Russian hackers breached Cellebrite tools despite company's export ban

Cellebrite cut off Russian customers in 2022, but researchers discovered Russian authorities deployed the company's iPhone exploitation toolkit against a political opponent anyway. The finding exposes a core vulnerability in how Western firms enforce sanctions: once software exists in the wild, technical barriers collapse and only legal liability remains, which regimes simply ignore. Export controls on dual-use security tech rely on honor systems that don't survive geopolitical pressure. The burden of policing downstream use of sold-off source code falls back onto governments, not the firms that sold it.