Question 17: Why did the NSO sell its technology only to law…
Pegasus was developed in 2010 by the Israeli firm, the NSO Group. Pegasus spyware was first discovered in an iOS version in 2016 and then a slightly different version was found on Android. It is able to read the victim’s SMS messages and emails, listen to calls, take screenshots, record keystrokes, and access contacts and browser history. Hackers can hijack the phone’s microphone and camera, turning it into a real-time surveillance device. Pegasus can send back to the hacker the target’s private data, including, contact lists, calendar events, passwords, text messages, and live voice calls from popular mobile messaging apps. The target’s phone camera and microphone can be turned on to capture all activity in the phone’s vicinity, expanding the scope of the surveillance. Pegasus has evolved from a crude system that was reliant on social engineering to software that can compromise a phone without the user having to click on a single link. This is called as zero-click attack. Media outlets said they had identified more than 1,000 people in over 50 countries whose numbers were on the list. They include business executives, activists, politicians and heads of state and many royal family members of Arab. More than 180 journalists were also found to be on the list, from organisations including the New York Times, CNN and Al Jazeera. According to the reports, many of the numbers were clustered in 10 countries: Azerbaijan, Bahrain, Hungary, India, Kazakhstan, Mexico, Morocco, Rwanda, Saudi Arabia and the United Arab Emirates. In 2016, it infected smartphones using a technique called “spear-fishing”: the hackers send malicious links to the target via text messages and emails. In 2019, Pegasus was able to infiltrate a device with a missed call on WhatsApp and could even delete the record of this missed call. This makes it difficult for the user to know that they were targeted. In the same year, WhatsApp said Pegasus exploited a bug in its code to infect more than 1,400 iPhones and Android phones. These include journalists, government officials and human rights activists. It soon fixed the bug. July 2021: The Pegasus Project, an international investigative journalism effort, revealed that various governments used the software to spy on opposition politicians, government officials, activists, journalists and many others. It said the Indian government used it to spy on around 300 people between 2017 and 2019. Budapest Convention is an international convention it seeks to address Internet and computer crime (cybercrime) by improving investigative techniques, harmonizing national laws, and increasing cooperation among nations. It came into force on 1st July 2004. India is not a signatory to this convention. International Telecommunication Union is a specialized agency within the United Nations. It plays an important role in the development and standardisation of telecommunications and cyber security issues. Researchers at Amnesty International have developed a tool to see whether your phone is targeted by spyware. The tool is called Mobile Verification Toolkit (MVT), the tool is aimed to help you identify if the Pegasus spyware has targeted your phone. It works with both Android and iOS devices. The NSO has said that it sells its technologies only to law enforcement and intelligence agencies of governments for the purpose of saving lives through preventing crime and terror acts. The group said, it does not operate the system and has no visibility to the data. As per the company’s website, NSO products are used exclusively by government intelligence and law enforcement agencies to fight crime and terror.
Answer Options:
- A. For the purpose of identifying a bug in the code
- B. For the cause of visibility of data
- C. It prevents crime and terror attack for the purpose of saving lives ✓
- D. To identify whether the phone is infected by a spyware
- E. None of the above
Meanings of the options:
1. For the purpose of identifying a bug in the code: “to find bugs” || “कोड में बग की पहचान करने के लिए”
2. For the cause of visibility of data: “for data visibility” || “डेटा की दृश्यता के लिए”
3. It prevents crime and terror attack for the purpose of saving lives: “to prevent crime and terror” || “अपराध और आतंक को रोकने के लिए”
4. To identify whether the phone is infected by a spyware: “to identify spyware infection” || “स्पाइवेयर संक्रमण की पहचान करने के लिए”
5. None of the above: “not any of the above” || “उपरोक्त में से कोई नहीं”