:

RUSSIA HACKED ACTIVIST PHONE WITH SANCTIONED TOOL

SECURITY DESK1 MIN READ
THU, JUN 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Russia allegedly exploited a forensics platform to compromise an activist's phone, even after the tool's maker lost access. Cellebrite says the hardware predates current sanctions and was used without authorization.

Cellebrite, an Israeli mobile forensics company, disclosed that Russian actors allegedly used its platform to conduct a cyberattack against an activist. The company stated the hardware in question was manufactured before current sanctions restrictions took effect. Cellebrite emphasized it did not consent to the use and has since cut off remote access capabilities for Russian users. The revelation highlights ongoing security challenges facing activists in regions with government surveillance capabilities. The incident underscores persistent vulnerabilities in sanctioned technology ecosystems. Older hardware versions may remain operational despite manufacturers implementing access restrictions, creating potential security gaps. Cellebrite did not disclose the activist's identity or specific details about the attack's scope. The company has faced prior scrutiny over its tools being used for surveillance purposes by governments worldwide.

■ SOURCES

Engadget

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Market research firm Klue says the original hackers are deleting stolen customer data, but a second hacking group is now demanding ransom from the company.

JUST NOWSecurity Desk

Polish authorities have arrested four members of an organized cybercrime group responsible for SIM-swapping attacks that resulted in millions in cryptocurrency theft. The gang breached telecom partners and hijacked email accounts to execute the attacks.

JUST NOWIndustry Desk

Prediction market platform Polymarket disclosed a security breach where hackers stole user funds through a third-party vulnerability. The company announced it will refund affected users.

2H AGOSecurity Desk

Threat actors are exploiting Shopify's Shop order-tracking app by injecting fake purchase receipts into user accounts. The attacks trick victims into revealing sensitive data or installing remote access malware.

4H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.