Police use of Pegasus malware not illegal, Israeli inquiry finds

Police have been accused of spying on at least 26 individuals who are not criminal suspects

An inquiry into allegations that Israel’s police force systematically hacked into the mobile phones of Israeli citizens has found that while the police did use NSO Group’s controversial Pegasus malware, there is no evidence suggesting illegality.

In a series of explosive reports over the last two months, the local financial daily newspaper Calcalist accused the police of spying on at least 26 individuals who were not criminal suspects. Those named included politicians, protesters, and members of the former prime minister Benjamin Netanyahu’s inner circle – claims Netanyahu used to delay proceedings in his corruption trial.

Continue reading...

More Polish opposition figures found to have been targeted by Pegasus spyware

Analysis by Amnesty International linked them to Pegasus Project leak of more than 50,000 phone numbers

The use of intrusive spyware by members of the European Union is expected to face new scrutiny following revelations that the mobile phones of two more Polish citizens with close links to an opposition senator were targeted by a client of NSO Group, according to security experts.

Forensic analysis by Amnesty International found that both Magdalena Łośko, the former assistant to Polish senator Krzysztof Brejza, and Brejza’s father, Ryszard Brejza, received text messages in 2019 that researchers said were technically consistent with spyware attacks by clients of NSO Group using Pegasus.

Continue reading...

Declassified documents reveal CIA has been sweeping up information on Americans

Civil liberties watchdogs condemn agency’s collection of domestic data without congressional or court approval or oversight

The Central Intelligence Agency (CIA) has been secretly collecting Americans’ private information in bulk, according to newly declassified documents that prompted condemnation from civil liberties watchdogs.

The surveillance program was exposed on Thursday by two Democrats on the Senate intelligence committee. Ron Wyden of Oregon and Martin Heinrich of New Mexico alleged that the CIA has long concealed it from the public and Congress.

Continue reading...

EU close to launching committee of inquiry into Pegasus spyware

Approval for rare move expected after evidence government critics in Hungary and Poland were targeted

The European parliament is preparing to launch a committee of inquiry into the Pegasus spyware scandal after evidence emerged of government critics in Poland and Hungary being targeted with the surveillance software.

The cross-party body will seek testimony from member states’ intelligence services, elected politicians and senior officials, with a previous inquiry into alleged European facilitation of CIA “black sites” providing a model.

Continue reading...

Inquiry finds Israeli police used spyware against three people, report says

Initial investigation is said to have found NSO Group’s Pegasus tool was used against three of 26 alleged targets

An initial investigation into allegations that Israeli police targeted citizens with spyware has confirmed that the application was indeed used against three people, according to claims by a local news station.

The Israeli broadcaster Channel 12 said a police investigation ordered by Israel’s public security minister, Omer Barlev, had concluded that of 26 individuals named in recent reports as having been targeted using NSO Group’s Pegasus software, three named individuals were targeted, with the police successfully hacking only one of the phones.

Continue reading...

FBI confirms it obtained NSO’s Pegasus spyware

Bureau says sophisticated hacking tool was never used in support of any investigation

The FBI has confirmed that it obtained NSO Group’s powerful Pegasus spyware, suggesting that it bought access to the Israeli surveillance tool to “stay abreast of emerging technologies and tradecraft”.

In a statement released to the Guardian, the bureau said it had procured a “limited licence” to access Pegasus for “product testing and evaluation only”, and suggested that its evaluation of the tool partly related to security concerns if the spyware fell into the “wrong hands”.

Continue reading...

NSO offered US mobile security firm ‘bags of cash’, whistleblower claims

Israeli spyware firm denies doing business with Mobileum and co-founder ‘has no recollection of using the phrase’

A whistleblower has alleged that an executive at NSO Group offered a US-based mobile security company “bags of cash” in exchange for access to a global signalling network used to track individuals through their mobile phone, according to a complaint that was made to the US Department of Justice.

The allegation, which dates back to 2017 and was made by a former mobile security executive named Gary Miller, was disclosed to federal authorities and to the US congressman Ted Lieu, who said he conducted his own due diligence on the claim and found it “highly disturbing”.

Continue reading...

Israeli police find ‘legally debatable’ use of spyware by investigators

Admission follows allegations of snooping on mobile phones of protesters, politicians and criminal suspects

Israel’s national police force has found evidence pointing to improper use of spyware by its own investigators to snoop on Israeli citizens’ phones.

The announcement on Tuesday came two weeks after an Israeli newspaper reported a string of allegations that the police had used the NSO Group’s Pegasus software to surveil protesters, politicians and criminal suspects without authorisation from a judge.

Continue reading...

Polish senators draft law to regulate spyware after anti-Pegasus testimony

Senate commission plans reform after hearing how NSO software used against government critics

Polish senators plan to draft a law that would regulate the use of surveillance technology in the country, after hearing testimony of how the invasive Pegasus spyware has been used against a number of government critics.

Poland is the latest country where Pegasus, a surveillance tool developed by Israeli company NSO, appears to have been used for political purposes. Pegasus allows the operator to take control of a target’s mobile device, to access all data even from encrypted messaging apps, and to turn on audio or video recording.

Continue reading...

Israeli citizens targeted by police using Pegasus spyware, report claims

Investigation alleges Israeli police carried out phone intercepts without court supervision or monitoring of how data was used

The Israeli police allegedly conducted warrantless phone intercepts of Israeli citizens, including politicians and activists, using the NSO group’s controversial Pegasus spyware, according to an investigation by the Israeli business media site Calcalist.

Among those described as having been targets in the report were local mayors, leaders of political protests against the former prime minister Benjamin Netanyahu, and former government employees.

Continue reading...

A data ‘black hole’: Europol ordered to delete vast store of personal data

EU police body accused of unlawfully holding information and aspiring to become an NSA-style mass surveillance agency

The EU’s police agency, Europol, will be forced to delete much of a vast store of personal data that it has been found to have amassed unlawfully by the bloc’s data protection watchdog. The unprecedented finding from the European Data Protection Supervisor (EDPS) targets what privacy experts are calling a “big data ark” containing billions of points of information. Sensitive data in the ark has been drawn from crime reports, hacked from encrypted phone services and sampled from asylum seekers never involved in any crime.

According to internal documents seen by the Guardian, Europol’s cache contains at least 4 petabytes – equivalent to 3m CD-Roms or a fifth of the entire contents of the US Library of Congress. Data protection advocates say the volume of information held on Europol’s systems amounts to mass surveillance and is a step on its road to becoming a European counterpart to the US National Security Agency (NSA), the organisation whose clandestine online spying was revealed by whistleblower Edward Snowden.

Continue reading...

Claims Polish government used spyware is ‘crisis for democracy’, says opposition

Opposition leader Donald Tusk calls for inquiry after watchdog says government’s rivals were targeted by Pegasus spyware

Polish opposition leader Donald Tusk said on Tuesday reports that the government spied on its opponents represented the country’s biggest “crisis for democracy” since the end of communism.

A cybersecurity watchdog last week said the Pegasus spyware had been used to target prominent opposition figures, with Polish media dubbing the scandal a “Polish Watergate”.

Continue reading...

UN-backed investigator into possible Yemen war crimes targeted by spyware

Exclusive: Analysis of Kamel Jendoubi’s mobile phone reveals he was targeted in August 2019

The mobile phone of a UN-backed investigator who was examining possible war crimes in Yemen was targeted with spyware made by Israel’s NSO Group, a new forensic analysis of the device has revealed.

Kamel Jendoubi, a Tunisian who served as the chairman of the now defunct Group of Eminent Experts in Yemen (GEE)– a panel mandated by the UN to investigate possible war crimes – was targeted in August 2019, according to an analysis of his mobile phone by experts at Amnesty International and the Citizen Lab at the University of Toronto.

Continue reading...

Facebook bans seven ‘cyber mercenary’ companies from its platforms

Company will also send warnings to 48,000 people believed to be targeted by malicious activity after investigation

Facebook has banned seven “surveillance-for-hire” companies from its platforms and will send warning notices to 48,000 people who the company believes were targeted by malicious activity, following a months-long investigation into the “cyber mercenary” industry.

The social media company said on Thursday that its investigation had revealed new details about the way the surveillance companies enable their clients to “indiscriminately” target people across the internet to collect intelligence about them, manipulate them – and ultimately compromise their devices.

Black Cube, an Israeli company that gained notoriety after it emerged that the disgraced media mogul and convicted sex offender Harvey Weinstein had hired them to target women who had accused him of abuse. Black Cube rejected Facebook’s claims about its activities.

Cobwebs, another Israeli company that Facebook said enabled its clients to use public websites and dark web sites to trick targets into revealing personal information. The company also reportedly works for US clients, including a local police department in Hartford, Connecticut.

Cytrox, a North Macedonian company that Facebook said enabled its clients to infect targets with malware following phishing campaigns.

Continue reading...

UK spy chief suggests Beijing risks ‘miscalculation’ over west’s resolve

Island’s status and surveillance technology making China ‘single greatest priority’ for MI6

China is at risk of “miscalculating through over-confidence” over Taiwan, said the MI6 head, Richard Moore, in a statement clearly intended to warn Beijing to back off any attempt to seize control of the island.

Giving a rare speech, Britain’s foreign intelligence chief said in London that China was at risk of “believing its own propaganda” and that the country had become “the single greatest priority” for MI6 for the first time in its history.

Continue reading...

Controversial Pegasus spyware faces its day of reckoning | John Naughton

The infamous hacking tool is now at the centre of international lawsuits thanks to a courageous research lab

If you were compiling a list of the most toxic tech companies, Facebook – strangely – would not come out on top. First place belongs to NSO, an outfit of which most people have probably never heard. Wikipedia tells us that “NSO Group is an Israeli technology firm primarily known for its proprietary spyware Pegasus, which is capable of remote zero-click surveillance of smartphones”.

Pause for a moment on that phrase: “remote zero-click surveillance of smartphones”. Most smartphone users assume that the ability of a hacker to penetrate their device relies upon the user doing something careless or naive – clicking on a weblink, or opening an attachment. And in most cases they would be right in that assumption. But Pegasus can get in without the user doing anything untoward. And once in, it turns everything on the device into an open book for whoever deployed the malware.

Continue reading...

‘Amoral 21st-century mercenaries’: problems mount for NSO Group

Israeli spyware firm goes from bad to worse as scathing Apple lawsuit follows US blacklisting

Shalev Hulio, the co-founder of Israel’s NSO Group, was in Washington DC on a mission to try to resuscitate the surveillance company’s battered reputation on Capitol Hill shortly before the news broke that he had probably arrived too late to make a difference.

With little advance warning to its allies in Israel, the Biden administration announced on 3 November that it was putting the spyware maker – one of the most sophisticated cyber-weapons companies in the world – on a US blacklist, citing use of the company’s software by regimes around the world for “transnational repression”.

Continue reading...

Interpol’s president: alleged torturer rises as symbol of UAE soft power

Ahmed Nasser al-Raisi’s election has raised concerns about human rights and the surveillance state

Maj Gen Ahmed Nasser al-Raisi’s ascent through the ranks of the interior ministry in Abu Dhabi is associated with the United Arab Emirates’ transformation into a hi-tech surveillance state.

His personal achievements include a diploma in police management from the University of Cambridge, a doctorate in policing, security and community safety from London Metropolitan University and a medal of honour from Italy.

Continue reading...

Israeli firm’s spyware linked to attacks on websites in UK and Middle East

Toronto-based researchers say new evidence suggests Candiru’s software used to target critics of autocratic regimes

Researchers have found new evidence that suggests spyware made by an Israeli company that was recently blacklisted in the US has been used to target critics of Saudi Arabia and other autocratic regimes, including some readers of a London-based news website.

A report by Toronto-based researchers at ESET, an internet security firm, found links between attacks against high-profile websites in the Middle East and UK, and the Israeli company Candiru, which has been called Israel’s “most mysterious cyberwarfare company”.

Continue reading...

Hacking of activists is latest in long line of cyber-attacks on Palestinians

Analysis: while identity of hackers is not known in this case, Palestinians have long been spied on by Israeli military

The disclosure that Palestinian human rights defenders were reportedly hacked using NSO’s Pegasus spyware will come as little surprise to two groups of people: Palestinians themselves and the Israeli military and intelligence cyber operatives who have long spied on Palestinians.

While it is not known who was responsible for the hacking in this instance, what is very well documented is the role of the Israeli military’s 8200 cyberwarfare unit – known in Hebrew as the Yehida Shmoneh-Matayim – in the widespread spying on Palestinian society.

Continue reading...