Pegasus Spyware: What Is It? How Does It Infect Your Phone? How Can You Check if Your Phone Has Been Targeted?

Pegasus spyware is able to read the victim's SMS and emails, listen to calls, take screenshots, record keystrokes, and access contacts and browser history.

Advertisement
By Tasneem Akolawala | Updated: 20 July 2021 17:39 IST
Highlights
  • Pegasus spyware was created by Israeli firm NSO Group
  • Recently, it was reportedly used to spy on journalists and politicians
  • Pegasus spyware can be installed on Android and iOS phones both
Pegasus Spyware: What Is It? How Does It Infect Your Phone? How Can You Check if Your Phone Has Been Targeted?

Pegasus spyware infected several iPhone units using iMessage zero-click attack

Pegasus spyware is a surveillance software created by Israeli cyber intelligence firm NSO Group. This firm is known to build sophisticated software and technology for selling solely to law enforcement and intelligence agencies of vetted governments for the sole purpose of saving lives through preventing crime and terror acts, as claimed by the company. Pegasus is one such software that is created to gain access to your phone without consent and gather personal and sensitive information and deliver it to the user that is spying on you.

Pegasus spyware: What can it do?

According to Kaspersky, Pegasus spyware is able to read the victim's SMS messages and emails, listen to calls, take screenshots, record keystrokes, and access contacts and browser history. Another report corroborates that a hacker can hijack the phone's microphone and camera, turning it into a real-time surveillance device. It is also worth noting that Pegasus is a rather complex and expensive malware, designed to spy on individuals of particular interest, so the average user is unlikely to encounter it.

Pegasus spyware: When was it first discovered?

Pegasus spyware was first discovered in an iOS version in 2016 and then a slightly different version was found on Android. Kaspersky notes that in the early days, one of the main infection schemes was via an SMS. The victim got an SMS with a link. If the person clicks on it then their device gets infected with the spyware.

However, over the last half decade, Pegasus has evolved from a relatively crude system reliant on social engineering to a piece of software that can compromise a phone without the user having to click on a single link, or what the cyber world likes to call zero-click exploits.

Advertisement

Pegasus spyware: How does it infect a phone?

The Organized Crime and Corruption Reporting Project (OCCRP) reports that eventually, as the public became more aware of these tactics and were better able to spot malicious spam, zero-click exploit solution was discovered. This method does not rely on the target doing anything at all in order for Pegasus to compromise their device. Zero-click exploits rely on bugs in popular apps like iMessage, WhatsApp, and FaceTime, which all receive and sort data, sometimes from unknown sources. Once a vulnerability is found, Pegasus can infiltrate a device using the protocol of the app. The user does not have to click on a link, read a message, or answer a call — they may not even see a missed call or message.

“It hooks into most messaging systems including Gmail, Facebook, WhatsApp, FaceTime, Viber, WeChat, Telegram, Apple's inbuilt messaging and email apps, and others. With a line-up like this, one could spy on almost the entire world population. It's apparent that NSO is offering an intelligence-agency-as-a-service,” Timothy Summers, a former cyber engineer at a US intelligence agency said.

Advertisement

Apart from zero-click exploits, OCCRP reports another method called “network injections” to quietly access a target's device. A target's Web browsing can leave them open to attack without the need for them to click on a specifically-designed malicious link. This approach involves waiting for the target to visit a website that is not fully secured during their normal online activity. Once they click on a link to an unprotected site, the NSO Group's software can access the phone and trigger an infection.

Amnesty International recently reported that NSO Group's spyware has infected newer iPhone models, specifically iPhone 11 and iPhone 12, through iMessage zero-click attacks. The spyware can impersonate an application downloaded to an iPhone and transmit itself as push notifications via Apple's servers. Thousands of iPhone handsets have been potentially compromised by the NSO spyware.

Advertisement

Kaspersky says that Pegasus for Android does not rely on zero-day vulnerabilities. Instead, it uses a well-known rooting method called Framaroot. Another difference: If iOS version fails to jailbreak the device, the whole attack fails, but with the Android version, even if the malware fails to obtain the necessary root access to install surveillance software, it will still try directly asking the user for the permissions it needs to exfiltrate at least some data.

Pegasus spyware: Is there a way to detect if a phone's been compromised?

Researchers at Amnesty International have developed a tool to check if your phone has been targeted by the spyware. The Mobile Verification Toolkit (MVT) aims to help with identifying if Pegasus has infected your device. While it works on both Android and iOS devices, it requires some command line knowledge top operate right now. However, MVT may receive a graphical user interface (GUI) over time.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Xiaomi Surpasses Apple to Lead Wearables Market in Q1 2025: Canalys
  2. Realme GT 7 Series: Launch Date, Expected Price in India and More
  3. Vivo X200 FE Reportedly Listed on BIS, IMDA Websites Ahead of Launch
  4. iQOO Neo 10: From Display, Camera to Battery, Eveything We Know About It
  5. Acer Swift Neo Debuts in India With Intel Core Ultra 5 CPU: Check Price
  6. Vijay Sales Apple Days Sale Brings Discounts on These iPhone, Mac Models
  1. Made in India iPhones Will Still Be Cheaper in the US, Even With Donald Trump's 25 Percent Tariff: GTRI Report
  2. Xiaomi Surpasses Apple to Lead Wearables Market in Q1 2025 With 19 Percent Market Share: Canalys
  3. Vivo X200 FE Reportedly Listed on BIS, IMDA Certification Websites Ahead of Anticipated Launch in India
  4. Oracle Said to Buy $40 Billion of Nvidia Chips for OpenAI's US Data Center
  5. Trump Threatens 25 Percent Tariffs on Apple If iPhones Not Made in US
  6. iPhone 16 Pro Max, iPhone 15, MacBook Air (M4) and More Get Discounts During Vijay Sales Apple Days Sale
  7. Anthropic CEO Dario Amodei Says AI Models Hallucinate Less Than Humans: Report
  8. UK Government Updates Crypto Reporting Guidelines, Mandates Collection of Crypto Transaction Data
  9. Acer Swift Neo WIth Intel Core Ultra 5, Up to 32GB RAM Launched in India: Price, Specifications
  10. Elden Ring Film Adaptation in the Works at A24 With Alex Garland Set to Direct
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.