Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Privacy

Rights Group Says Lebanese Staffer Targeted With NSO Spyware

Human Rights Watch said Wednesday that one of its senior staff members was targeted last year with spyware designed by the Israeli hacker-for hire company NSO Group.

Human Rights Watch said Wednesday that one of its senior staff members was targeted last year with spyware designed by the Israeli hacker-for hire company NSO Group.

The New York-based rights group said the software was used against Lama Fakih, the director of its Beirut office who also oversees its crisis response in several countries, including Syria, Myanmar, Israel and the Palestinian territories, Ethiopia, Afghanistan, and the United States.

NSO Group has been mired in controversy following revelations its spyware was used in several countries against journalists, activists and even U.S. diplomats. The U.S. barred the firm from accessing American technology last year, saying its tools have been used by repressive regimes, and Facebook and Apple have filed lawsuits against NSO over hacks against their products.

NSO Group does not disclose its clients but says it has safeguards in place to ensure its products are only used to target suspected criminals and terrorists. It says it does not have access to the intelligence its clients gather.

Its Pegasus spyware grants full access to a person’s phone, including photos, emails and real-time communications. The targeted person does not have to take any action, such as clicking a link, and would not be able to detect the breach without a sophisticated technical analysis.

NSO Group issued a statement expressing support for an “international regulatory structure” for cyber intelligence tools, but said any calls to suspend their use until one is established would benefit criminals who evade other forms of surveillance. It did not directly address the hacking reported by Human Rights Watch.

Human Rights Watch said Fakih, a dual U.S. and Lebanese citizen, was targeted on five occasions between April and August. Apple informed her of the breach on Nov. 24, and forensic analysis by Human Rights Watch confirmed the presence of the software, the group said.

“It is no accident that governments are using spyware to target activists and journalists, the very people who uncover their abusive practices,” Fakih said. “They seem to believe that by doing so, they can consolidate power, muzzle dissent, and protect their manipulation of facts.”

Advertisement. Scroll to continue reading.
Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Shay Mowlem named CMO of runtime and application security company Contrast Security.

Attack detection firm Vectra AI has appointed Jeff Reed to the newly created role of Chief Product Officer.

Shaun Khalfan has joined payments giant PayPal as SVP, CISO.

More People On The Move

Expert Insights

Related Content

Compliance

The three primary drivers for cyber regulations are voter privacy, the economy, and national security – with the complication that the first is often...

Artificial Intelligence

Two of humanity’s greatest drivers, greed and curiosity, will push AI development forward. Our only hope is that we can control it.

Cybercrime

Daniel Kelley was just 18 years old when he was arrested and charged on thirty counts – most infamously for the 2015 hack of...

Cybercrime

No one combatting cybercrime knows everything, but everyone in the battle has some intelligence to contribute to the larger knowledge base.

Cybercrime

The FBI dismantled the network of the prolific Hive ransomware gang and seized infrastructure in Los Angeles that was used for the operation.

Cybersecurity Funding

Los Gatos, Calif-based data protection and privacy firm Titaniam has raised $6 million seed funding from Refinery Ventures, with participation from Fusion Fund, Shasta...

Ransomware

The Hive ransomware website has been seized as part of an operation that involved law enforcement in 10 countries.

Privacy

Many in the United States see TikTok, the highly popular video-sharing app owned by Beijing-based ByteDance, as a threat to national security.The following is...