HomeAtlasDashboardChartsReal valueResearchPersonsCatalogsBlockchainBubble MapGlobeQuantumAILeadershipLensesMethodologyGlossarySource ↗
Independent research & opinion. Gradings are automated / LLM-assisted and may contain errors or hallucinations; nothing here is a statement of fact, financial advice, or an accusation of wrongdoing by any party. Claims about identifiable people or organizations reflect public records + good-faith interpretation; intent is not inferred from association. Methodology & disclaimer.

Commercial spyware & phone-forensics vendors (beyond NSO/Gamma/Intellexa)

Batch 4 of the threat-actor catalog - the commercial surveillance industry, split into two adjacent-but-distinct markets.

Remote spyware (covert zero-click implants)

Phone-forensics extraction (physical-access unlocking of seized devices)

The taxonomy distinction (kept deliberately)

Extraction tools require physical custody + (usually) legal process; remote spyware covertly infects a target's live phone. Both sell government surveillance capability, but they are legally and technically different - so this block keeps extraction on its own sub-hub rather than conflating it with covert spyware.

Honest limits

"Ethical spyware" is vendor framing that documented targeting contradicts. Targeting findings come from Citizen Lab / Google TAG / Meta - well-corroborated but from parties (graded). Ownership chains (Francisco Partners, AE Industrial, Sun Corp) are as-reported. Much of the industry clusters in Israel (Unit 8200 alumni pipeline).

Sources: Citizen Lab (Circles 2020; QuaDream 2023; Paragon/Graphite 2025); Google TAG (Variston); Meta surveillance-for-hire (2021); Cellebrite/Magnet filings + procurement; US Entity List/Treasury. Cross-refs: Commercial_Spyware_Market, NSO_Group, Citizen_Lab, Meta, US_Government, Israel, Malware_Lineage.

← Research index · structured data: spec-spyware-vendor-catalog.json · spec-spyware-vendor-catalog.md