Skip to main content

NSO has carried out 'unlawful' surveillance to target Amnesty staff members, HRDs


Counterview Desk
Following the exposure that Israeli spyware Pegasus, manufactured by NSO Group, has been used as a surveillance tool on smartphones used by about 1,500 human rights defenders (HRDs), journalists and activists, including in India, the top rights body, Amnesty International India, has appealed to those who have received a notification immediately to get in touch with Amnesty Tech at share@amnesty.tech for support.
An Amnesty release on November 2 said that the rights body could also be contacted “on Signal or WhatsApp at +44 7492 882216”, adding, “We would be keen to provide support to HRDs, who have been targeted, to ensure they take defensive security measures immediately, as well as to understand more about the attacks and investigate possible infections.”
Meanwhile, Amnesty has put out questions and answers for HRDs, activist, or journalist based in India to understand NSO Group’s spyware Pegasus especially the WhatsApp targeting.

Text:

Q: What do we know about the NSO Group and its ‘Pegasus’ Spyware?
A: ‘NSO Group’ is an Israeli spyware manufacturer that claims to sell its surveillance tools – the most well-known being its Pegasus spyware – exclusively to governments and government agencies ‘to combat terror and crime’.
Its products have been misused multiple times to conduct unlawful surveillance against human rights defenders. In the past, it has been used to target an Amnesty International staff member, HRDs, activists, and journalists from Saudi Arabia, UAE, Mexico, Morocco, and Rwanda.
Q: How does Pegasus work?
A: If infected by the Pegasus spyware, the user’s Smartphone is compromised. It can track keystrokes, take control of the phone’s camera and microphone, and access contact lists and encrypted messages.
Until now, Pegasus is known to be delivered through SMS messages carrying malicious links and through exploiting a zero-day vulnerability on WhatsApp. In the latter, intrusive spyware could be delivered on to the target’s mobile device without the targeted person having to click on a malicious link. The targeted person would simply see a missed call on WhatsApp.
In addition to this, Amnesty International has also found evidence of network injection attacks that could also be attributed to NSO Group. Network injection attacks are generally called “man-in-the-middle” attacks. Through this, an attacker with access to a target’s mobile network connection can monitor and opportunistically hijack web traffic and silently re-route the web browser to malicious exploit pages.
Q: How did the targeting via WhatsApp work?
A: NSO Group exploited a security vulnerability in WhatsApp until May 2019. In order to exploit this, the digital attack initiated WhatsApp calls to the target’s device. Attackers may have tried to exploit this issue by making calls multiple times during the night when the target was likely to be asleep and not notice these calls. Successful infection of the target’s device may result in the app crashing. There is a possibility that the attacker may also remotely erase evidence of these calls from the device’s call logs. Evidence of failed attacks may appear as missed calls from unknown numbers in your WhatsApp call log.
Q: If I didn’t receive a notification from WhatsApp, does this mean I wasn’t targeted by NSO Group’s tools?
A: NSO Group’s Pegasus tool is used for targeted attacks and by design, is not meant for mass surveillance. This means that only select individuals would have been targeted. However, if you are a high risk user, i.e., an activist, journalist, or HRD involved in politically sensitive activism, you cannot presume that you have not been targeted simply because you haven’t received a notification from WhatsApp.
The attack was delivered by exploiting a vulnerability in WhatsApp. However, NSO Pegasus infections can also be delivered through other means. Based on information revealed by our own investigations, an Amnesty International staffer was targeted using SMS messages. One HRD in Morocco was targeted both before and after the attacks using the WhatsApp exploit, but not with the WhatsApp exploit itself. Both of them were targeted using SMS messages containing malicious links and network injection attacks that could also be attributed to NSO Group’s tools. This indicates that NSO Group has the documented capability to deliver infections through means other than WhatsApp.
Q: If WhatsApp was targeted, can’t I just switch to another encrypted platform?
A: No. A vulnerability in the WhatsApp software was exploited to deliver the spyware. All complex software can have these types of vulnerabilities. This vulnerability was not a flaw in WhatsApp’s end-to-end encryption protocol.
This also does not mean that only the Whatsapp data of the target was compromised. If the attack attempt was successful, the spyware would gain full access to the device. Any other data on the device including encrypted platforms such as Signal or Telegram could then also have been accessed.
Q: Can Pegasus plant data into my devices?
A: Based on publicly available information, planting data is not a feature of NSO Group’s Pegasus spyware.
Q: What steps can I take to protect myself?
A: None of the security best practices offer complete and foolproof protection. However, it is a good practice to install the latest software updates of operating systems and encrypted messaging applications on your mobile device.
Pegasus remains a relatively uncommon threat and standard digital hygiene steps are still important. Keep your devices software up-to-date. Use a unique password for each service that you use and store these passwords in a secure password manager. Enable two-factor authentication on all accounts where it is available.

Comments

TRENDING

Grueling summer ahead: Cuttack’s alarming health trends and what they mean for Odisha

By Sudhansu R Das  The preparation to face the summer should begin early in Odisha. People in the state endure long, grueling summer months starting from mid-February and extending until the end of October. This prolonged heat adversely affects productivity, causes deaths and diseases, and impacts agriculture, tourism and the unorganized sector. The social, economic and cultural life of the state remains severely disrupted during the peak heat months.

Stronger India–Russia partnership highlights a missed energy breakthrough

By N.S. Venkataraman*  The recent visit of Russian President Vladimir Putin to India was widely publicized across several countries and has attracted significant global attention. The warmth with which Mr. Putin was received by Prime Minister Narendra Modi was particularly noted, prompting policy planners worldwide to examine the implications of this cordial relationship for the global economy and political climate. India–Russia relations have stood on a strong foundation for decades and have consistently withstood geopolitical shifts. This is in marked contrast to India’s ties with the United States, which have experienced fluctuations under different U.S. administrations.

From natural farming to fair prices: Young entrepreneurs show a new path

By Bharat Dogra   There have been frequent debates on agro-business companies not showing adequate concern for the livelihoods of small farmers. Farmers’ unions have often protested—generally with good reason—that while they do not receive fair returns despite high risks and hard work, corporate interests that merely process the crops produced by farmers earn disproportionately high profits. Hence, there is a growing demand for alternative models of agro-business development that demonstrate genuine commitment to protecting farmer livelihoods.

The Vande Mataram debate and the politics of manufactured controversy

By Vidya Bhushan Rawat*  The recent Vande Mataram debate in Parliament was never meant to foster genuine dialogue. Each political party spoke past the other, addressing its own constituency, ensuring that clips went viral rather than contributing to meaningful deliberation. The objective was clear: to construct a Hindutva narrative ahead of the Bengal elections. Predictably, the Lok Sabha will likely expunge the opposition’s “controversial” remarks while retaining blatant inaccuracies voiced by ministers and ruling-party members. The BJP has mastered the art of inserting distortions into parliamentary records to provide them with a veneer of historical legitimacy.

A comrade in culture and controversy: Yao Wenyuan’s revolutionary legacy

By Harsh Thakor*  This year marks two important anniversaries in Chinese revolutionary history—the 20th death anniversary of Yao Wenyuan, and the 50th anniversary of his seminal essay "On the Social Basis of the Lin Biao Anti-Party Clique". These milestones invite reflection on the man whose pen ignited the first sparks of the Great Proletarian Cultural Revolution and whose sharp ideological interventions left an indelible imprint on the political and cultural landscape of socialist China.

The cost of being Indian: How inequality and market logic redefine rights

By Vikas Gupta   We, the people of India, are engaged in a daily tryst—read: struggle—for basic human rights. For the seemingly well-to-do, the wish list includes constant water supply, clean air, safe roads, punctual public transportation, and crime-free neighbourhoods. For those further down the ladder, the struggle is starker: food that fills the stomach, water that doesn’t sicken, medicines that don’t kill, houses that don’t flood, habitats at safe distances from polluted streams or garbage piles, and exploitation-free environments in the public institutions they are compelled to navigate.

Why India must urgently strengthen its policies for an ageing population

By Bharat Dogra   A quiet but far-reaching demographic transformation is reshaping much of the world. As life expectancy rises and birth rates fall, societies are witnessing a rapid increase in the proportion of older people. This shift has profound implications for public policy, and the need to strengthen frameworks for healthy and secure ageing has never been more urgent. India is among the countries where these pressures will intensify most sharply in the coming decades.

Thota Sitaramaiah: An internal pillar of an underground organisation

By Harsh Thakor*  Thota Sitaramaiah was regarded within his circles as an example of the many individuals whose work in various underground movements remained largely unknown to the wider public. While some leaders become visible through organisational roles or media attention, many others contribute quietly, without public recognition. Sitaramaiah was considered one such figure. He passed away on December 8, 2025, at the age of 65.

Proposals for Babri Masjid, Ram Temple spark fears of polarisation before West Bengal polls

By A Representative   A political debate has emerged in West Bengal following recent announcements about plans for new religious structures in Murshidabad district, including a proposed mosque to be named Babri Masjid and a separate announcement by a BJP leader regarding the construction of a Ram temple in another location within Behrampur.