[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2623st47qcrlz":3},{"success":4,"breach":5},true,{"_id":6,"name":7,"title":8,"slug":7,"domain":9,"breachDate":10,"addedDate":11,"modifiedDate":12,"contentUpdatedAt":13,"source":14,"sourceUrl":15,"sourceUrls":16,"pwnCount":17,"affectedCount":17,"affectedCountStatus":18,"affectedCountLowerBound":19,"affectedCountUnit":20,"hasEnglishDescription":4,"severity":21,"dataClasses":22,"description":25,"seoTitle":15,"seoTitleEn":26,"seoDescription":15,"seoDescriptionEn":27,"logoUrl":28,"isVerified":4,"isSensitive":4,"isSpamList":29,"isMalware":29,"company":30},"68e3266eda11adda4882513c","catwatchful","Catwatchful Data Breach","catwatchful.com","2025-06-09T00:00:00.000Z","2025-07-03T23:04:01.000Z","2025-10-08T18:56:32.092Z","2026-07-18T23:47:15.616Z","Third party breach","",[],61641,"known",null,"unknown","Medium",[23,24],"Email addresses","Passwords","\u003Cp>Catwatchful is a spyware service known for secret monitoring and stalkerware features targeting Android devices. The breach reported in June 2025 exposed more than 60,000 customer records, including email addresses and plain text passwords.\u003C\u002Fp>\u003Cp>This record is highly sensitive due to the nature of the service. The canonical data classes are email address and password; however, since it has been reported that these accounts are used to view data collected from target devices, associating an email address with such a service may also have a serious privacy impact.\u003C\u002Fp>\u003Ch2>Leaked Data Types and Risks\u003C\u002Fh2>\u003Cp>The data classes observed in the Catwatchful record should be treated as email addresses and password data. Email addresses can be used for targeted phishing, password reset scenarios, and account matching across different services. Password data directly increases the risk of account takeover, especially if the same password is reused on other services.\u003C\u002Fp>\u003Cp>Finding a plain text password means that it can be tried on other accounts without waiting for the password to be cracked. In the context of spyware, it can also have more severe consequences in terms of associating the user with a monitoring application, legal and personal risks, and the security of the targeted individuals.\u003C\u002Fp>\u003Ch2>Verified Scope and Boundaries\u003C\u002Fh2>\u003Cp>This record is associated with the domain catwatchful.com and the June 2025 event. The scope is limited to email addresses and plain text passwords. Content collected from target devices, such as messages, photos, or location, should not be added as a separate data class for this record; it should only be carefully considered as event context.\u003C\u002Fp>\u003Cp>Fields that are not present in this record should not be described as if they have leaked. Fields such as full card number, account password, official ID, private message, device content, or health information should only be added to the risk assessment if they are explicitly included in the record. The text has been constructed based on verifiable data classes and the known boundaries of the incident.\u003C\u002Fp>\u003Ch2>User Groups at Risk\u003C\u002Fh2>\u003Cp>Individuals who have opened a Catwatchful customer account, users who use the same password on other accounts, and individuals whose association with such a service could create personal or legal risks are at primary risk.\u003C\u002Fp>\u003Cp>Users who use the same email address across different services, repeat their old passwords, and share phone and address information in a large number of shopping or community accounts are at higher risk. The link between a pseudonym and the real identity in corporate or community accounts can create additional social engineering risks.\u003C\u002Fp>\u003Ch2>Urgent Measures to Be Taken\u003C\u002Fh2>\u003Cp>Users should immediately change the password on all accounts where they use the same password. Email security, session history, and password manager records in accounts linked to this service should be reviewed; legal and ethical risks should also be assessed.\u003C\u002Fp>\u003Cp>Users in the positive match field should update their passwords on accounts where they use the same or similar passwords, enable two-factor authentication where possible, and check recent sessions. Caution should be exercised against unexpected calls, deliveries, returns, support, and verification messages on records containing phone numbers, addresses, payment information, or sensitive community information.\u003C\u002Fp>\u003Ch2>Long-Term Security Strategies\u003C\u002Fh2>\u003Cp>In the long term, the habit of using a password manager, unique passwords, two-factor authentication, and removing unnecessary personal information from accounts reduces risk. Reusing the same email address across different platforms makes it easier to combine data from different breaches; using a separate email or alias for critical accounts can be considered.\u003C\u002Fp>\u003Cp>Since spyware and stalkerware services carry a high privacy risk, users should consider closing accounts associated with these services, using unique emails and passwords, and reviewing device security with expert support.\u003C\u002Fp>\u003Ch2>Record Control and User Action\u003C\u002Fh2>\u003Cp>LeakData check indicates whether the queried email address is found in this record. A positive result may not mean that all data fields definitely belong to that user; however, it is sufficient as a warning for precautionary measures. A negative result only indicates that there is no match in this dataset and does not eliminate the possibility of appearing in other breaches.\u003C\u002Fp>\u003Cp>A positive result indicates that the email address is present in Catwatchful's customer records. Due to the plain text password and spyware context, the result should be treated with high priority; a negative result only means that there is no match within this record.\u003C\u002Fp>","Catwatchful Data Breach (61.6 Thousand Reported Records)","Catwatchful Data Breach. 61.6 Thousand reported records were reported. Reported data: Email addresses, Passwords. Review the scope, risks, and protective steps.","\u002Fuploads\u002Flogo\u002Fcatwatchful_com.webp",false,{"name":31,"sector":32,"country":33,"website":9,"websiteArchiveUrl":15,"websiteStatus":15,"websiteCheckedAt":19},"Catwatchful","Spyware \u002F Stalkerware","Global"]