Wired Paragon Solutions Faces Allegations of Spyware Misuse in Italy
Article Content
- •Paragon Solutions' Graphite spyware allegedly infected over 60 individuals worldwide.
- •The company canceled contracts with Italy's intelligence agencies amid misuse allegations.
- •Paragon lacks technical capabilities to monitor customer misuse of its spyware.
Paragon Solutions, a spyware manufacturer, is under scrutiny after WhatsApp reported that its Graphite spyware was used to infect over 60 individuals, including journalists and activists, across 20 countries. The allegations surfaced following the company's acquisition by AE Industrial Partners in December 2024. Paragon canceled contracts with Italy's intelligence agencies after these allegations, although it did not conduct an investigation into the claims. CEO Andrew Boyd admitted that the decision was based on risk management rather than confirmed misuse. Paragon lacks the technical means to monitor customer misuse of its software, relying on third-party disclosures for information. Italian authorities denied any wrongdoing, stating that some hacking was legal under criminal investigations. The situation highlights significant accountability issues within the spyware industry.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (6)
Following this threat?
Track Candiru, DevilsTongue and AE Industrial Partners in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What allegations are against Paragon Solutions?
What actions did Paragon take in response to the allegations?
How does Paragon monitor customer misuse of its software?
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…