{"id":204469,"date":"2025-11-10T13:30:00","date_gmt":"2025-11-10T13:30:00","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2025\/11\/10\/why-a-lot-of-people-are-getting-hacked-with-government-spyware-techcrunch\/"},"modified":"2025-11-10T13:30:00","modified_gmt":"2025-11-10T13:30:00","slug":"why-a-lot-of-people-are-getting-hacked-with-government-spyware-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2025\/11\/10\/why-a-lot-of-people-are-getting-hacked-with-government-spyware-techcrunch\/","title":{"rendered":"Why a lot of people are getting hacked with government spyware | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">For more than a decade, makers of <a href=\"https:\/\/techcrunch.com\/2025\/04\/25\/techcrunch-reference-guide-to-security-terminology\/#spyware-commercial-government\" target=\"_blank\" rel=\"noopener\">government spyware<\/a> have defended themselves from criticism by saying that their surveillance technology is intended to be used only against serious criminals and terrorists, and only in limited cases.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The evidence gathered from dozens, if not hundreds of documented instances of spyware abuse all over the world, however, shows that neither of those arguments are true.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Journalists, human rights activists, and politicians have repeatedly been targeted in both repressive regimes and democratic countries. The latest example is a political consultant who works for left-wing politicians in Italy, who <a href=\"http:\/\/techcrunch.com\/2025\/11\/06\/italian-political-consultant-says-he-was-targeted-with-paragon-spyware\/\" target=\"_blank\" rel=\"noopener\">came out as the most recently confirmed victim<\/a> of Paragon spyware in the country.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">This latest case shows that spyware is proliferating far beyond the scope of what we have typically considered to be \u201crare\u201d or \u201climited\u201d attacks targeting only a few people at a time.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cI think that there is some misunderstanding at the heart of stories about who gets targeted by this kind of government spyware, which is that if you are targeted, you are Public Enemy Number One,\u201d Eva Galperin, the director of cybersecurity at the Electronic Frontier Foundation, who has studied spyware for years, told TechCrunch.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cIn reality, because targeting is so easy, we have seen governments use surveillance malware to spy on a broad range of people, including relatively minor political opponents, activists, and journalists,\u201d said Galperin.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">There are several reasons that explain why spyware often ends up on the devices of people who, in theory, should not be targeted.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The first explanation lies in the way that spyware systems work. Generally, when an intelligence or law enforcement agency purchases spyware from a surveillance vendor \u2014 like NSO Group, Paragon, and others \u2014 the government customer pays a one-time fee to acquire the technology, and then lower additional fees for future software updates and tech support.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The upfront fee is usually based on the number of targets that the government agency can spy on at any moment in time. The more targets, the higher the price. Previously leaked <a href=\"https:\/\/bsky.app\/profile\/did:plc:byrw4r3e46psh4caeb44kbgj\/post\/3m4y56pxiwc2h\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">documents<\/a> from the now-defunct Hacking Team show that some of its police and government customers could target anywhere from a handful of people to an unlimited number of devices at once.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">While some democratic countries typically had fewer targets that they could surveil in one go, it wasn\u2019t uncommon to see countries with questionable human rights records with an extremely high number of concurrent spyware targets.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Giving such a high number of concurrent targets to countries with such strong appetites for surveillance all but guaranteed that the governments would target far more people outside the scope of just criminals and terrorists.\u00a0<\/p>\n<div class=\"article-block block--callout block--right has-green-500-background-color\">\n<h4 class=\"block--callout__title\">Contact Us<\/h4>\n<p>\t\t\tDo you have more information about government spyware? From a non-work device, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or <a href=\"https:\/\/techcrunch.com\/2025\/11\/10\/why-a-lot-of-people-are-getting-hacked-with-government-spyware\/mailto:lorenzo@techcrunch.com\/\" target=\"_blank\" rel=\"noopener\">email<\/a><a href=\"https:\/\/techcrunch.com\/2025\/11\/10\/why-a-lot-of-people-are-getting-hacked-with-government-spyware\/mailto:lorenzo@techcrunch.com\/\" target=\"_blank\" rel=\"noopener\">.<\/a> You also can contact TechCrunch via <a href=\"https:\/\/techcrunch.com\/got-a-tip\/\" target=\"_blank\" rel=\"noopener\">SecureDrop<\/a>.\t\t<\/div>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/slate.com\/technology\/2012\/08\/moroccan-website-mamfakinch-targeted-by-government-grade-spyware-from-hacking-team.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Morocco<\/a>, the <a href=\"https:\/\/slate.com\/technology\/2012\/10\/ahmed-mansoor-uae-activst-allegedly-tricked-by-phoney-wikileaks-into-downloading-hacking-team-spyware.html\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">United Arab Emirates<\/a> (<a href=\"https:\/\/www.vice.com\/en\/article\/government-hackers-iphone-hacking-jailbreak-nso-group\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">twice<\/a>), and <a href=\"https:\/\/citizenlab.ca\/2020\/01\/stopping-the-press-new-york-times-journalist-targeted-by-saudi-linked-pegasus-spyware-operator\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Saudi Arabia<\/a> (<a href=\"https:\/\/citizenlab.ca\/2020\/12\/the-great-ipwn-journalists-hacked-with-suspected-nso-group-imessage-zero-click-exploit\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">several<\/a> <a href=\"https:\/\/citizenlab.ca\/2018\/10\/the-kingdom-came-to-canada-how-saudi-linked-digital-espionage-reached-canadian-soil\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">times<\/a>), have all been caught targeting journalists and activists over the years. Security researcher Runa Sandvik, <a href=\"https:\/\/techcrunch.com\/2022\/07\/15\/granitt-journalist-security\/\" target=\"_blank\" rel=\"noopener\">who works with activists and journalists<\/a> who are at risk of being hacked, curates an ever-expanding <a href=\"https:\/\/github.com\/GranittHQ\/data-pegasus-victims\/blob\/main\/data-pegasus-victims.csv\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">list of cases of spyware abuse around the world<\/a>.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Another reason for the high number of abuses, especially in recent years, is that spyware \u2014 such as NSO\u2019s Pegasus or Paragon\u2019s Graphite \u2014 makes it extremely easy for government customers to successfully target whoever they want. In practice, those systems are essentially consoles where police or government officials type in a phone number, and the rest happens in the background.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">John Scott-Railton, a senior researcher at The Citizen Lab who has investigated spyware companies and their abuses for a decade, said that government spyware carries a \u201chuge abuse temptation\u201d for government customers.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Scott-Railton said spyware \u201cneeds to be treated like the threat to democracy and elections that it is.\u201d\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The general lack of transparency and accountability has also contributed to governments brazenly using this sophisticated surveillance technology without fear of consequences.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cThe fact that we have seen targeting of relatively small fish is particularly concerning because it reflects the relative impunity that the government feels in deploying this exceptionally invasive spyware against opponents,\u201d Galperin told TechCrunch.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In terms of victims getting accountability, there is some good news.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Paragon made a point of <a href=\"https:\/\/techcrunch.com\/2025\/06\/09\/paragon-says-it-cancelled-contracts-with-italy-over-governments-refusal-to-investigate-spyware-attack-on-journalist\/\" target=\"_blank\" rel=\"noopener\">very publicly cutting ties with the Italian government<\/a> earlier this year, arguing that the country\u2019s authorities refused help from the company in investigating abuses allegedly involving its spyware.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">NSO Group previously <a href=\"http:\/\/techcrunch.com\/2024\/11\/15\/nso-group-admits-cutting-off-10-customers-because-they-abused-its-pegasus-spyware-say-unsealed-court-documents\/\" target=\"_blank\" rel=\"noopener\">revealed in court<\/a> that it disconnected 10 government customers in recent years for abusing its spyware technology, although it refused to say which countries. And it\u2019s unclear if those include the Mexican or Saudi government, where there have been countless documented cases of abuse.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">On the customer side, countries like <a href=\"https:\/\/www.bbc.com\/news\/articles\/ced56p5l2wwo\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Greece<\/a> and <a href=\"https:\/\/techcrunch.com\/2024\/12\/02\/poland-arrests-former-spy-chief-in-pegasus-spyware-probe\/\" target=\"_blank\" rel=\"noopener\">Poland<\/a> have launched investigations into spyware abuses. The United States, during the Biden administration, targeted some spyware makers such as Cytrox, <a href=\"http:\/\/techcrunch.com\/2023\/07\/18\/us-government-adds-two-more-spyware-makers-on-deny-list\/\" target=\"_blank\" rel=\"noopener\">Intellexa<\/a>, and <a href=\"https:\/\/techcrunch.com\/2021\/11\/03\/us-bans-trade-with-security-firm-nso-group-over-pegasus-spyware\/\" target=\"_blank\" rel=\"noopener\">NSO Group<\/a> by imposing sanctions on the companies \u2014 and their <a href=\"https:\/\/techcrunch.com\/2024\/03\/05\/us-sanctions-founder-of-spyware-maker-intellexa-for-targeting-americans\/\" target=\"_blank\" rel=\"noopener\">executives<\/a> \u2014 and putting them on economic blocklists. Also, a group of mostly Western countries <a href=\"https:\/\/therecord.media\/pall-mall-process-commercial-spyware-hacking-paris-diplomacy\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">led by the U.K. and France<\/a> are trying to use diplomacy to put the brakes on the spyware market.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">It remains to be seen if any of these efforts will curb or limit in any way what is now a global multibillion-dollar market, with companies more than happy to supply advanced spyware to governments with a seemingly endless appetite to spy on pretty much everyone they want to.\u00a0\u00a0<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2025\/11\/10\/why-a-lot-of-people-are-getting-hacked-with-government-spyware\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>For more than a decade, makers of government spyware have defended themselves from criticism by saying that their surveillance technology is intended to be used only against serious criminals and terrorists, and only in limited cases.\u00a0\u00a0 The evidence gathered from dozens, if not hundreds of documented instances of spyware abuse all over the world, however, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":204470,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-204469","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/204469","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=204469"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/204469\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/204470"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=204469"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=204469"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=204469"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}