Cellebrite is a tool tracked across 7 threat clusters and 13 intelligence report mentions on ThreatCluster. First observed January 22, 2026; most recent activity June 25, 2026.
Russian authorities used Cellebrite's forensic tools to access the iPhone of political activist Andrey Pivovarov in June 2021, despite Cellebrite's announcement in March 2021 that it would cease sales to Russia. The…
Google has launched a new feature called Intrusion Logging as part of Android's Advanced Protection Mode, aimed at helping security researchers detect spyware attacks. This feature, developed in collaboration with…
US Immigration and Customs Enforcement (ICE) has increased its utilization of surveillance technologies, acquiring spyware and phone-hacking tools from Israeli companies. The agency has purchased technology from Paragon…
An authentication bypass vulnerability in Fortinet Fortiweb firewalls is being exploited in widespread and ongoing attacks. The bug has not yet been assigned a CVE identifier, and the attacks are targeting security…
The UK government is investing in Israeli spyware, including Corsight facial recognition technology, which has been developed and tested on Palestinians in Gaza and the West Bank. This investment occurs despite the UK’s…
Amnesty International reported that the phone of prominent Angolan journalist Teixeira Cândido was hacked using Intellexa's Predator spyware. The attack involved sending malicious links via WhatsApp during 2024,…
Citizen Lab reported that Kenyan authorities utilized Cellebrite's phone-cracking technology to access the device of Boniface Mwangi, a prominent human rights activist, following his arrest during mass protests in July…