iGEN
Visit IGEN World Explore IGEN Expo
EXPLORE UPGRADE PLANS
BREAKING
Relay Q: London Startup's AI Microphone Puts Hands-Free Voice Dictation on the Desktop Google Pixel 10a Crowned Best Budget Pixel in WIRED's Updated 2026 Buying Guide Global Steel Wire seeks fresh Santander terminal concession Veritas Shipmanagement books fresh ultramax pair at COSCO yard, Splash247 reports Seanergy linked to fresh newcastlemax at Hengli as dry bulk orderbook grows Weaker rupee may push foreign assets over FAST-DS Rs 1 crore limit, raising tax bill 45 Indian power plants face critically low coal stocks as monsoon hits supply SFL Makes Fresh $363m Car Carrier Play With Four LNG Dual-Fuel Newbuilds Iran Blacklist Threatens Hormuz Shuttle Tanker Lifeline for Gulf Crude Keyfield International Enters Dredging Market with $24.7m Vessel Acquisition Relay Q: London Startup's AI Microphone Puts Hands-Free Voice Dictation on the Desktop Google Pixel 10a Crowned Best Budget Pixel in WIRED's Updated 2026 Buying Guide Global Steel Wire seeks fresh Santander terminal concession Veritas Shipmanagement books fresh ultramax pair at COSCO yard, Splash247 reports Seanergy linked to fresh newcastlemax at Hengli as dry bulk orderbook grows Weaker rupee may push foreign assets over FAST-DS Rs 1 crore limit, raising tax bill 45 Indian power plants face critically low coal stocks as monsoon hits supply SFL Makes Fresh $363m Car Carrier Play With Four LNG Dual-Fuel Newbuilds Iran Blacklist Threatens Hormuz Shuttle Tanker Lifeline for Gulf Crude Keyfield International Enters Dredging Market with $24.7m Vessel Acquisition
Home ›› Technology ›› Ai ›› Computer Vision ›› EU Politician Investigating Pegasus Spyware Was Hacked With the Same Malware, Citizen Lab Finds

EU Politician Investigating Pegasus Spyware Was Hacked With the Same Malware, Citizen Lab Finds

A new analysis by Citizen Lab reveals that Greek MEP Stelios Kouloglou, a member of the European Parliament's PEGA Committee investigating Pegasus spyware, had his iPhone hacked multiple times with the same spyware. The incident marks the first time a committee member has been identified as a victim and highlights the brazen targeting of European lawmakers. Researchers could not identify the attacker but warn of severe security implications for parliamentary work.

iG
iGEN Editorial
July 3, 2026
EU Politician Investigating Pegasus Spyware Was Hacked With the Same Malware, Citizen Lab Finds

In the summer of 2022, Greek politician Stelios Kouloglou was investigating how intrusive spyware had been used to hack business leaders, law enforcement officials, and politicians. As a member of the European Parliament’s PEGA Committee — set up to investigate the use of the notorious Pegasus spyware and other variants — Kouloglou travelled to interview spyware victims and probe high-profile cases. That fall, according to a new forensic analysis by the University of Toronto’s Citizen Lab, Kouloglou’s iPhone was hacked with the very same Pegasus spyware at the centre of the investigations.

“I was not expecting that,” Kouloglou, a longtime investigative journalist who served as a member of the European Parliament (MEP) from 2015 to 2024, tells WIRED. He says that when he recently found out his device had been compromised by the powerful spyware, he was shocked and then angry. “Me being a member of the Pegasus Committee investigating Pegasus and at the same time being hacked by Pegasus,” he says, “it was something really too reckless.”

The Pegasus Spyware and the PEGA Committee

First discovered by Citizen Lab in 2016, Pegasus exploits an evolving set of mobile operating system vulnerabilities to infect both iOS and Android devices with malware that can tap microphones and cameras and grab a target’s messages, contact data, web browsing details, photos, or other personal information, according to WIRED. The spyware is created by the Israeli firm NSO Group.

The revelation that Kouloglou’s device was targeted — not once, but multiple times — by Pegasus was published on Friday by Citizen Lab. The report says it is the first time that a member of the PEGA Committee has been identified as having been a victim of the Pegasus spyware while they were working within the group. The researchers say they do not have conclusive evidence of what government or entity was behind the attacks on Kouloglou’s device, but they note that whoever perpetrated the attacks would have potentially gotten access to internal information about the committee’s activities and findings, potentially violating EU parliamentary confidentiality requirements and people’s privacy.

John Scott-Railton, a Citizen Lab senior researcher, emphasizes that while the targeting occurred a few years ago, the irony of the episode underscores how endemic — and brazen — spyware targeting has become in the EU and beyond. “It’s open spyware season on Europe’s lawmakers,” he says. “The European Parliament, national parliaments, nobody is prepared.”

Wider Spyware Scandal and Implications

The European investigation into the use of Pegasus and other spyware in 2022 was prompted in large part by the Pegasus Project, consisting of research and reporting from more than a dozen media outlets and nongovernment organizations on a huge leak from the NSO Group. The data showed the scale and broad scope of Pegasus use around the world, with at least 180 journalists among those reportedly targeted by the spyware. NSO Group disputed the findings. Around the same time, Greece was also rocked by a separate spyware scandal, known locally as “Greece’s Watergate,” where dozens of prominent journalists and government and military officials were targeted with the Predator spyware created by Intellexa.

Researchers noted at the time that the Pegasus Project showed the need for public-private collaboration and concerted policy efforts to comprehensively address misuse of spyware. Technological protections alone cannot address the issue, many concluded. The Citizen Lab report about targeting within the PEGA Committee demonstrates this, too, according to WIRED: “The use of spyware not only violates the fundamental rights of the individuals concerned, but in this case also threatens the security and integrity of parliamentary work and of the European Parliament as a whole.”

For enterprise technology decision-makers, this incident underscores critical cybersecurity risks: even highly aware and protected individuals — a committee investigating spyware — can fall victim to advanced mobile threats. The attack vector likely involved zero-click exploits, meaning no user interaction was required. Organizations should reassess their mobile security posture, consider device-level monitoring solutions, and ensure that employees handling sensitive information use hardened devices and encrypted communications. The involvement of a commercial spyware vendor like NSO, now with US-based majority ownership as of 2025, adds layers of supply-chain risk that procurement teams must evaluate.


Sources: WIRED – Security

Keep Reading

Recommended Stories

Reverse-Lookup Service Exposed Millions of Photos of People's Faces Technology

Reverse-Lookup Service Exposed Millions of Photos of People's Faces

Independent security researcher Jeremiah Fowler found that the people-search service ClarityCheck left more than 9 million image files, including photos of faces, publicly accessible in an unsecured Amazon S3 bucket. A second misconfiguration exposed email addresses and phone numbers. The company secured the data after WIRED reached out but disputed that the data was publicly exposed.

August 19, 2026
New FROST Attack Spies on Websites and Apps Through SSD Timing Technology

New FROST Attack Spies on Websites and Apps Through SSD Timing

Researchers have discovered a new side-channel attack named FROST that uses JavaScript and OPFS to measure SSD contention, allowing websites to infer other sites and apps running on a device. The attack requires a large OPFS file and has limitations but poses a privacy risk. Enterprise users should be aware and limit browser tab usage.

June 14, 2026
Can AI Coexist With Privacy? Proton CEO Andy Yen Says It Will Have To Technology

Can AI Coexist With Privacy? Proton CEO Andy Yen Says It Will Have To

Proton founder and CEO Andy Yen tells WIRED that AI and privacy must coexist, even as the encrypted-services company launches its own Lumo chatbot. He argues corporate surveillance, not government spying, is the bigger threat to user data, and says privacy-preserving AI can be built by design. WIRED's interview covers Proton's CERN origins, its encrypted alternatives to Google services, and the influx of new users driven by tech giants' default AI push.

August 18, 2026
The Cop Who Took On Flock: Inside a Secret License-Plate Camera Deployment Technology

The Cop Who Took On Flock: Inside a Secret License-Plate Camera Deployment

Pawtucket, Rhode Island police officer Noel Pichardo discovered that Flock Safety license-plate readers were live on city streets after the city signed a $128,000, two-year contract without prior public notice. WIRED reports on the ACLU complaint, the chief's apology, and the chain of events that Pichardo says ended his law-enforcement career.

August 18, 2026