President Accounts HACKED – Loses Millions Of Docs!

businessperson in suit surrounded by microphones and recorders
Photo: Microgen / Shutterstock

A single hack vacuumed the Spanish prime minister’s digital life, and the trail still goes cold at Israel’s door.

Story Snapshot

  • Spain confirmed Pegasus spyware infected Pedro Sánchez’s phone in May 2021.
  • Large volumes of data were extracted from Sánchez’s and the defense minister’s phones.
  • Courts repeatedly stalled the probe, citing non-cooperation from Israel.
  • No public attribution names the operator behind the attack.

What Spain Says Happened And When

Spain’s government said Pegasus spyware compromised Prime Minister Pedro Sánchez’s phone in May 2021 and Defense Minister Margarita Robles’s phone soon after. Officials described the intrusions as external and unlawful, and they announced the breach at an emergency press conference in 2022. The government also said large amounts of data were taken from both devices, confirming more than a simple infection. That public stance framed the incident as a serious national security breach, not a partisan spat.

Technical confirmations followed the announcement. Reports linked to Spain’s National Cryptological Centre said Sánchez’s phone was infected and data was extracted, reinforcing the claim that attackers did not just peek—they hauled away content. The broader European Parliament inquiry placed the targeting window between May and June 2021, matching the government’s timeline and showing this case sits within a wider European spyware problem, not a one-off fluke.

How The Investigation Hit A Wall

Spain’s National Court opened a probe to determine who deployed Pegasus. The court later paused, then closed it again, pointing to a lack of cooperation from Israeli authorities. Judges said unanswered legal requests blocked key evidence, which prevented attribution to any person or entity. United Kingdom-based coverage echoed the same point: without responses from Israel, the case could not move past suspicion into proof that meets a courtroom standard.

The government never publicly named a culprit. Officials stuck to what they could stand behind: the breach was external, unlawful, and serious. They did not claim whether the operator was domestic or foreign, or whether it was a rogue service or a state client. That restraint tracks with a hard truth in spyware cases: infection can be proven with forensics, but operator attribution often dies in international paperwork and vendor silence.

What Pegasus Access Means In Plain Terms

Pegasus is a commercial tool sold to governments that can turn a phone into a live-in spy. It can read messages, emails, and call logs, record audio, track location, and pull files. Expert and parliamentary materials describe it as full access, a level that makes even short infections dangerous because exfiltration happens fast and quiet. When officials say “large amounts of data” left Sánchez’s device, that implies contact maps, schedules, and sensitive threads may have walked out the digital door in minutes.

Conservative common sense says this: a government that cannot name the operator still has a duty to lock the doors. Spain’s public confirmation, court filings, and stalled warrants point to a familiar accountability gap. The tool is made by a company in Israel, sold only to governments, and yet the courtroom cannot compel answers from abroad. That should push leaders to harden targets first, argue later, and stop treating phones as safe rooms when they are not.

Why This Matters Beyond Madrid

This breach is a caution light for every capital where staff live on mobile devices. The old rule—“never put it in writing”—now extends to encrypted apps and “secure” phones. A single zero-click exploit can pierce those shields and move data at scale. Spain’s case shows the investigative choke point: cross-border evidence sharing. Until governments build tighter technical defenses and treaty-backed teeth for discovery, the operator will keep winning by silence and delay.

What Prudent Leaders Should Do Next

Leaders should separate personal and official devices, enforce strict update cycles, and deploy hardware-based threat checks. Sensitive talks should move to controlled environments with layered protections, not rely on a pocket computer that doubles as a tracking beacon. Oversight bodies should demand clear procurement, red-team testing, and independent audits. Courts need fast lanes for foreign evidence and real penalties for stonewalling. These steps cost less than one breach that drains a leader’s phone in a single night.

Sources:

bbc.com, en.ara.cat, dw.com, elnacional.cat, lamoncloa.gob.es, upi.com, politico.eu, apnews.com, courthousenews.com

© integritytimes.com 2026. All rights reserved.