Tracking & Law Enforcement

Spain Reopens a Probe Into a Pegasus Spyware Case After a French Request to Work Together

The judge with Spain’s National Court said there is reason to believe that the new information provided by France can “allow the investigations to advance.”

The judge with Spain’s National Court said there is reason to believe that the new information provided by France can “allow the investigations to advance.”

A Spanish judge has reopened a probe into the suspected spying on the cellphone of Spain’s prime minister after receiving a request to collaborate with a similar investigation in France.

The judge with Spain’s National Court said Tuesday there is reason to believe that the new information provided by France can “allow the investigations to advance.”

Both probes concern the alleged use of Pegasus spyware developed by the Israeli NSO Group. The spyware silently infiltrates phones or other devices to harvest data and potentially spy on their owners. NSO asserts that it is only made available to governments for fighting terrorism and other security threats.

Pegasus has been used to target more than 1,000 people across 50 countries, including activists and journalists, according to security researchers and a 2021 global media investigation.

Spain announced in May 2022 that Prime Minister Pedro Sánchez and three of his ministers, including the ministers of defense and interior, had been targeted by Pegasus spyware. The resulting judicial probe was provisionally shelved when it failed to get results.

French President Emmanuel Macron and several of his ministers have also been allegedly targeted by Pegasus.

Advertisement. Scroll to continue reading.

In a separate case of alleged Pegasus spying in Spain, Spain’s government has admitted to using it to hack phones of leading Catalan separatists.

Related: Secretive Israeli Exploit Company Behind Wave of Zero-Day Exploits

Related Content

Privacy & Compliance

The Meta-owned communications app is filing a federal court contempt order against NSO.

Cyberwarfare

Iran-linked hacking groups are turning to high-volume, low-impact cyberattacks, and AI is providing a boost.

Mobile & Wireless

Targeting six iOS vulnerabilities and leading to full device compromise, the exploit chain is meant for surveillance.

Malware & Threats

Available via Telegram, researchers warn ZeroDayRAT is a ‘complete mobile compromise toolkit’ comparable to kits normally requiring nation-state resources to develop.

Malware & Threats

The Predator spyware is more sophisticated and dangerous than previously realized.

Mobile & Wireless

CISA has described the techniques used by attackers and pointed out that the focus is on high-value individuals.

Malware & Threats

Threat actors exploited CVE-2025-21042 to deliver malware via specially crafted images to users in the Middle East. 

Vulnerabilities

The threat actor behind Operation ForumTroll used the same toolset typically employed in Dante spyware attacks.

Copyright © 2026 SecurityWeek ®, a Wired Business Media Publication. All Rights Reserved.

Exit mobile version