Topline
Apple sent out threat notifications to users in 92 countries on Wednesday, informing them that they may have been the target of “mercenary spyware attacks,” a warning that comes at a time when several major democracies are preparing to hold critical elections.
Key Facts
Apple updated the security notice on its website on Wednesday, which states that threat notifications are “designed to inform and assist users who may have been individually targeted by mercenary spyware attacks.”
According to several Indian news outlets, including the Economic Times and the Indian Express, some iPhone users in the country received notifications from Apple alerting them of an attack “that is trying to remotely compromise the iPhone associated with your Apple ID.”
The notification informed the user they were likely being targeted specifically “because of who you are or what you do,” and urged them to take it “seriously.”
The reports do not name any individuals in India who received the notifications, but it comes just a week before the start of the country’s month-and-half-long general elections—the world’s largest democratic exercise.
Apple doesn’t include any specific steps for users who have received the notifications, other than urging them to enlist help from cybersecurity experts.
Big Number
150. That is the number of countries where iPhone users have received such threat notifications since 2021, the company said.
Key Background
In October last year, Apple sent out similar notifications to several prominent political leaders in India who represented opposition parties. Rahul Gandhi, the top leader of Congress—India’s main national opposition party—told reporters that he and several other members of his and other opposition parties had received notifications that their iPhones were being targeted by “state-sponsored attackers.” At the time, Gandhi called out Prime Minister Narendra Modi’s government and accused them of carrying out the attack. Prominent activists and journalists who are critical of the Modi government also received the notification at the time. Apple confirmed it had sent out the notifications but said it had not attributed it to a “specific state-sponsored attacker.” In late December, Amnesty International said it had conducted a forensic investigation to confirm Apple’s findings and said NSO Group’s Pegasus spyware was used to carry out the attacks. India government authorities publicly denied carrying out the attacks but according to the Washington Post they reportedly pressured Apple to “come up with alternative explanations for the warnings to users,” to ease the political fallout.
Further Reading
Apple warns users of “mercenary spyware” attack; India, 91 other countries impacted (Economic Times)
Apple warns some Indian users their iPhone may be bugged by Pegasus-type spyware (Indian Express)