A fresh round of digital warnings is reaching people whose phones may have been singled out by surveillance-for-hire operations. The alerts tell recipients that a mercenary spyware attack appears to have been aimed at them personally, based on internal detection work by the device maker.
The newest batch of warnings reached people in 110 countries, a tally reported by TechCrunch and repeated across security news sites. Since the alert system started in 2021, notifications have gone out in more than 150 countries altogether.
The people on the receiving end tend to be journalists, activists, politicians, diplomats, and lawyers, whose conversations, contacts, and location history make them valuable targets for surveillance vendors and the governments that buy their services.
What changed this time is delivery. The warning now arrives as a push notification on the iPhone lock screen and inside Settings, joining the existing email notice and a banner shown after signing in to the Apple Account page. The on-device alert is built to be harder to overlook than a message buried in an inbox.
Apple describes the notices as high-confidence alerts based solely on its own threat intelligence, and it declines to explain what triggers them for fear of helping spyware vendors adapt. Genuine alerts never ask for passwords, links, file installs, or verification codes. Recipients can check a notice by signing in at account.apple.com, and Apple points them to the Access Now Digital Security Helpline for expert help.
The company’s guidance repeats its standard hardening advice: enable Lockdown Mode, keep software current, use strong passcodes and passkeys, turn on two-factor authentication, and install apps only through the App Store. Mercenary spyware campaigns are rare, expensive, and aimed at a very small number of specific people, so most users will never see one of these alerts.