Microsoft Threat Intelligence experts say a threat group is associated with “QuaDream,” an Israeli-based private sector offensive actor (PSOA).
It employed a zero-click exploit called END OF DAYS to compromise the iPhones of high-risk individuals
Reports say QuaDream sells a platform called REIGN to governments for use in law enforcement. A collection of malware, exploits, infrastructure called REIGN is explicitly made to exfiltrate data from mobile devices
According to Citizen Lab researchers, compromised devices belong to “at least five civil society victims of QuaDream’s spyware and exploits in North America, Central Asia, Southeast Asia, Europe, and the Middle East.
Bulgaria, Czechia, Hungary, Ghana, Israel, Mexico, Romania, Singapore, United Arab Emirates, and Uzbekistan were among the nations where Citizen Lab could identify operators for QuaDream systems.
“Victims include journalists, political opposition figures, and an NGO worker"