TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Pegasus spyware seller: Blame our customers not us for hacking

73 pointsby shivbhattalmost 4 years ago

17 comments

dstrootalmost 4 years ago
&quot;Guns don&#x27;t kill people. People kill people.&quot;<p>&quot;Spyware doesn&#x27;t spy on you. [Other] People spy on you.&quot;<p>Guns are a much better analogy than cars.
评论 #27918636 未加载
评论 #27918532 未加载
评论 #27918449 未加载
评论 #27918740 未加载
评论 #27918630 未加载
评论 #27918637 未加载
评论 #27918474 未加载
ingloralmost 4 years ago
I see their point - I think weapon sales (like Pegasus) should be regulated but blaming the company is kind of silly. It&#x27;s exactly like blaming Colt for weapon sales.<p>Should weapon sales be regulated? Sure. Is NSO regulated by both the Israeli and US government? Sure.<p>Are those governments doing a good job regulating NSO? No.<p>Is the poor job of their regulation causing people to get hurt and NSO is complicit? Yes.<p>The solution in this case is to regulate selling Pegasus as strictly as selling weapons like the F-35 rather than like an AR-15.
评论 #27918572 未加载
评论 #27918633 未加载
评论 #27918579 未加载
评论 #27918596 未加载
评论 #27918535 未加载
JCWasmx86almost 4 years ago
Well. If they sell spyware to others, they should at least ensure&#x2F;check, that it is only used against criminals and by democratic states.
评论 #27918542 未加载
评论 #27918882 未加载
评论 #27918563 未加载
skywhopperalmost 4 years ago
It’s interesting to me that NSO spokesperson says “we don’t have any customer data”, but they also confidently assert they know how many times these hacks are used. I’ve seen the same pattern in other stories. Unfortunately the reporting never goes into how the tech works. I assume there have to be at least some SaaS aspects given what is known about its capabilities, which would mean they have access to a lot more information than they are letting on.
评论 #27918653 未加载
TOMDMalmost 4 years ago
I really wish the public narrative concerning spyware would shift to something analogous to how we see the state monopoly on violence.<p>The police are a necessary institution that needs oversight and criticism to ensure that the dignity and rights of the population are preserved as much as possible. To that end, we don&#x27;t hand over the role to private militia that has sparse regulation and no accountability.<p>NSO Group are the private police with sparse regulation and no accountability of the spyware world. They don&#x27;t simply sell the means to an end, they operate and deploy those means on behalf of customers.<p>Just as we shouldn&#x27;t accept police hiring private forces to kick down doors to check in on suspects, we shouldn&#x27;t accept the contracting of services from NSO Group.
评论 #27918856 未加载
评论 #27918875 未加载
评论 #27918883 未加载
sreanalmost 4 years ago
That is a line that signatories of the Wassenar arrangement cannot take. Israel is not officially a signatory but their own laws <i>pull-requests</i> the Wassenar arrangement and its amendments.<p>The agreement legislates what dual-use systems (that is weapons systems that also have civilian use) can countries export and under what legal obligations and conditions.<p>According to the agreement, producer&#x2F;seller of dual use weapons systems is under obligation to ensure that the buyer is not abusing the weapon. Break in compliance makes the producer&#x2F;seller culpable.<p>I think what this means is that if a country wants they can find legal ways of making Israel culpable. Realistically though, I doubt USA will let that happen.
mshanowitzalmost 4 years ago
Another part of this story is that the company completely denies their connection to this &quot;list&quot;.<p>The media thus far has presented very little evidence that this list is actually from NSO Group.<p>They have provided no information on how this list was obtained and 67 phones (out of 50k) seems like a very small amount of phones (with a 55 percent success rate) to use as a basis for an international story across many major media outlets. These stories only consist of that this or this person is on the &quot;list&quot; (no evidence at all of spyware on their phone).
评论 #27918851 未加载
评论 #27918898 未加载
评论 #27918673 未加载
评论 #27918750 未加载
dangerfacealmost 4 years ago
&gt; So there should not be a list like this at all anywhere.<p>No there really shouldn&#x27;t and yet there is, this is why every one is pissed at you NSO.<p>&gt; You know, if a customer decides to misuse the system, he will not be a customer anymore.<p>If NSO has no access to customer data how do they know if their customers misuse the system? If they did find evidence of their customers misusing the system what stops them just ignoring it as a coincidence while putting out the pr message &quot;We must hold ourselves to a higher standard&quot;
egbertsalmost 4 years ago
Misuse of your product as not intended is the fault of the user.<p>Pure and simple.
评论 #27920207 未加载
评论 #27918954 未加载
NiceWayToDoITalmost 4 years ago
In all this I am thinking about scale, and how many political leaders are using same tool to spy their political opponents? I am thinking about just a few countries in which governments have discretionary right not do disclose how and where they spending tax money to the public.<p>Does anyone know&#x27;s technically how is this tool exactly deployed, in the sense what prevents Chinese intelligence using same tool to spy on US officials?
评论 #27918693 未加载
评论 #27921009 未加载
bradleyjgalmost 4 years ago
This is a pretty reasonable point in my opinion. These are all countries allied with many of our own. Where is the government to government pressure to curb this bad behavior? Why is the private sector expected to be the guardian of civil liberties in other countries and the public sector let off the hook?
评论 #27918962 未加载
southerntofualmost 4 years ago
Sounds like how Amesys tried to defend itself in french public media a decade ago when the arab spring surveillance contracts were made public: &quot;We make software that catches terrorists and pedophiles&quot; was the slogan back then.
refaev78almost 4 years ago
That&#x27;s just not true. They say the list is fake. The proofs are false. That they can&#x27;t have 50ĸ targets. And that all clients sign to only track terrorists, and will lose much if not.
boomboomsubbanalmost 4 years ago
If there is no NSO master list of numbers targeted and they have no possession of customer data, then how are they also aware of how many numbers their clients target a year?
评论 #27918803 未加载
评论 #27918670 未加载
helsinkiandrewalmost 4 years ago
&gt; But NSO Group said it had no knowledge of how some phones on the list contained remnants of spyware.<p>&gt; It could be &quot;a coincidence&quot;, the spokesman said.<p>I guess it could, but probably not
rdtwoalmost 4 years ago
How is that guy not in jail. This guy did basically the exact same thing as Russian hackers except at a much larger scale
akagusualmost 4 years ago
Drug dealers: blame our customers not us for selling drugs<p>No one will ever accept this kind of argument from a drug dealer, but yet they happily admit this kind of argument from this and other countless companies that business practices go against the public interest.<p>Anyone can tell me why?
评论 #27920093 未加载