Microsoft Says Israeli Group Created and Sold Tools to Hack Windows

Microsoft did not directly name Candiru, instead referred to it as an "Israel-based private sector offensive actor" under the codename Sourgum.

Advertisement
By Reuters | Updated: 16 July 2021 16:04 IST
Highlights
  • Microsoft fixed the discovered flaws on Tuesday through a software update
  • Sourgum generally sells cyberweapons
  • Candiru's tools also exploited weaknesses in Google's Chrome browser
Microsoft Says Israeli Group Created and Sold Tools to Hack Windows

Microsoft referred to flaw as an Israel-based private sector offensive actor under the codename Sourgum

An Israeli group sold a tool to hack into Microsoft Windows, Microsoft, and technology human rights group Citizen Lab said on Thursday, shedding light on the growing business of finding and selling tools to hack widely used software.

The hacking tool vendor, named Candiru, created and sold a software exploit that can penetrate Windows, one of many intelligence products sold by a secretive industry that finds flaws in common software platforms for their clients, said a report by Citizen Lab.

Technical analysis by security researchers details how Candiru's hacking tool spread around the globe to numerous unnamed customers, where it was then used to target various civil society organisations, including a Saudi dissident group and a left-leaning Indonesian news outlet, the reports by Citizen Lab and Microsoft show.

Attempts to reach Candiru for comment were unsuccesful.

Advertisement

Evidence of the exploit recovered by Microsoft suggested it was deployed against users in several countries, including Iran, Lebanon, Spain, and the United Kingdom, according to the Citizen Lab report.

"Candiru's growing presence, and the use of its surveillance technology against global civil society, is a potent reminder that the mercenary spyware industry contains many players and is prone to widespread abuse," Citizen Lab said in its report.

Advertisement

Microsoft fixed the discovered flaws on Tuesday through a software update. Microsoft did not directly attribute the exploits to Candiru, instead referring to it as an "Israel-based private sector offensive actor" under the codename Sourgum.

"Sourgum generally sells cyberweapons that enable its customers, often government agencies around the world, to hack into their targets' computers, phones, network infrastructure, and Internet-connected devices," Microsoft wrote in a blog post. "These agencies then choose who to target and run the actual operations themselves."

Advertisement

Candiru's tools also exploited weaknesses in other common software products, like Google's Chrome browser.

On Wednesday, Google released a blog post where it disclosed two Chrome software flaws that Citizen Lab found connected to Candiru. Google also did not refer to Candiru by name, but described it as a "commercial surveillance company." Google patched the two vulnerabilities earlier this year.

Cyber arms dealers like Candiru often chain multiple software vulnerabilities together to create effective exploits that can reliably break into computers remotely without a target's knowledge, computer security experts say.

Those types of covert systems cost millions of dollars and are often sold on a subscription basis, making it necessary for customers to repeatedly pay a provider for continued access, people familiar with the cyber arms industry told Reuters.

"No longer do groups need to have the technical expertise, now they just need resources," Google wrote in its blog post.

© Thomson Reuters 2021


What is the best phone to buy right now? We discussed this on Orbital, the Gadgets 360 podcast. Orbital is available on Apple Podcasts, Google Podcasts, Spotify, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement
Popular Mobile Brands
  1. Vivo T4R 5G to Launch Soon in India; Design Teased
  2. iQOO Z10R With 32-Megapixel Selfie Camera to Launch in India on This Date
  3. Motorola Razr 60 Ultra Review: Flip Phone Perfection?
  4. Samsung Galaxy F36 5G India Launch Date Announced; Design Shown
  5. Apple's iPhone Fold Could Sport This Crease-Free Screen From Samsung
  6. Over 75,000 Employees Fired in 2025: These Firms Conducted Mass Layoffs
  7. Samsung Could Bring Back Support for S-Pen in Future Galaxy Z Fold Models
  8. Honor X70 With 8,300mAh Battery and Snapdragon 6 Gen 4 Launched
  9. iPhone 16 Available in India at Rs 69,999 in Flipkart's GOAT Sale 2025
  10. Realme 15 Pro 5G to Get 50-Megapixel Sony IMX896 Main Rear Camera
  1. Apple to Equip iPhone Fold With Samsung Display's Crease-Free Screen: Ming-Chi Kuo
  2. Honor X70 With 8,300mAh Battery, Snapdragon 6 Gen 4 SoC Launched: Price, Specifications
  3. Samsung Developing New Technologies to Bring Back S-Pen in Future Galaxy Z Fold Models: Report
  4. Cyberpunk 2077: Ultimate Edition Coming to Apple Silicon-Powered Mac on July 17
  5. Axiom Space’s Ax-4 Crew Returns from ISS Aboard SpaceX Dragon Grace After Record Research Mission
  6. Crystalline Ice Discovered in Space: New Study Reveals Hidden Order in Cosmic Ice
  7. NASA Deploys High-Tech Aircraft to Support Texas Flood Relief and Recovery Efforts
  8. Massive Boulders Ejected by DART Mission Could Complicate Future Asteroid Deflection
  9. The Map That Leads to You OTT Release Date: When and Where to Watch it Online?
  10. Anuraga Karikkin Vellam Streaming Now on SunNXT: Everything To Know About Cast, Plot, and More
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.