www.theguardian.com Pegasus Spyware: Advanced Zero-Click Exploits Target Mobile Devices
Article Content
- •Pegasus spyware uses zero-click exploits to infect devices without user interaction.
- •It can access messages, calls, and activate cameras/microphones undetected.
- •Standard antivirus solutions cannot detect Pegasus; forensic checks are necessary.
Pegasus spyware, developed by NSO Group, infects mobile devices through zero-click exploits, allowing it to silently harvest messages, calls, and location data. It can activate cameras and microphones without user knowledge. The spyware is known to target both iOS and Android operating systems, exploiting vulnerabilities that are often unknown to manufacturers. While initially marketed for law enforcement, Pegasus has been misused to spy on journalists and activists. Standard antivirus tools fail to detect it, requiring forensic checks for confirmation of infection. High-risk users are advised to use Apple’s Lockdown Mode and maintain cautious app and network habits. The rise of Pegasus highlights critical vulnerabilities in mobile security, even among trusted systems.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Predator Spyware and NSO Group in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
How does Pegasus infect devices?
What should users do to protect themselves?
Can standard antivirus software detect Pegasus?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Authentication Bypass in Rejetto HFS Exploited Within 24 Hours Anthropic's Mythos model identified a critical authentication bypass in Rejetto HTTP File Server (HFS), tracked as CVE-2026-61500, allowing remote code execution. Discovered by Horizon3 researcher Zach Hanley, the flaw was revealed on September 27, 2026, and exploitation began within 24 hours, with attacks traced to…