Live data from Hacker News

EU parliament member hit by Israeli Candiru spyware

twitter.com

181–190 of 192 posts

Re: EU parliament member hit by Israeli Candiru spyware

#181

This is pretty common, Israel has previously spied on the ICC and intimidated a prosecutor: https://www.haaretz.com/israel-news/2024-05-28/ty-article/.p... Not to mention the wiretapping of phones of members of the Palestinian authority, probably lots more that we just are not aware of.

Palestine's PSTN is routed through Israel (at least, if any switches still exist). Of all the reasons to criticize Israel, I don't believe that wiretapping calls to/from the Palestinian Authority is one.

Re: EU parliament member hit by Israeli Candiru spyware

#182

This is pretty common, Israel has previously spied on the ICC and intimidated a prosecutor: https://www.haaretz.com/israel-news/2024-05-28/ty-article/.p... Not to mention the wiretapping of phones of members of the Palestinian authority, probably lots more that we just are not aware of.

[flagged]

Re: EU parliament member hit by Israeli Candiru spyware

#183
post #2

Sounds more like it missed. They sent him a link, and he was wise enough to not click on it.

I wonder how that was supposed to work? Am I to believe that they have exploits for every browser engine on every OS that infect my phone just by visiting a page? Chrome on Android and WebKit on iOS? That would be concerning, but how realistic is that?

Would cost a few million dollars upfront with effectively zero marginal cost. Less than buying one tank or starting a McDonalds.

Re: EU parliament member hit by Israeli Candiru spyware

#184

Earlier quoted context omitted.

[flagged]

So if I find a lunatic IDF member saying kill all Palestinians you would agree to stop debating this issue out of safety risks against arabs?

If any discussion of it includes Jew hatred, then HN is not the place for it.

Re: EU parliament member hit by Israeli Candiru spyware

#185
post #120

Earlier quoted context omitted.

Wild guess: they could because the best way to make people more conservative is to make liberals look more and more extreme. These things go in cycles, when the pendulum shifts too far to the left or to the right, it tends to swiftly move back the other way, and so the cycle continues. Example: the far right tries to depict the left as degenerates who want to make all children gay just because they support introducin…

Russia actually works both sides to become more heated. During the 2016 election they created facebook groups for pro and anti abortion groups and organised them to be in the same city at the same time. I think they're also trying to break the wests spirit in terms of faith in democracy and the state of the world right now for policy and political/military advantage. In my eyes the US is currently one big foreign inf…

What would Russia gain from a US that is split and lack of faith in democracy? I don't doubt you're right, I just don't see what's the motivation here?

It's not like the USA will stop interfering with the world if they succeed, which I suppose may be their motivation? To the contrary, a messed up USA is incredibly dangerous. It could end up in the hands of extremists (well, it kind of already did before) who have no qualms starting a war against Russia, which would be completely devastating for Russia (maybe also for the USA, but from Russia's point of view, that wouldn't matter much).

The media makes it look like Russia is some teenager hooligan in the world stage, doing destructive things without motivation just for the sake of it, which just doesn't make sense to me at all.

Re: EU parliament member hit by Israeli Candiru spyware

#186

Earlier quoted context omitted.

Doubtful.

So methods and tools developed to combat global extremism during the War on Terror weren't used by US tech companies at the behest of an in-power political party against opposition speech? Is that not what the senate subcommittee has been discussing for the past two years?

Correct, they weren't. It's ridiculous paranoia.

Re: EU parliament member hit by Israeli Candiru spyware

#187
post #178

Earlier quoted context omitted.

Spear phishing is usually inclusive of attacks from an email that involve tricking the user into doing something unsafe. E.g. see definition https://www.trendmicro.com/vinfo/us/security/definition/spea... > If the claims are correct, just opening the link would have compromised the phone I'm not sure if that is being claimed. The twitter post just said the link would have "exposed" them to spyware. One possible inter…

this is exactly the kind of scenario where you’d expect to find a high-value zero-day deployed (state-level actor against a known, high-value target) so I see no reason to disregard the actual claim in favor of a lesser one. yes, this class of exploits definitely exists (a while ago there was one that worked just receiving a text message!) and is the primary reason why apple offers the lockdown mode for these sorts o…

Most importantly, it saves the real backdoors for American intelligence partners and the Chinese government. That way, it's only the citizens being spied on and not the puritan parliament members or Congresspeople.

The first rule of iPhone security is that you do not control the attack surface against a sufficiently large government.

Re: EU parliament member hit by Israeli Candiru spyware

#188

I think people commenting on here are commenting on the "Israeli" part and are ignoring the bigger issue - which country is it that attacked the MEP. Israel is very laissez-faire about regulating the tech industry because it employs almost 10% of the country. As such, offensive security companies sell to anyone who isn't on the US Sanctions list. The question is which buyer did the attack. Hidden between the lines of…

>Imo, the bigger question is why Hungary, Poland, Spain, Greece, and Cyprus (all countries part of the recent EU Spyware Scandal) [1] continue to allow their Interior Ministries to attack the phones of both domestic and foreign opponents, and are abusing "Spyware for political gain" [2]. It's also a national security issue given that Israel may be piggybacking on the spying.

The management console for a lot of these products tend to be hosted on-Prem behind fairly restricted network controls with traffic closely monitored by customers.

While this doesn't mean that there probably isn't some phoning in, it's extremely difficult to obfuscate.

That said, the act of purchasing a product like this can absolutely be used as leverage, but that's any sort of weapons sale (which this functionally is)

Re: EU parliament member hit by Israeli Candiru spyware

#189
post #35

Earlier quoted context omitted.

It could be Israel or an entity that purchased a licence. One way or another Israelis probably know who it was.

I'm an "Israeli" and I have no clue who it was.

Are you an Israeli or an "Israeli" though? Me too btw.

Re: EU parliament member hit by Israeli Candiru spyware

#190

This is pretty common, Israel has previously spied on the ICC and intimidated a prosecutor: https://www.haaretz.com/israel-news/2024-05-28/ty-article/.p... Not to mention the wiretapping of phones of members of the Palestinian authority, probably lots more that we just are not aware of.

Palestine's PSTN is routed through Israel (at least, if any switches still exist). Of all the reasons to criticize Israel, I don't believe that wiretapping calls to/from the Palestinian Authority is one.

The implication in what you just said is that Israel having total control over Palestinian territory is taken for granted. They can wiretap with ease due to their illegal occupation. I think if the example was Canada wiretapping the US, the wrongness of it would be more apparent.

I think in western discourse it's common to treat Israel like a hurricane or some other natural disaster and not a state with agency. It is framed as Israel "just being there" and not as them choosing to occupy an area and subjugate people, so much so that they designate a huge chunk of their GDP to the endeavor and require continuous funding from the US.

Sorry if what I am saying is confusing, I am struggling to articulate the point I want to make. My point is mostly that sure, while wiretapping is several magnitudes less bad than murdering civilians and foreign aid workers, they are only capable of doing it so trivially because of their position of occupation, which is by design.

Post reply on HN