In-Depth Analysis of Pegasus Spyware and How To Detect It on Your Mobile Devices
ID: 13f72f8f-e357-5e2e-96c6-4fe4dcffd2ca
STIX ID: report--13f72f8f-e357-5e2e-96c6-4fe4dcffd2ca
Feed Name: Group-IB Blog
This report provides a technical overview of NSO Group’s Pegasus spyware, describing its evolution (from spear-phishing to zero-click exploits), capabilities (remote camera/microphone access, message exfiltration, GPS tracking, privilege escalation), common infection vectors (iMessage, WhatsApp, malicious links, network injection, physical access), detection methods (focused guidance on creating encrypted iTunes backups and scanning with Amnesty’s Mobile Verification Toolkit), indicators and forensic artefacts to inspect, recommended mitigation (Lockdown Mode, updates, 2FA) and remediation steps (DFU restore, incident response engagement).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
