OwenGregorian
Politics • Education • Science & Tech
A New Phone Scanner That Detects Spyware Has Already Found 7 Pegasus Infections | WIRED
December 07, 2024
post photo preview

The mobile device security firm iVerify has been offering a tool since May that makes spyware scanning accessible to anyone—and it’s already turning up victims.

In recent years, commercial spyware has been deployed by more actors against a wider range of victims, but the prevailing narrative has still been that the malware is used in targeted attacks against an extremely small number of people. At the same time, though, it has been difficult to check devices for infection, leading individuals to navigate an ad hoc array of academic institutions and NGOs that have been on the front lines of developing forensic techniques to detect mobile spyware. On Tuesday, the mobile device security firm iVerify is publishing findings from a spyware detection feature it launched in May. Of 2,500 device scans that the company's customers elected to submit for inspection, seven revealed infections by the notorious NSO Group malware known as Pegasus.

The company’s Mobile Threat Hunting feature uses a combination of malware signature-based detection, heuristics, and machine learning to look for anomalies in iOS and Android device activity or telltale signs of spyware infection. For paying iVerify customers, the tool regularly checks devices for potential compromise. But the company also offers a free version of the feature for anyone who downloads the iVerify Basics app for $1. These users can walk through steps to generate and send a special diagnostic utility file to iVerify and receive analysis within hours. Free users can use the tool once a month. iVerify's infrastructure is built to be privacy-preserving, but to run the Mobile Threat Hunting feature, users must enter an email address so the company has a way to contact them if a scan turns up spyware—as it did in the seven recent Pegasus discoveries.

“The really fascinating thing is that the people who were targeted were not just journalists and activists, but business leaders, people running commercial enterprises, people in government positions,” says Rocky Cole, chief operating officer of iVerify and a former US National Security Agency analyst. “It looks a lot more like the targeting profile of your average piece of malware or your average APT group than it does the narrative that’s been out there that mercenary spyware is being abused to target activists. It is doing that, absolutely, but this cross section of society was surprising to find.”

Seven out of 2,500 scans may sound like a small group, especially in the somewhat self-selecting customer base of iVerify users, whether paying or free, who want to be monitoring their mobile device security at all, much less checking specifically for spyware. But the fact that the tool has already found a handful of infections at all speaks to how widely the use of spyware has proliferated around the world. Having an easy tool for diagnosing spyware compromises may well expand the picture of just how often such malware is being used.

“NSO Group sells its products exclusively to vetted US & Israel-allied intelligence and law enforcement agencies,” NSO Group spokesperson Gil Lainer told WIRED in a statement. "Our customers use these technologies daily.”

iVerify vice president of research Matthias Frielingsdorf will present the group's Pegasus findings at the Objective by the Sea security conference in Maui, Hawaii on Friday. He says that it took significant investment to develop the detection tool because mobile operating systems like Android, and particularly iOS, are more locked down than traditional desktop operating systems and don't allow monitoring software to have kernel access at the heart of the system. Cole says that the crucial insight was to use telemetry taken from as close to the kernel as possible to tune machine learning models for detection. Some spyware, like Pegasus, also has characteristic traits that make it easier to flag. In the seven detections, Mobile Threat Hunting caught Pegasus using diagnostic data, shutdown logs, and crash logs. But the challenge, Cole says, is in refining mobile monitoring tools to reduce false positives.

Developing the detection capability has already been invaluable, though. Cole says that it helped iVerify identify signs of compromise on the smartphone of Gurpatwant Singh Pannun, a lawyer and Sikh political activist who was the target of an alleged, foiled assassination attempt by an Indian government employee in New York City. The Mobile Threat Hunting feature also flagged suspected nation state activity on the mobile devices of two Harris-Walz campaign officials—a senior member of the campaign and an IT department member—during the presidential race.

Read more:

https://archive.is/iMgR8

 

 

community logo
Join the OwenGregorian Community
To read more articles like this, sign up and join my community today
0
What else you may like…
Videos
Posts
Articles
Over 100 Navy SEALS Set to Descend on Washington D.C. in Explosive Show of Support for Army Veteran Pete Hegseth | The Gateway Pundit

Washington, D.C., is bracing for an unprecedented show of support as over 100 Navy SEALs prepare to descend on the nation’s capital, standing in solidarity with President-elect Donald Trump’s nominee for Secretary of Defense, Pete Hegseth.

Hegseth, a decorated Army combat veteran and prominent conservative voice, has faced relentless media attacks in recent weeks.

The fake news media have leveled accusations ranging from outdated and disproven sexual misconduct claims to allegations of public drunkenness and financial mismanagement during his tenure at Concerned Veterans for America (CVA).

Critics on the right are pushing back hard against what they view as a deliberate effort to derail a nominee poised to shake up the Defense Department.

Randy Lair, a trustee at CVA, categorically denied the whistleblower allegations, describing them as “sensational fabrications designed to undermine a patriot.”

In an exclusive letter to the New York Post, Lair emphasized that Hegseth left CVA on good ...

00:01:07
‘Charlatan’ Vaccine Promoter Dr. Peter Hotez Says Multiple Viruses Will be Unleashed on America the Day After Trump Takes Office | Cristina Laila, The Gateway Pundit

‘Charlatan’ vaccine promoter Dr. Peter Hotez said multiple viruses will be unleashed on America one day after Trump is inaugurated next month.

“We have some big picture stuff coming down the pike starting on January 21st,” Hotez said to MSNBC’s Nicolle Wallace before rattling off a list of viruses:

  • Bird flu
  • New Coronavirus
  • SARS
  • Mosquito-transmitted viruses
  • Dengue
  • Zika
  • Oropouche virus
  • Yellow fever
  • Pertussis/Whooping cough
  • Measles
  • Polio

Of course, Dr. Hotez failed to mention the measles outbreaks and Polio cases are primarily a problem with the illegal migrants invading the US.

Dr. Peter Hotez previously made headlines for refusing to debate author, activist, then-presidential candidate, attorney and now Trump’s nominee for HHS, Robert Kennedy, Jr., on the effectiveness of the COVID-19 vaccines.

Rather than accept the challenge, Hotez lashed out at both Robert Kennedy Jr. and Joe Rogan, who invited the two to debate the facts on his show.

Hotez refused and ...

00:01:30
Mysterious 'Car-Sized Drones' Over New Jersey Prompt FBI Investigation | ZeroHedge

Several weeks of mysterious drone swarms over the skies of one New Jersey county near the military research and manufacturing facility Picatinny Arsenal have sparked concerns among residents and prompted an FBI investigation.

"It's kind of unsettling," Mike Walsh, a Morris County resident who has spotted the drones on numerous occasions, told local media outlet PIX11 News.

He said some drones "are very big, probably the size of a car."

Since Nov. 18, Walsh and many other residents have spotted these drones in the night sky.

"They're kind of go slow," he said, adding, "They come towards you. Then they change direction a little. They're all going different ways."

We first detailed the story on Nov. 19 in a note titled "Spy Drones? "Unusual Activity" Reported Over Morris County, New Jersey, Near Military Research Facility."

The potential national security threat piqued our interest, considering multiple reports that the mysterious drones were observed near Picatinny Arsenal.

PIX11 News said...

00:02:18
post photo preview
The Afterparty X Spaces - 8/8/26

It’s Saturday, and that means it’s time for The Afterparty!

We start with the Simultaneous Sip, then you get the mic.

Bring a take on what we covered on the Scott Adams School with Erica and Marcela and the big news of the week — Florida subpoenaing Fauci, the Maricopa voter data breach, or the DSA’s useful idiots getting demolished by Mike Rowe.

Everyone is welcome to speak. Two rules:

1. Be respectful
2. Don’t interrupt

Request the mic. Bring friends.

https://x.com/owengregorian/status/2086081721661812750?s=46&t=za1kQOtu4Dod6Yb1P465eg

Sunday Simultaneous Sip 8/2/26 — come hang out with us!

Grab your coffee (or whatever makes you happy), we’ll do the sip together, then chat about today’s news for about an hour.

  • Walz’s Minnesota letting people vote if someone “vouches” for them

  • An auditor saying 200,000+ NYC mayoral votes look suspicious

  • The DSA winning a $5.2 million inheritance lawsuit, California offering free meth and crack pipes…

Bring whatever’s on your mind. I’d love to hear from you.

Everyone’s welcome to speak. Just be kind, and don’t interrupt. See you there!

https://x.com/owengregorian/status/2083897876124459424?s=46&t=za1kQOtu4Dod6Yb1P465eg

post photo preview
Can Ozempic prevent cancer? A doctor explains why the headlines are easy to misread | Ziyad Al-Aly, Medical Xpress

In the weeks around the 2026 annual meeting of the American Society of Clinical Oncology, my phone kept buzzing with alerts about GLP-1 drugs and cancer. The headlines were everywhere—from NPR and The Washington Post to Substack and heated exchanges on social media—all circling the same claim: Ozempic might lower the risk of cancer.

Only for Supporters
To read the rest of this article and access other paid content, you must be a supporter
Read full Article
post photo preview
European Drone Warfare Goes Operational: $49B in Commitments This Month | Roger Satterfield, Techtimes

In the first two weeks of July 2026, five of the largest defense investment decisions in modern European history arrived within days of one another: a $1.8 billion private fundraise for an AI defense startup, a NATO-wide $40 billion counter-drone commitment, a single German contract to deploy 50,000 AI-guided attack drones in Ukraine, a £5 billion British transformation program explicitly committing to weapons that make targeting decisions without per-strike human authorization, and a fresh $1.2 billion raise for a drone maker that positions itself as Europe's answer to Lockheed Martin. The convergence, reported today in a major CNBC synthesis, is not coincidental. It reflects a structural judgment: autonomous, software-defined warfare is no longer experimental. What drove each of these decisions to the same two-week window is the same thing driving all of them — a piece of palm-sized hardware that has quietly validated the entire premise of the investment surge in Ukrainian skies.

Only for Supporters
To read the rest of this article and access other paid content, you must be a supporter
Read full Article
post photo preview
Democrats Turn To ‘Economic Democracy,’ And You Already Know What They Mean | Chris Bray, The Federalist

“We cannot save our democracy unless we democratize our economy.” A truck is backing up to the loading dock, delivering a giant cargo of old wine in new bottles. You’re going to be hearing more of this language.

Only for Supporters
To read the rest of this article and access other paid content, you must be a supporter
Read full Article
Available on mobile and TV devices
google store google store app store app store
google store google store app tv store app tv store amazon store amazon store roku store roku store
Powered by Locals