Tuesday, May 13, 2025
HomeCyber Security NewsParagon Spyware Allegedly Ends Spyware Contract with Italy

Paragon Spyware Allegedly Ends Spyware Contract with Italy

Published on

SIEM as a Service

Follow Us on Google News

Paragon Solutions, an Israeli cybersecurity firm, has reportedly ended its spyware contract with Italy.

The termination comes in the wake of revelations that its military-grade hacking software, Graphite, was allegedly used to target 90 individuals, including journalists and activists, across two dozen countries. This includes three Italian figures critical of the government’s policies.

The spyware scandal erupted after WhatsApp disclosed last week that Paragon’s Graphite technology had been used to hack into mobile phones without users’ knowledge.

- Advertisement - Google News

The victims were reportedly added to WhatsApp group chats and sent malicious PDFs, which infected their devices.

Paragon Spyware Ends Contract

WhatsApp’s investigation, supported by Citizen Lab at the University of Toronto, uncovered the breaches in December, though the duration of surveillance remains unclear, as per a report by Guardian.

Among the Italian targets was Francesco Cancellato, the editor-in-chief of investigative outlet Fanpage.

Cancellato had previously exposed young fascists within Italian Prime Minister Giorgia Meloni’s party. Two other targets, Husam El Gomati, a Libyan activist, and Luca Casarini, an NGO founder, have been outspoken opponents of Italy’s alleged complicity in human rights abuses in Libya.

Prime Minister Meloni’s office has denied any involvement by domestic intelligence services or the government in the breaches. Despite this, Meloni is expected to face scrutiny in parliament over the alleged misuse of spyware.

A source close to Paragon, speaking anonymously, revealed that the company initially suspended its Italian contract as a precautionary measure after learning of potential abuses last Friday.

On Wednesday, the company formally terminated its agreement, citing violations of its ethical framework and terms of service. Paragon has declined to comment publicly on the matter.

The targeting of individuals critical of Meloni’s right-wing administration has heightened concerns about spyware being used as a tool for political repression.

 The Italian government, informed by WhatsApp, confirmed that the number of affected Italians is believed to be seven.

The identities of other victims remain undisclosed, though they reportedly span several European countries, including Germany, Spain, and Sweden.

Paragon’s move to end its Italian contract comes amid broader scrutiny. The company, which was recently acquired by U.S.-based AE Industrial Partners, is also under investigation for a $2 million contract with the U.S. Immigration and Customs Enforcement agency.

The outcome of these inquiries, along with Italy’s role in the breaches, remains uncertain. This controversy underscores the growing global concerns over the unchecked use of spyware and its implications for privacy and democratic freedoms.

Investigate Real-World Malicious Links & Phishing Attacks With Threat Intelligence Lookup - Try for Free

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Attackers Leverage Unpatched Output Messenger 0‑Day to Deliver Malicious Payloads

A Türkiye-affiliated espionage threat actor, tracked by Microsoft Threat Intelligence as Marbled Dust (also...

Cobalt Strike 4.11.1 Released With SSL Checkbox Fix

Cobalt Strike has announced the release of version 4.11.1, an out-of-band update addressing several...

Apple Releases Security Patches to Fix Critical Data Exposure Flaws

Apple released critical security updates for macOS Sequoia 15.5 on May 12, 2025, addressing...

Lumma Stealer Upgraded with PowerShell Tools and Advanced Evasion Techniques

Sophos Managed Detection and Response (MDR) in September 2024, the notorious Lumma Stealer malware...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Attackers Leverage Unpatched Output Messenger 0‑Day to Deliver Malicious Payloads

A Türkiye-affiliated espionage threat actor, tracked by Microsoft Threat Intelligence as Marbled Dust (also...

Cobalt Strike 4.11.1 Released With SSL Checkbox Fix

Cobalt Strike has announced the release of version 4.11.1, an out-of-band update addressing several...

Apple Releases Security Patches to Fix Critical Data Exposure Flaws

Apple released critical security updates for macOS Sequoia 15.5 on May 12, 2025, addressing...