Krakow-based Android phone monitoring app LetMeSpy plans to shut down by the end of August 2023 after a hacker breached and deleted its server data in June
Poland-based spyware LetMeSpy is no longer operational and said it will shut down after a June data breach wiped out its servers … Mastodon: @zackwhittaker@mastodon.social . Forums: Hacker News Mastodon: Zack Whittaker / @zackwhittaker@mastodon.social : New, by me: LetMeSpy, a spyware maker based in Poland, said it will shut down and cease operations after a hacker broke in and wiped out its servers. — Radeal CEO Rafal Lidwin, who develops the spyware, did not respond to a request for comment. —
Context & Ripple Effects
LetMeSpy’s closure follows its June disclosure that an intruder had accessed the messages, call logs and location data the service collected from Android devices in a breach affecting its surveillance data. The later server deletion turns that incident from a customer-data exposure into an operational failure for Radeal’s product.
The episode sits alongside other reported stalkerware compromises, including the leak of TheTruthSpy network tracking data and a breach at WebDetetive in which victim data was deleted. The recurring pattern matters because these services centralize exceptionally sensitive information while appearing unable to protect it.
First-order effects
- LetMeSpy users lose access to the service as Radeal winds it down, while the company exits an Android monitoring product whose server data was deleted.
- People whose devices were monitored face the lasting consequences of the June exposure: the intercepted data was reported stolen before the shutdown was announced.
Second-order effects
- The shutdown makes a breach an existential operating risk for competing spyware providers, not merely a compliance or remediation event; customers may reassess services that depend on centralized stores of intercepted data.
- The similar WebDetetive breach and data deletion reinforces scrutiny of the security practices behind phone-monitoring apps, especially where providers retain messages, call records and locations.
Third-order effects
- If repeated compromises continue, the stalkerware market may become more fragile: providers that cannot secure or recover their data infrastructure can be removed from the market by a single intrusion.
- The pattern strengthens the case for treating consumer surveillance apps as a high-risk data category, with security failures exposing both customers and the people being monitored.
The trend: Repeated breaches are revealing that centralized mobile-surveillance services carry concentrated security and continuity risks for both operators and monitored individuals.