logo

Pegasus Spyware Resurfaces with Newly Revealed Zero-Click Vulnerability

ID: dc0fcc3b-e4f1-5423-ac2b-ed2b8b54d31e

STIX ID: report--dc0fcc3b-e4f1-5423-ac2b-ed2b8b54d31e

Feed Name: Zimperium Blog

Threat Score
90/100

Date Published: 2021-09-14

Date Updated: 2026-05-01

...
...

The report describes The Citizen Lab's disclosure of a zero-click iMessage image-rendering vulnerability used by the Pegasus spyware (ForcedEntry) to remotely infect Apple devices; Apple issued security updates (iOS 14.8, iPadOS 14.8, macOS updates) to mitigate CVE-2021-30860, and Zimperium asserts its on-device machine-learning protections detected and blocked the exploit for customers prior to public disclosure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.