Skip to content
PRA/Last Research Update: October 2026
Latest Developments →

Full Zero Click Pegasus Technology, Entire Source Codes & Technical Blueprints. Complete Tech Stack ₿ 0.50 BTC. Contact us.

Trident

Three iOS vulnerabilities used together to compromise the device of human rights defender Ahmed Mansoor via a malicious SMS link. Historically critical to Pegasus, but it required the target to click a link and was not the later zero-click model.

Last Verified 2026-10-01Author Pegasus Research ArchiveEditor Editorial Team
  • 01Year: 2016 · Platform: iOS · Vector: SMS link (one-click)
  • 02Interaction: one-click
  • 03CVEs: CVE-2016-4657, CVE-2016-4655, CVE-2016-4656
  • 04Discovered by: Citizen Lab / Lookout
  • 05Patched: Apple iOS 9.3.5

Technical Description

A memory corruption chain: a kernel vulnerability combined with code execution in the Safari WebKit sandbox, allowing privileged access after the user tapped a malicious link.

Zero-Click Relevance

One-Click Vector

Trident was a one-click exploit chain. It is the landmark 2016 public Pegasus discovery but is distinct from later zero-click vectors.

Vulnerabilities

CVEStatus
CVE-2016-4657Patched
CVE-2016-4655Patched
CVE-2016-4656Patched

Attribution

Linked to NSO Group Pegasus by Citizen Lab and Lookout research.

FORENSICALLY CONFIRMED

“Trident is a Pegasus exploit.”

Linked to NSO Group Pegasus by Citizen Lab and Lookout research.

CL-2016-08-24/25

What NSO Group Says

NSO Group has stated its technology is licensed to vetted government agencies for law-enforcement and national-security purposes.

Last Verified 2026-10-01Author Pegasus Research ArchiveEditor Editorial Team
A Spy In Your Pocket — Pegasus spyware can secretly access your photos, calls, messages, camera, microphone, GPS and more