Articles, Papers, and Reports Back to Research Articles Archive

New Citizen Lab Report: CatalanGate: Extensive Mercenary Spyware Operation against Catalans Using Pegasus and Candiru

, and 

April 18, 2022

Key Findings

  • The Citizen Lab, in collaboration with Catalan civil society groups, has identified at least 65 individuals targeted or infected with mercenary spyware.
  • At least 63 were targeted or infected with Pegasus, and four others with Candiru. At least two were targeted or infected with both.
  • Victims included Members of the European Parliament, Catalan Presidents, legislators, jurists, and members of civil society organisations. Family members were also infected in some cases.
  • We identified evidence of HOMAGE, a previously-undisclosed iOS zero-click vulnerability used by NSO Group that was effective against some versions prior to 13.2.
  • The Citizen Lab is not conclusively attributing the operations to a specific entity, but strong circumstantial evidence suggests a nexus with Spanish authorities.
  • We shared a selection of Pegasus cases with Amnesty International’s Tech Lab, which independently validated our forensic methodology.

Read the full report from the Citizen Lab.

For a full graphical overview of the report, view the Citizen Lab’s visual report, “Would You Click?”



Newsletter Signup Sign up for the Munk School Newsletter

× Strict NO SPAM policy. We value your privacy, and will never share your contact info.