New Flaw in Apple Devices Led to Spyware Infection, Researchers Say

Apple iPhone 14 phones sit on display at an Apple Store at The Grove in Los Angeles, Sept. 16, 2022. (AP)
Apple iPhone 14 phones sit on display at an Apple Store at The Grove in Los Angeles, Sept. 16, 2022. (AP)
TT
20

New Flaw in Apple Devices Led to Spyware Infection, Researchers Say

Apple iPhone 14 phones sit on display at an Apple Store at The Grove in Los Angeles, Sept. 16, 2022. (AP)
Apple iPhone 14 phones sit on display at an Apple Store at The Grove in Los Angeles, Sept. 16, 2022. (AP)

Researchers at digital watchdog group Citizen Lab said on Thursday they found spyware they linked to Israeli firm NSO that exploited a newly discovered flaw in Apple devices.

While inspecting the Apple device of an employee of a Washington-based civil society group last week, Citizen Lab said it found the flaw had been used to infect the device with NSO's Pegasus spyware, it said in a statement.

"We attribute the exploit to NSO Group's Pegasus spyware with high confidence, based on forensics we have from the target device," said Bill Marczak, senior researcher at Citizen Lab, which is based at the University of Toronto's Munk School of Global Affairs and Public Policy.

He said the attacker likely made a mistake during the installation which is how Citizen Lab found the spyware.

Citizen Lab said Apple confirmed to them that using the high security feature "Lockdown Mode" available on Apple devices blocks this particular attack.

"This shows that civil society is once again serving as the early warning system about really sophisticated attacks," said John Scott-Railton, senior researcher at Citizen Lab.

Citizen Lab did not provide further details on the affected individual or the organization.

The flaw allowed compromise of iPhones running the latest version of iOS (16.6) without any interaction from the victim, the digital watchdog said. The new update fixes this vulnerability.

Apple issued new updates on its devices after investigating the flaws reported by Citizen Lab. An Apple spokesperson said it had no further comment, while Citizen Lab urged consumers to update their devices.

NSO said in a statement, "We are unable to respond to any allegations that do not include any supporting research."

The Israeli firm has been blacklisted by the US government since 2021 for alleged abuses, including surveillance of government officials and journalists.



Google Hires Windsurf Execs in $2.4 Billion Deal to Advance AI Coding Ambitions

FILE PHOTO: A Google logo is seen at a company research facility in Mountain View, California, US, May 13, 2025. REUTERS/Carlos Barria/File Photo
FILE PHOTO: A Google logo is seen at a company research facility in Mountain View, California, US, May 13, 2025. REUTERS/Carlos Barria/File Photo
TT
20

Google Hires Windsurf Execs in $2.4 Billion Deal to Advance AI Coding Ambitions

FILE PHOTO: A Google logo is seen at a company research facility in Mountain View, California, US, May 13, 2025. REUTERS/Carlos Barria/File Photo
FILE PHOTO: A Google logo is seen at a company research facility in Mountain View, California, US, May 13, 2025. REUTERS/Carlos Barria/File Photo

Alphabet's Google has hired several key staff members from AI code generation startup Windsurf, the companies announced on Friday, in a surprise move following an attempt by its rival OpenAI to acquire the startup.

Google is paying $2.4 billion in license fees as part of the deal to use some of Windsurf's technology under non-exclusive terms, according to a person familiar with the arrangement. Google will not take a stake or any controlling interest in Windsurf, the person added.

Windsurf CEO Varun Mohan, co-founder Douglas Chen, and some members of the coding tool's research and development team will join Google's DeepMind AI division, Reuters reported.

The deal followed months of discussions Windsurf was having with OpenAI to sell itself in a deal that could value it at $3 billion, highlighting the interest in the code-generation space which has emerged as one of the fastest-growing AI applications, sources familiar with the matter told Reuters in June.

OpenAI could not be immediately reached for a comment.

The former Windsurf team will focus on agentic coding initiatives at Google DeepMind, primarily working on the Gemini project.

"We're excited to welcome some top AI coding talent from Windsurf's team to Google DeepMind to advance our work in agentic coding," Google said in a statement.

The unusual deal structure marks a win for backers for Windsurf, which has raised $243 million from investors including Kleiner Perkins, Greenoaks and General Catalyst, and was last valued at $1.25 billion one year ago, according to PitchBook.

Windsurf investors will receive liquidity through the license fee and retain their stakes in the company, sources told Reuters.

'ACQUIHIRE' DEALS

Google's surprise swoop mirrors its deal in August 2024 to hire key employees from chatbot startup Character.AI.

Big Tech peers, including Microsoft, Amazon and Meta, have similarly taken to these so-called acquihire deals, which some have criticized as an attempt to evade regulatory scrutiny.

Microsoft struck a $650 million deal with Inflection AI in March 2024, to use the AI startup's models and hire its staff, while Amazon hired AI firm Adept's co-founders and some of its team last June.

Meta took a 49% stake in Scale AI in June in the biggest test yet of this increasing form of business partnerships.

Unlike acquisitions that would give the buyer a controlling stake, these deals do not require a review by US antitrust regulators. However, they could probe the deal if they believe it was structured to avoid those requirements or harm competition. Many of the deals have since become the subject of regulatory probes.

The development comes as tech giants, including Alphabet and Meta, aggressively chase high-profile acquisitions and offer multi-million-dollar pay packages to attract top talent in the race to lead the next wave of AI.

Windsurf's head of business, Jeff Wang, has been appointed its interim CEO, and Graham Moreno, vice president of global sales, will be president, effective immediately.

The majority of Windsurf's roughly 250 employees will remain with the company, which has announced plans to prioritize innovation for its enterprise clients.