Last updated 2 weeks ago
The European Parliament, a government institution, was the target of a spyware campaign. The Citizen Lab report disclosed on 2026-07-01 revealed that former Member of the European Parliament Stelios Kouloglou had his mobile device repeatedly infected with Pegasus spyware while serving on a committee investigating commercial surveillance tools. No specific record count or affected user population was provided, but the incident targeted a high-value individual.
The attack chain involved the deployment of Pegasus spyware, likely via a zero-click exploit, enabling attackers to gain full remote access to the victim's device. The exfiltrated data types include device data, communications, location data, microphone recordings, and camera access. No threat actor was attributed, and no specific CVE identifiers were mentioned.
No post-incident developments such as regulatory actions, litigation, ransom payments, or remediation milestones were reported in the article.
Pegasus spyware infection via zero-click exploit
Sign in to join the discussion.
Company
Industry
Location
Disclosed
Records Affected
Attack Vector