminal activity, making them difficult to detect and prevent. Apple acknowledged that its investigations "can never achieve absolute certainty" but characterised the notifications as "high-confidence alerts" that should be taken seriously. The company declined to reveal how it identifies targeted users, stating that such information could be exploited to evade detection.
Apple advised recipients of notifications to enable Lockdown Mode to activate extreme protection on their devices. The company published a new support page detailing what mercenary spyware is and what targeted individuals can do to protect themselves. Receipt of a notification indicates Apple detected suspicious activity on a device but does not confirm that data has already been compromised. Apple has issued similar notifications twice previously during 2024.