A new safety defect in the TETRUTHSPY is at risk

Photo of author

By [email protected]


Techcrunch confirmed that Malkkerware Maker, which has a history of multiple data leakage and violations now has a decisive security vulnerability that allows anyone to take any user account and steal data from his sensitive personality.

Independent security researcher has found weakness, which allows anyone to reset the password for any user to apply matching tools TheetRthspy And many Android spyware applications, which leads to the kidnapping of any articles of the articles of association. Due to the nature of thethuthspy, it is possible that many of its customers are working without the approval of their goals, who do not realize that their phone data is diluted for another person.

This primary defect appears again, that consumer spyware makers such as Theet Professions – and many of their competitors – cannot be trusted with anyone’s data. These monitoring applications are not only easy for illegal espionage, and often by abusive romantic partners, but they also have poor security practices that offer personal data for both victims and perpetrators.

To date, Techcrunch has been calculated At least 26 operations of spyware that were leaked, exposed, or leaked in another way In recent years. Through our account, this is at least the fourth security separator that includes the TETRUTHSPY.

TECHCRUNCH is weak by providing a user researcher to many test accounts. The researcher quickly changed passwords on the accounts. The valley tried to contact the TheetRthspy owner to alert him from the defect, but he did not receive any response.

When calling it by Techcrunch, the director of the Spyware Van (VARDY) Thieu said that the source code is “lost” and cannot fix the defect.

As of publication, weakness is still present and a great danger to thousands of people who are believed to be an unknown risk by the TETRUTHSPY spyware.

Looking at the risks to the common people, we do not have weakness in more detail so that the malicious actors do not help.

A brief history of many security defects of thetruntsby

The Tetrutesby is a heavy spy process with roots dating back nearly a decade. For a while, the spyware network was one of the largest well -known telephone surveillance operations.

The TetruteSpy has been developed by 1Byte program, Vietnam -based spyware maker Thyo is managed by her manager. The TetruteSpy is one of the fleet of spyware applications that are less than its approval with different brands, including Copy 9Since the regular brands ISPYOOO, MXSPY and others. Spyware applications share the same rear information panels used by the TTRUTHSPY customers to access the stolen phone data for their ulcers.

As such, security errors in the TETRUTHSPY also affect customers and victims of any application of brand or white spyware that depends on the primary code in TheTrtHSPY.

As part of the investigation of the chasing tools industry in 2021, Techcrunch found that Theetruthsby had a safety mistake This was displaying the special data of its 400,000 victims of any person on the Internet. The open data included most of the personal information of the victims, including their own messages, pictures, call records and their historical website data.

Techcrunch later received the storage storage of files from the Tetrutesby servers, and exposed the internal business to run spyware. Files also contain a list of all Android device that is exposed to the Thertntspy or one of its accompanying applications. While the list of devices does not contain enough information to determine each victim personally, it allowed Techcrunch to create a tool for spyware for any possible victim to verify If their phones were found in the list.

Our subsequent reports, based on hundreds of documents that were leaked from the 1BYTE servers sent to Techcrunch,, revealed this Thyrtersbe relied on the process of laundering huge money That used forged documents and wrong identities for the skirt restrictions that are placed by credit card processors in spyware. The TETRUTHSPY allowed the transfer of millions of dollars from illegal customer payments in bank accounts all over the world controlled by its operators.

In late 2023, the Tunessby had another data breach and exposed Special data on another 50,000 victims. A copy of this data has been sent, and we added the updated records to our search tool.

TheetRthspy, still displays data, rename to Phoneparental

As some of the TheetRthspy operations have ended, and other parts are renamed to escape the reputation scrutiny. The TETRUTHSPY is still present today, and it has maintained a lot of the source symbol of the Daba Diaris and weak information panels while reincarnation as a new application of spyware called Phoneparental.

Thieu is still participating in developing phone monitoring programs, as well as facilitating continuous monitoring.

According to a recent analysis of the current infrastructure facing the TETRUTHSPY web using general internet records, the process continues to rely on a master of programs developed by Thieu called JFRAMEWORK (previously known As JEXPA frameworkThe TheetRthspy and other spyware applications are relied upon to share data again to their servers.

In an email, Theo said it is rebuilding applications from the zero point, including a new phone monitor called MyPons.App. The network analysis test by Techcrunch MyPons.App is based on JFRAMEWORK for its background operations, the same system that the TETRUTHSPY uses.

Techcrunch has an explanation on How to identify and remove chase tools From your phone.

The TETRUTHSPY, just like other centers tool operators, is still a threat to victims whose phones are at risk through their applications, not only because of the very sensitive data they steal, but because these operations constantly prove that they cannot maintain safe victim data.

If you or anyone you know need help, then the hotline of national violence (1-800-799-7233) provides free support around the clock throughout the week for victims of home abuse and violence. If you are in an emergency, call 911. The alliance against the tools of the chaser It has resources if you think your phone may be at risk with spyware.



https://techcrunch.com/wp-content/uploads/2023/07/thetruthspy-2-hero-image.jpg?resize=1200,675

Source link

Leave a Comment