
Security researchers identified a hack-for-hire group targeting journalists, activists, and government officials across Middle East and North Africa. The group used phishing attacks to access iCloud backups and Signal accounts, deploying Android spyware on targets' devices. Access Now, SMEX, and Lookout documented attacks from 2023-2025. Researchers suspect the group, codenamed BITTER, has ties to Indian government and may be called Rebsec Solutions.