Access Now A.I CyberSecurity Scoring
Access Now
Company Information
Website:https://www.accessnow.org/
Employees number:102
Number of followers:470
NAICS:8134
Industry Type:Civic and Social Organizations
Homepage:accessnow.org
Access Now Risk Score (AI oriented)
Between 700 and 749
Access NowCivic and Social Organizations
Updated:
09/04/2026
09/04/2026
737/1000
Moderate
Ba
Access Now Global Score (TPRM)
xxxx
Access NowCivic and Social Organizations
Score locked

Access NowModerate
Current Score
737Ba (MODERATE)
01000
1 incidents
-27 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
740
AUGUST 2026
740
JULY 2026
739
JUNE 2026
739
MAY 2026
738
APRIL 2026
764
Cyber Attack
08 Apr 2026 • Access Now
SMEX and Access Now: Middle East Hack-for-Hire Operation Traced to South Asian APT Group
Middle East Civil Society Figures Targeted in Sophisticated Spear-Phishing Campaign
737
CRITICAL-27
ACCSME1775737932
Middle East Civil Society Figures Targeted in Sophisticated Spear-Phishing Campaign
In August 2025, digital rights organization Access Now uncovered a spear-phishing campaign targeting high-profile civil society figures in the Middle East, including three prominent journalists in Egypt and Lebanon. The campaign, active from 2023 to 2024, was linked to the Bitter APT group, a suspected South Asian cyber espionage threat actor active since at least 2013.
The targets included Egyptian journalists Mostafa Al-A’sar and Ahmed Eltantawy, both vocal critics of the government with histories of political imprisonment. A third, unnamed Lebanese journalist was also identified by Beirut-based digital rights group SMEX as a victim in 2025.
The attackers employed Android malware, delivered through fake accounts and impersonation tactics across platforms, including Signal. Security firm Lookout analyzed the infrastructure and attributed the campaign to a hack-for-hire operation with ties to Bitter, which has previously targeted governments and energy sectors in Pakistan, China, Bangladesh, and Saudi Arabia.
Further investigation revealed the malware strains ProSpy and ToSpy disguised as messaging apps were also used in a separate campaign against users in the United Arab Emirates (UAE), as documented by ESET in October 2025. The attackers invested significant effort in social engineering, mimicking legitimate services to gain trust before deploying the spyware.
The campaign highlights the persistent threat posed by state-aligned cyber espionage groups to journalists, activists, and civil society in the region.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
MARCH 2026
764
FEBRUARY 2026
764
JANUARY 2026
764
DECEMBER 2025
764
NOVEMBER 2025
764
OCTOBER 2025
764
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for Access Now ??
What was Access Now's A.I Rankiteo Cyber Score in August 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in July 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in June 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in May 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in April 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in March 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in February 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in January 2026 ??
What was Access Now's A.I Rankiteo Cyber Score in December 2025 ??
What was Access Now's A.I Rankiteo Cyber Score in November 2025 ??
What was Access Now's A.I Rankiteo Cyber Score in October 2025 ??
What is the average per-incident point impact on Access Now's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with Access Now ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view Access Now's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?