A new report from the Citizen Lab has revealed that former Member of the European Parliament Stelios Kouloglou had his mobile device repeatedly hacked with the notorious Pegasus spyware while serving on a committee that was tasked with inve

A former Member of the European Parliament who was part of a committee investigating spyware was himself targeted with the Pegasus surveillance tool, according to a report by Citizen Lab. Stelios Kouloglou's mobile device was reportedly compromised multiple times.
Kouloglou was a member of a special committee established by the European Parliament to investigate the use of spyware, including Pegasus. This committee was formed in response to revelations about the widespread misuse of such surveillance technology against journalists, activists, and politicians across Europe and globally.
The discovery of the Pegasus infection on Kouloglou's device raises significant concerns about the potential for state-sponsored surveillance to infiltrate legislative bodies and target individuals involved in oversight and inquiry into such activities. The timing of the hacks, while he was actively involved in the spyware investigation, is particularly noteworthy.
Pegasus, developed by the Israeli firm NSO Group, is a sophisticated spyware capable of extracting vast amounts of data from a targeted device, including messages, emails, call logs, and location data, and can even activate the device's microphone and camera without the user's knowledge. NSO Group maintains that its product is sold only to vetted government intelligence and law enforcement agencies for the stated purpose of combating terrorism and serious crime.
The Citizen Lab report details the repeated nature of the intrusions, suggesting a persistent effort to monitor Kouloglou's communications and activities. The specific dates and methods of these hacks were not detailed in the provided information, but the repeated targeting indicates a sustained interest in the former MEP.
The European Parliament has been a vocal critic of spyware use and has taken steps to address the issue, including the formation of committees like the one Kouloglou served on. This incident underscores the challenges faced by lawmakers and oversight bodies in protecting themselves from the very tools they are investigating.
The implications of a parliamentarian involved in spyware oversight being targeted are far-reaching, potentially undermining the integrity of legislative investigations and creating a chilling effect on free speech and political discourse. It raises questions about who authorized the deployment of Pegasus against Kouloglou and for what purpose.
While the source material does not specify any immediate actions taken by the European Parliament or Kouloglou following the discovery, such incidents typically prompt calls for further investigation, increased security measures for officials, and stronger regulatory frameworks to prevent the misuse of surveillance technology.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently disclosed critical vulnerability in TeamCity to breach its own environment. "Cadence users should immediately revoke or rotate all credentials and secrets that may have been used to run their Cadence executions," JetBrains said.

Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in arbitrary code execution under certain conditions. The vulnerability, tracked as CVE-2026-59346 (CVSS score: 9.3), is an integer-overflow vulnerability that a local attacker with elevated privileges can exploit to run arbitrary code. "A

A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). [...]

Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company's hardware wallets