SMEX A.I CyberSecurity Scoring
SMEX
Company Information
Website:http://www.smex.org
Employees number:40
Number of followers:4,685
NAICS:513
Industry Type:Technology, Information and Internet
Homepage:smex.org
SMEX Risk Score (AI oriented)
Between 700 and 749
SMEXTechnology, Information and Internet
Updated:
09/04/2026
09/04/2026
734/1000
Moderate
Ba
SMEX Global Score (TPRM)
xxxx
SMEXTechnology, Information and Internet
Score locked

SMEXModerate
Current Score
734Ba (MODERATE)
01000
1 incidents
-31 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
AUGUST 2026
736
JULY 2026
736
JUNE 2026
735
MAY 2026
735
APRIL 2026
765
Cyber Attack
08 Apr 2026 • SMEX
SMEX and Access Now: Middle East Hack-for-Hire Operation Traced to South Asian APT Group
Middle East Civil Society Figures Targeted in Sophisticated Spear-Phishing Campaign
734
CRITICAL-31
ACCSME1775737932
Middle East Civil Society Figures Targeted in Sophisticated Spear-Phishing Campaign
In August 2025, digital rights organization Access Now uncovered a spear-phishing campaign targeting high-profile civil society figures in the Middle East, including three prominent journalists in Egypt and Lebanon. The campaign, active from 2023 to 2024, was linked to the Bitter APT group, a suspected South Asian cyber espionage threat actor active since at least 2013.
The targets included Egyptian journalists Mostafa Al-A’sar and Ahmed Eltantawy, both vocal critics of the government with histories of political imprisonment. A third, unnamed Lebanese journalist was also identified by Beirut-based digital rights group SMEX as a victim in 2025.
The attackers employed Android malware, delivered through fake accounts and impersonation tactics across platforms, including Signal. Security firm Lookout analyzed the infrastructure and attributed the campaign to a hack-for-hire operation with ties to Bitter, which has previously targeted governments and energy sectors in Pakistan, China, Bangladesh, and Saudi Arabia.
Further investigation revealed the malware strains ProSpy and ToSpy disguised as messaging apps were also used in a separate campaign against users in the United Arab Emirates (UAE), as documented by ESET in October 2025. The attackers invested significant effort in social engineering, mimicking legitimate services to gain trust before deploying the spyware.
The campaign highlights the persistent threat posed by state-aligned cyber espionage groups to journalists, activists, and civil society in the region.
INCIDENT DETAILS -
TYPE
MOTIVATION
IMPACT
DATA BREACH
REFERENCES
MARCH 2026
765
FEBRUARY 2026
765
JANUARY 2026
765
DECEMBER 2025
765
NOVEMBER 2025
765
OCTOBER 2025
765
SEPTEMBER 2025
765
Frequently Asked Questions
?
What is the current A.I Rankiteo Cyber Score for SMEX ??
What was SMEX's A.I Rankiteo Cyber Score in July 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in June 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in May 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in April 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in March 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in February 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in January 2026 ??
What was SMEX's A.I Rankiteo Cyber Score in December 2025 ??
What was SMEX's A.I Rankiteo Cyber Score in November 2025 ??
What was SMEX's A.I Rankiteo Cyber Score in October 2025 ??
What was SMEX's A.I Rankiteo Cyber Score in September 2025 ??
What is the average per-incident point impact on SMEX's A.I Rankiteo Cyber Score over the past 12 months ??
Where can I access detailed records of all cyber incidents associated with SMEX ??
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ??
Where can I view SMEX's profile page on Rankiteo ??
How accurate is the A.I Rankiteo Risk Scoring methodology ?