The Citizen Lab
banner
citizenlab.ca
The Citizen Lab
@citizenlab.ca
Research and development at the intersection of cyberspace, global security, and human rights. Based at Munk School of Global Affairs & Public Policy, University of Toronto.
Pinned
NEW REPORT: We uncovered a coordinated network of fake X profiles that is spreading AI-generated content to induce revolt in #Iran. We call this network “PRISONBREAK”.

Read the report 👉 citizenlab.ca/2025/10/ai-e...
We Say You Want a Revolution: PRISONBREAK - An AI-Enabled Influence Operation Aimed at Overthrowing the Iranian Regime - The Citizen Lab
We investigate a coordinated network of inauthentic X accounts that is spreading AI-generated content to induce revolt in Iran. The network has been active since 2023, but increased activity during th...
citizenlab.ca
Reposted by The Citizen Lab
What used to be bugs and informants is now #spyware. How can we protect #freedom in the digital age?

🗓️ November 12, 6:30 PM #BerlinFreedomWeek

More information & registration 👇

www.berlin-freedom-week.com/en/event/sta...
November 3, 2025 at 4:18 PM
Researchers at the Citizen Lab and director @rondeibert.bsky.social sign open letter to the Canadian Minister of AI and Minister of Industry rejecting the “National Sprint” on AI strategy.

Read it here: bccla.org/policy-submi...
OPEN LETTER to the Minister of Artificial Intelligence and Digital Innovation from civil society organizations and individuals opposing "National Sprint" consultation on AI strategy - BC Civil Liberti...
The Honourable Mélanie JolyMinister of IndustryHouse of CommonsOttawa, OntarioK1A 0A6 The Honourable Evan SolomonMinister of Artificial Intelligence and Digital InnovationHouse of CommonsOttawa, Ontar...
bccla.org
November 5, 2025 at 9:48 PM
“It’s astonishing how the industry is able to experiment on human populations with such far-reaching technology and largely unrestrained.”

Citizen Lab director @rondeibert.bsky.social discusses the ethical risks of AI in an interview with the @financialpost.com.

financialpost.com/technology/c...
Canada isn't doing its part to stop AI government surveillance, UofT director says
Ronald Deibert says the ability of governments and criminal actors to surveil and target people is growing in scope thanks to AI. Read more.
financialpost.com
November 4, 2025 at 3:38 PM
Citizen Lab's @fittarelli.com speaks with Negar Mortazavi about Israel-linked influence operations pushing for regime change in Iran.

Listen to the episode here: podcasts.apple.com/us/podcast/p...
The Iran Podcast
News Podcast · Updated Bimonthly · Conversations on Iranian politics, society, and culture with host Negar Mortazavi. Support the Iran Podcast: anchor.fm/theiranpodcast/support
podcasts.apple.com
November 4, 2025 at 3:29 PM
Citizen Lab director @rondeibert.bsky.social receives SFU’s Sterling Prize for his groundbreaking work at the intersection of global security, digital technologies and human rights.
youtu.be/41wkXFyEsP8
2025 SFU Sterling Prize recipient Ronald J. Deibert protects privacy in the age of cyber espionage
YouTube video by Simon Fraser University
youtu.be
November 4, 2025 at 3:17 PM
Citizen Lab's founder & director @rondeibert.bsky.social has been awarded the Sterling Prize in Support of Controversy from Simon Fraser University.
I am very honoured to be awarded the Simon Fraser University's Sterling Prize in Support of Controversy

On behalf of all of my colleagues @citizenlab.ca and our partners around the world thank you for this recognition of our work

youtu.be/41wkXFyEsP8?...
2025 SFU Sterling Prize recipient Ronald J. Deibert protects privacy in the age of cyber espionage
YouTube video by Simon Fraser University
youtu.be
October 17, 2025 at 12:57 PM
Reposted by The Citizen Lab
NEW: Pegasus spyware coming to America?

An ex-Adam Sandler producer with ties to China is trying to acquire NSO Group.

Again.

Simonds fronted this before in 2023 & failed. But the backers haven't given up. Why?

Where is the money coming from? 1/

www.globes.co.il/news/article...
October 10, 2025 at 11:35 AM
Reposted by The Citizen Lab
NEW: fresh trouble for mercenary spyware companies like NSO.

#Apple is launching fat bounties on the zero-click exploits that feed the supply chain behind products like Pegasus & Paragon's Graphite.

With bonuses, exploit developers can land $5 million payouts.

security.apple.com/blog/apple-s...
October 10, 2025 at 3:33 PM
Reposted by The Citizen Lab
Now we're seeing confirmation of the NSO acquisition.

Mark my words, this is the path through which Pegasus gets put on Americans iPhones & Androids.

This dictatorship-in-a-box belongs nowhere near our constitutional rights.
SCOOP: Spyware maker NSO Group confirmed to us that the company has been acquired by a U.S. investment group.

NSO's spokesperson said the group "has invested tens of millions of dollars in the company and has acquired controlling ownership," but declined to say who is behind the investment.
Spyware maker NSO Group confirms acquisition by US investors | TechCrunch
NSO Group confirmed to TechCrunch that an unnamed group of American investors has taken “controlling ownership” of the surveillance tech maker.
techcrunch.com
October 10, 2025 at 3:58 PM
NEW REPORT: We uncovered a coordinated network of fake X profiles that is spreading AI-generated content to induce revolt in #Iran. We call this network “PRISONBREAK”.

Read the report 👉 citizenlab.ca/2025/10/ai-e...
We Say You Want a Revolution: PRISONBREAK - An AI-Enabled Influence Operation Aimed at Overthrowing the Iranian Regime - The Citizen Lab
We investigate a coordinated network of inauthentic X accounts that is spreading AI-generated content to induce revolt in Iran. The network has been active since 2023, but increased activity during th...
citizenlab.ca
October 3, 2025 at 4:40 PM
JOB ALERT: We are recruiting for the newly created role of Information Security Program Manager.

Apply by Sept 30.

citizenlab.ca/2025/09/job-...
Job Opportunity: Information Security Program Manager - The Citizen Lab
The Information Security Program Manager will be responsible for providing strategic leadership to develop and implement Information Security Programs for the Citizen Lab as well as other units at the...
citizenlab.ca
September 10, 2025 at 9:07 PM
Reposted by The Citizen Lab
"Canada's new Minister of AI must not be naive to its harms"
@rondeibert.bsky.social's latest oped in @theglobeandmail.com
"A tsunami of AI-enabled disinformation is already upon us, polluting the public sphere and seeping back into the language models that AI systems feed upon. What to do?"

My latest oped in @theglobeandmail.com 👇

www.theglobeandmail.com/opinion/arti...
Opinion: Canada’s new Minister of AI must not be naive to its harms
AI is not just being deployed to expand human understanding, but to systematically subvert it as well
www.theglobeandmail.com
September 8, 2025 at 8:22 PM
Reposted by The Citizen Lab
Thanks @ronanfarrow.bsky.social for your excellent insights on this topic 👇
ICE just reactivated its contract with an Israeli firm that makes phone-hacking spyware. Here's what you should know.
#ICE #NewsUS #Hacking #spyware
September 5, 2025 at 2:56 PM
Reposted by The Citizen Lab
NEW: Mercenary spyware is coming to the US.

ICE just quietly unsuspended their contract with spyware maker #Paragon.

Remember them? Caught earlier this year being used to hack Italian journalists.

This is bad, let's talk about how we got here 1/

jackpoulson.substack.com/p/exclusive-...
Exclusive: ICE reactivated its $2 million contract with Israeli spyware firm Paragon, following its acquisition by U.S. capital
The cyber division of ICE's Homeland Security Investigations on Saturday quietly lifted a stop-work order put into place by the Biden administration in October.
jackpoulson.substack.com
September 2, 2025 at 1:16 AM
Join the Citizen Lab’s Kate Robertson on Aug 27 at a webinar co-hosted by @iclmg-csilc.bsky.social on Canada’s Bill C-2.

She will be joined by privacy & migrant rights experts to discuss what’s at stake with 🇨🇦's “Strong Borders” Act.

Register: iclmg.ca/webinar-stop...
August 25, 2025 at 3:57 PM
Reposted by The Citizen Lab
Citizen Lab director warns cyber industry about US authoritarian descent
Citizen Lab director warns cyber industry about US authoritarian descent | TechCrunch
Ron Deibert, the head of the prominent digital human rights groups Citizen Lab, sounds the alarm at the Black Hat security conference about the "dramatic descent into authoritarianism," but one that the cyber community can help to defend against.
techcrunch.com
August 7, 2025 at 10:31 AM
"The impacts of transnational repression (TNR) are far-reaching, with detrimental effects on individuals' social, psychological, and physical well-being."

@noura.bsky.social, @sanstis.bsky.social, and Gözde Böcü examine the impacts of TNR in their new article: muse.jhu.edu/pub/1/articl...
July 29, 2025 at 7:38 PM
Writing for @policyoptions.irpp.org, the Citizen Lab’s Kate Robertson and Song-Ly Tran discuss how 🇨🇦 Canada’s outdated wiretap laws fail to protect Canadians from spyware abuse.

Read it here:
policyoptions.irpp.org/magazines/ju...
Canada’s outdated laws leave spyware oversight dangerously weak
Canada’s laws lag far behind the spyware tools used by police — leaving civil liberties, privacy, and national security exposed.
policyoptions.irpp.org
July 21, 2025 at 7:01 PM
Reposted by The Citizen Lab
I am honoured and excited to be delivering a keynote @blackhatevents.bsky.social 🇺🇸 2025

Come hear about the history of @citizenlab.ca, our investigations into mercenary spyware and other abuses, and what keeps me up at night!

www.blackhat.com/us-25/briefi...
July 14, 2025 at 5:15 PM
🛰️ New article co-authored by the Citizen Lab's @gabriellelim.bsky.social discusses the risks of privatized space technology. Published in @techpolicypress.bsky.social

Read it here: www.techpolicy.press/a-match-made...
A Match Made in the Heavens: The Surveillance State and the “New Space” Economy | TechPolicy.Press
As private firms dominate space, satellites serve both aid and surveillance—raising urgent questions about power, privacy, and democratic control.
www.techpolicy.press
July 7, 2025 at 2:16 PM
New op-ed by our director @rondeibert.bsky.social takes a look at the G7 Leaders' Statement on transnational repression. Published today in @theglobeandmail.com
Canada 🇨🇦 makes many pledges re: regulating spyware, protecting victims of transnational repression, and protecting human rights.

But words must be followed by actions.

My latest @theglobeandmail.com on the G7 Leaders' Statement on Transnational Repression

www.theglobeandmail.com/gift/3d51c5f...
The G7 condemned transnational repression, but will Canada meet its own commitments?
A statement against this practice was a welcome sight, but will mean very little without concrete action
www.theglobeandmail.com
July 4, 2025 at 1:55 PM
Why are governments around the world tightening laws on misinformation?

The Citizen Lab’s @gabriellelim.bsky.social examines the global surge of misinformation legislation in this new article👇
In a short span of time there has been a global rise in "fake news" laws - legislation that purports to or is designed to curb the spread of false information. @sbradshaw.bsky.social, Monzima Haque, and I wanted to understand why.

"The Global Spread of Misinformation Laws" ijoc.org/index.php/ij...
True Costs of Misinformation| The Global Spread of Misinformation Laws | Bradshaw | International Journal of Communication
True Costs of Misinformation| The Global Spread of Misinformation Laws
ijoc.org
June 23, 2025 at 3:24 PM
Reposted by The Citizen Lab
Keir Giles has been targeted *again* by allegedly Russian hackers — this time using a clever new trick intended to bypass 2-factor authentication.

Over the years I’ve written about Giles an unusual amount, and I have an idea about why.

First, the coverage:
www.reuters.com/technology/s...
Suspected Russian hackers used new tactic against UK researcher
Suspected Russian hackers have deployed a new tactic to trick even wary targets into compromising their own accounts, a victim of the spy campaign and researchers said on Wednesday.
www.reuters.com
June 18, 2025 at 9:46 PM
NEW REPORT: Russia's state-backed hackers have a new trick.

In collab w/ Google Threat Intelligence Group, we investigated an attack against prominent Russian expert
@keirgiles.bsky.social & uncovered an elaborate attack targeting App-Specific Passwords (ASPs).

citizenlab.ca/2025/06/russ...
Same Sea, New Phish: Russian Government-Linked Social Engineering Targets App-Specific Passwords - The Citizen Lab
Keir Giles, a prominent expert on Russia, was targeted with a new form of social-engineering attack that leverages App-Specific Passwords. Google links the operation to UNC6293, a Russian state-backed...
citizenlab.ca
June 18, 2025 at 10:30 PM