Tag Archives: stuxnet Dutch mole

The Silent Spying Device in Your Pocket: Who is Afraid of Pegasus?

NSO Group, the Israeli company behind Pegasus spyware, says a group of investors led by Hollywood producer Robert Simonds has acquired a controlling stake in the firm, which has named a former Trump official to lead an effort to restore its battered reputation. The company, which has faced lawsuits and U.S. government sanctions since revelations that its technology was used to spy on political dissidents, human-rights advocates, journalists and American officials, declined to disclose the purchase price.

NSO’s new executive chairman, David Friedman, a former U.S. ambassador to Israel and onetime bankruptcy lawyer for President Trump, said he wants to use his ties to the Trump administration to help rebuild the company’s spyware business in the U.S…NSO’s flagship product, Pegasus, has used WhatsApp to infiltrate phones without the target having to do or tap on anything. The spyware has also been sent to phones via links in messages, according to security researchers. Pegasus can turn a smartphone into a silent spying device by gaining access to its files, messages, microphone and camera, they say.

In 2021, the Biden administration placed NSO on an export-prohibition list that restricted the firm from obtaining some types of technology from the U.S. In 2023, President Biden signed an executive order banning government agencies and departments from using commercial spyware that “poses risks to national security or has been misused by foreign actors to enable human rights abuses around the world.” Unless Biden’s executive order is rescinded, it is unlikely U.S. government agencies would do business with NSO.

Intelligence agencies such as the U.S. National Security Agency and the U.K.’s Government Communications Headquarters routinely use hacking tools. NSO often sells such cyber capabilities to countries that don’t have their own. Friedman said his pitch to the U.S. government is that NSO’s products will make America safer. NSO says its products can be used by government agencies to fight terrorism and crime by allowing them access to encrypted messaging systems such as WhatsApp….

In 2019, WhatsApp’s parent company, now called Meta, sued NSO over what it alleged was a breach of its servers to install NSO’s malware on target devices. In July 2025, the six-year trial came to an end, with a federal jury in California ordering NSO to pay Meta $168 million in damages. In October 2025, the U.S. District Court for the Northern District of California reduced the fine NSO was ordered to pay Meta down to $4 million. But in the same ruling, the judge ordered NSO to stop targeting WhatsApp, in a move that the company said during its defense could put it out of business. NSO is appealing the decision against targeting WhatsApp, and is filing for a stay.

Excerpt from Dov Lieber, Israeli Spyware Maker NSO Gets New Owners, Leadership and Seeks to Mend Reputation, WSJ, Nov. 9, 2025

A War Like No Other: the Covert Invasion of Iran

Within hours of Iran proudly announcing the launch of its latest centrifuges, on April 10, 2021, a power blackout damaged some of the precious machines at its site in Natanz…One thing reports seem to agree on is that an “incident” affected the power distribution network at Natanz.

Natanz is critical to Iran’s nuclear program. The heavily secured site is protected by anti-aircraft guns and has two large centrifuge halls buried more than 50 feet underground to protect them from airstrikes. Despite the conflicting reports, it appears the facility’s main power distribution equipment — Natanz has its own grid — was taken out with explosives. Backup emergency electricity also was taken down, and power cut out across the multibuilding compound, Behrouz Kamalvandi, spokesperson for Iran’s Atomic Energy Organization, told Iran’s state-run TV.

A blackout may not sound that serious, but it can be at an enrichment plant. Centrifuges are slender machines linked up in what are called cascades which enrich uranium gas by spinning it at incredibly high speeds using rotors. The stress on the advanced materials involved is intense and the process is technically immensely challenging. A small problem can send a centrifuge spinning out of control, with parts smashing into each other and damaging a whole cascade.

The question is: what caused the blackout – a cyber-attack or a physical act of sabotage, like a bomb?

Israel has a long history of sabotaging nuclear facilities in Iraq, Syria, and Iran, both through cyber means — including the sophisticated Stuxnet attack against Iran, which Israel conducted with U.S. and Dutch intelligence agencies — and with conventional bombs and explosives. Israel is also reportedly behind a number of assassinations of Iranian nuclear scientists and officials over the last decade. The Stuxnet attack was particularly significant because it launched the era of cyberwarfare, as it was the first cyberattack known to use a digital weapon that could leap into the physical realm to cause actual destruction of equipment. The highly skilled covert operation was conducted in lieu of a kinetic attack to avoid attribution and an escalation in hostilities with Iran; it remained undetected for three years..

Excerpts from Gordon Corera, Iran nuclear attack: Mystery surrounds nuclear sabotage at Natanz, BBC, Apr. 12, 2021, Kim Zetter, Israel may have Destroyed Iran Centrifuges Simply by Cutting Power, Intercept, Apr. 13, 2021