Warnings that professional surveillance tools may have been aimed at three senior officials pushed a government into action this week, with the target devices seized and swapped for fresh units.
The alerts were Apple threat notifications, part of an August wave that reached iPhone owners in 110 countries, and the three cabinet ministers sat inside that round, people familiar with the matter told Middle East Eye. Ankara’s newly created cyber security presidency carried out the review, and its examiners found no sign that the intrusion attempts succeeded, an official said.
The ministers had been carrying handsets with extra hardening and encrypted apps for sensitive traffic, and their names were withheld. Few in the capital are surprised by such targeting, which officials treat as a constant, and responsibility rarely sticks when surveillance products are sold across the region and traces often end at a country-linked IP address.
Apple does not name suspected operators in its alerts, and updating iOS can erase the digital leftovers that would identify the tool. Turkey has been through this cycle before. In 2021 officials junked their phones and numbers after suspected Pegasus strikes, the NSO Group spyware whose iMessage exploits needed no user interaction.
Apple’s Lockdown Mode exists for exactly these users, blocking most interaction-free attack paths. The episode stands out mainly as a public glimpse of the machinery that moves after Apple warns a government that its phones are in someone’s crosshairs.