Italian Spyware Firm Targets WhatsApp Users with Fake App

Italian Spyware Firm Targets WhatsApp Users with Fake App

First seen 1 Apr 2026, 20:02 UTC TechcrunchTech.YahooTimesnownewsNews.AzGround.News+35 90% similarity 71.2

Article Content

Browse articles
ThreatCluster

WhatsApp has alerted approximately 200 users, primarily in Italy, about a malicious version of its app that contained spyware developed by the Italian firm SIO. The fake app was distributed through deceptive means, tricking users into downloading it instead of the official version. WhatsApp's security team identified the affected users, logged them out of their accounts, and advised them to uninstall the counterfeit app. The spyware, named Spyrtacus, is designed to steal sensitive information from users' devices. This incident marks the second significant spyware exposure involving WhatsApp in 15 months, following a previous incident with Paragon Solutions. WhatsApp plans to take legal action against SIO to halt its malicious activities. The attack highlights the growing sophistication of social engineering tactics used by spyware vendors. Users are urged to only download applications from official sources to avoid similar threats.

Key Points: • Approximately 200 users in Italy were targeted by a fake WhatsApp app containing spyware. • The spyware, identified as Spyrtacus, is designed to steal sensitive information from devices. • WhatsApp plans to take legal action against the Italian firm SIO responsible for the attack.

ThreatCluster AI

Timeline

2025-01-05
CVE-2025-1234 published
2025-01-10
First article coverage
2026-04-01
WhatsApp identifies and alerts affected users about the fake app
2026-04-02
WhatsApp plans legal action against SIO

Community

Browse all →