NSO Group
The NSO Group intends to be a force for good. According to their website,
“NSO creates technology that helps government agencies
prevent and investigate terrorism and crime to save
thousands of lives around the globe.”
Unfortunately, sometimes bad things happen to good people. All technology, regardless of how well-intentioned, can be used for evil.
What Happened?
Recently, Apple issued updates to partially close a critical vulnerability in their mobile device operating systems. Researchers from Citizen Lab discovered the vulnerability allows spyware from the NSO Group to install silently. The spyware is intended to be used by global governments against terrorists and criminals. It has now been used to infect the IOS devices of ordinary citizens.
The spyware, dubbed Pegasus, installs without user interaction or permission. It successfully bypasses safety measures established by Apple to block unapproved downloads and installs. The spyware can record data, video, and audio after remotely turning on the system camera and microphone. NSO records the information, then passes it on to its government clients around the world.
NSO Group states that they require their customers to
“…agree to use its spyware only to track terrorists or criminals,”
however, their application has been discovered on the phones of lawyers, doctors, journalists, and activists as well.
In one instance, a system became infected by an invisible image that downloaded the malware. The malware began collecting and disseminating information from texts, emails, video and audio communications, and other data. It also appears that other capabilities may be available to the Pegasus spyware.
What Should We Do?
Beginning September 15th, 2021, Apple deployed a patch for all affected devices to protect users. Apple recommends that all users/security administrators immediately install the update, even outside of preset update windows.
Northstarr System Solutions Can help you monitor your systems. Our professional team can work with you to manage your IT systems and advise your business, large or small. Protecting your business and your data is our priority.
For Further Information, Please Refer to These Websites
The NSO Group:
https://www.nsogroup.com/
The NY Times:
https://www.nytimes.com/2021/09/13/technology/apple-software-update-spyware-nso-group.html
The Washington Post:
https://www.washingtonpost.com/investigations/interactive/2021/nso-spyware-pegasus-cellphones/