Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Privacy

Again and Again, NSO Group's Customers Keep Getting Their Spyware Operations Caught (techcrunch.com) 8

An anonymous reader shares a report: Amnesty International published a new report this week detailing attempted hacks against two Serbian journalists, allegedly carried out with NSO Group's spyware Pegasus. The two journalists, who work for the Serbia-based Balkan Investigative Reporting Network (BIRN), received suspicious text messages including a link -- basically a phishing attack, according to the nonprofit. In one case, Amnesty said its researchers were able to click on the link in a safe environment and see that it led to a domain that they had previously identified as belonging to NSO Group's infrastructure.

"Amnesty International has spent years tracking NSO Group Pegasus spyware and how it has been used to target activists and journalists," Donncha O Cearbhaill, the head of Amnesty's Security Lab, told TechCrunch. "This technical research has allowed Amnesty to identify malicious websites used to deliver the Pegasus spyware, including the specific Pegasus domain used in this campaign."

To his point, security researchers like O Cearbhaill who have been keeping tabs on NSO's activities for years are now so good at spotting signs of the company's spyware that sometimes all researchers have to do is quickly look at a domain involved in an attack. In other words, NSO Group and its customers are losing their battle to stay in the shadows. "NSO has a basic problem: They are not as good at hiding as their customers think," John Scott-Railton, a senior researcher at The Citizen Lab, a human rights organization that has investigated spyware abuses since 2012, told TechCrunch.

Again and Again, NSO Group's Customers Keep Getting Their Spyware Operations Caught

Comments Filter:
  • by hdyoung ( 5182939 ) on Friday March 28, 2025 @03:25PM (#65266027)
    It's the best form of advertisement for their product. A billion dollar advertising budget couldn't promote their product as well as a few of these "oopsie" stories breaking the news.

    NSO products are not cute, fluffy bunnies. Some parts of the world are mean, cruel and dog-eat-dog. Some companies will cater to those needs. I'm not justifying it. It's good that we know what's happening, so we can decide if we want to support companies like this, stay neutral, or try to squash them out of existence.

    But I wouldn't be surprised if NSO arranges for these leaks on purpose.
    • Interesting idea. Maybe they have a second tier of products that no one knows about. The people who are getting caught are just cheap or NSO is selling them out.
    • by evanh ( 627108 )

      No, it's just blatant disregard for the law. They don't care because, as the genocide in Gaza has proven time and again, USA shields Israel from prosecution.

"Probably the best operating system in the world is the [operating system] made for the PDP-11 by Bell Laboratories." - Ted Nelson, October 1977

Working...