NSO Group spyware targeted senior EU officials

Hand increasing the protection level by turning a knob
(Image credit: Shutterstock)

A number of senior officials from the European Commission were reportedly targeted with spyware built by the infamous Israeli NSO Group, but the company denies involvement and claims its tools weren’t used.

Reuters reports that back in November 2021, Apple warned “thousands of iPhone owners” that they were being targeted by “state-sponsored attackers”.

Among them was senior Belgian statesman, Didier Reynders.

TechRadar needs you!

We're looking at how our readers use VPNs with different devices so we can improve our content and offer better advice. This survey shouldn't take more than 60 seconds of your time. Thank you for taking part.

>> Click here to start the survey in a new window <<

"No accountability"

The tools used for the attack, the researchers claim, include ForcedEntry, a software built by NSO Group to help government intelligence agencies invisibly take control over iPhone endpoints.

But NSO “just” sells the tool, and researchers are yet to determine who bought it. The Israelis said these particular attacks "could not have happened with NSO's tools."

To say that NSO Group is a controversial firm would be a severe understatement. The company is known for building cyber-espionage tools, often used by government agencies to spy on their citizens, political opponents, human rights activists, and journalists, prompting many users to connect to the internet only via VPN, from a trusted device.

In early November 2021, the company was blacklisted in the United States. Commenting on the decision, it said it was “dismayed”, since its technologies "support US national security interests and policies by preventing terrorism and crime.”

The same month, Apple sued the company, holding it accountable for circumventing iPhone security mechanisms in order to surveil Apple users via its Pegasus spyware.

“State-sponsored actors like the NSO Group spend millions of dollars on sophisticated surveillance technologies without effective accountability. That needs to change,” said Craig Federighi, Apple’s senior vice president of Software Engineering.

A month later, it was discovered that the Facebook-owned messaging service WhatsApp sued NSO after discovering the firm exploited a flaw to snoop on users. 

Facebook accused NSO of violating the US Computer Fraud and Abuse Act and remotely hijacking the messaging app of 1,400 users which include hundreds of journalists and human rights defenders.

Via: Reuters

TOPICS

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Giant eye watching at man working at the computer. Surveillance, hacking, internet security concept. Flat vector illustration.
Israeli spyware company confirms US government and friends are customers
An illustration of a 1960s spy with sunglasses and a big coat
Paragon spyware cancels contract with Italian government after targeting journalists and citizens across Europe
WhatsApp China VPN
Paragon spyware campaign targeting journalists disrupted by WhatsApp
Spyware
Government-linked Italian spyware maker caught distributing malicious Android apps
A smartphone on a sofa showing the WhatsApp, Telegram and Signal apps
Russian criminal gang Star Blizzard found hitting WhatsApp accounts
China
Chinese police found using spyware to monitor Android devices
Latest in Security
Application Security Testing Concept with Digital Magnifying Glass Scanning Applications to Detect Vulnerabilities - AST - Process of Making Apps Resistant to Security Threats - 3D Illustration
Google bug bounty payments hit nearly $12 million in 2024
Representational image of a cybercriminal
Criminals are spreading malware disguised as DeepSeek AI
AMD logo
Security flaw means AMD Zen CPUs can be "jailbroken"
healthcare
Software bug meant NHS information was potentially “vulnerable to hackers”
A hacker wearing a hoodie sitting at a computer, his face hidden.
Experts warn this critical PHP vulnerability could be set to become a global problem
botnet
YouTubers targeted by blackmail campaign to promote malware on their channels
Latest in News
iOS 18 Control Center
iOS 19: the 3 biggest rumors so far, and what I want to see
Doom: The Dark Ages
Doom: The Dark Ages' director confirms DLC is in the works and says the game won't end the way 2016's Doom begins: 'If we took it all the way to that point, then that would mean that we couldn't tell any more medieval stories'
DVDs in a pile
Warner Bros is replacing some DVDs that ‘rot’ and become unwatchable – but there’s a big catch that undermines the value of physical media
A costumed Matt Murdock smiles at someone off-camera in Netflix&#039;s Daredevil TV show
Daredevil: Born Again is Disney+'s biggest series of 2025 so far, but another Marvel TV show has performed even better
Application Security Testing Concept with Digital Magnifying Glass Scanning Applications to Detect Vulnerabilities - AST - Process of Making Apps Resistant to Security Threats - 3D Illustration
Google bug bounty payments hit nearly $12 million in 2024
Nintendo Switch 2
A Nintendo Switch 2 FCC filing confirms Wi-Fi 6 and NFC support for the upcoming console