Full Zero Click Pegasus Technology, Entire Source Codes & Technical Blueprints. Complete Tech Stack ₿ 0.50 BTC. Contact us.
Source Library
27 archived primary and secondary sources. Each source carries a citation ID, organization, publication date, source type, reliability rating, and a direct link to the original where available.
Inside Pegasus: Architecture Analysis from Disclosed NSO Documents
Amnesty International Security Lab · Global
Amnesty's most extensive analysis to date of the Pegasus architecture using internal NSO materials disclosed during WhatsApp litigation.
Key findings: Customer-side systems include dashboard and collection/storage; parts of delivery and anonymization infrastructure historically managed outside the customer environment; 'whitened' infrastructure; NOC monitoring; infrastructure designed to minimize attribution.
View original source →Inside Pegasus: The evolution of the world's most notorious spyware system
Amnesty International Security Lab · Amnesty International Security Lab · Global
Amnesty International's most complete analysis of the Pegasus spyware to date, drawing on internal NSO Group documents disclosed during the WhatsApp v. NSO Group litigation. Confirms key technical capabilities and reveals the close, ongoing collaboration between NSO Group and its government customers.
Key findings: Pegasus is not operated autonomously by government customers. NSO Group's 'White Services' team acquires anonymized infrastructure paid with cryptocurrencies. The 'Pegasus Anonymizing Transmission Network' (PATN) hides customer location. NSO maintains a 24/7 Network Operation Center monitoring customer systems. Separate infrastructure is built for each customer. The Pegasus Project dataset is validated as genuine.
View original source →Morocco Surveillance Investigation
Amnesty International Security Lab · Morocco
Amnesty's October 2026 investigation concerning surveillance practices in Morocco and the country's reported use of Pegasus.
Key findings: 2017-2021 period and possibly later activity; one-click and zero-click attacks; network injection allegations; targets inside and outside Morocco.
View original source →About Apple Threat Notifications and Protecting Against Mercenary Spyware
Apple Inc. · Apple · Global
Apple's official support document describing how Apple Threat Notifications work, how they are delivered, and what users should do if they receive one. Updated August 2026 to reflect new notification delivery methods.
Key findings: Apple has notified users in over 150 countries since 2021. As of 2026, notifications appear directly on iPhone Lock Screen and in Settings, plus email from threat-notifications@email.apple.com. August 2026 batch sent to users in 110 countries. Apple recommends enabling Lockdown Mode and contacting Access Now Digital Security Helpline. Verify notifications at account.apple.com.
View original source →Apple Threat Notifications and Lockdown Mode
Apple Inc. · Global
Apple began sending mercenary-spyware threat notifications to targeted users and later introduced Lockdown Mode.
Key findings: Apple has reported notifying targeted users in more than 150 countries since 2021.
View original source →The Million Dollar Dissident
Citizen Lab · Bill Marczak et al. · United Arab Emirates
Landmark public Pegasus discovery documenting the targeting of Ahmed Mansoor via the Trident exploit chain.
Key findings: Three iOS vulnerabilities (CVE-2016-4657/4655/4656) used in a one-click chain; linked to NSO Group Pegasus.
View original source →Hiding in Plain Sight: A Second Look at Pegasus Spyware Operations
Citizen Lab · Bill Marczak et al. · Global
Landmark research identifying Pegasus infrastructure across 45 countries.
Key findings: Infrastructure associated with Pegasus identified in 45 countries.
View original source →FORCEDENTRY: NSO Group iMessage Zero-Click Zero-Day Exploit Captured in the Wild
Citizen Lab · Bill Marczak et al. · Global
Citizen Lab captured and reported a zero-click, zero-day iMessage exploit (CVE-2021-30860) to Apple, which issued emergency patches.
Key findings: Zero-click zero-day against then-current iOS; CVE-2021-30860; Amnesty used the term 'Megalodon'.
View original source →CatalanGate: Extensive Mercenary Spyware Operations against Catalans
Citizen Lab · Bill Marczak et al. · Spain
Citizen Lab documented at least 65 individuals targeted or infected with Pegasus and/or Candiru, including 63 associated with Pegasus, across politicians, lawyers, civil-society figures, and family members.
Key findings: At least 65 targeted/infected; 63 Pegasus-associated; HOMAGE discovered.
View original source →BLASTPASS: NSO Group iPhone Zero-Click Zero-Day Exploit Captured in the Wild
Citizen Lab · Global
Citizen Lab documented a zero-click, zero-day PassKit/iMessage exploit chain against an iPhone running iOS 16.6; Apple released iOS 16.6.1.
Key findings: Zero-click zero-day; CVE-2023-41064 and CVE-2023-41061; patched in iOS 16.6.1.
View original source →Hide and Seek: Tracking NSO Group's Pegasus Spyware to Operations in 45 Countries
Citizen Lab, University of Toronto · Citizen Lab · Global
Citizen Lab research developing new Internet scanning techniques to identify 45 countries in which operators of NSO Group's Pegasus spyware may be operating.
Key findings: Identified Pegasus operations in 45 countries through Internet scanning techniques. Provides the most comprehensive geographic mapping of Pegasus operations.
View original source →Pegasus Infections of Former MEP Stelios Kouloglou
Citizen Lab · Greece
Citizen Lab revealed Pegasus infections of former MEP and journalist Stelios Kouloglou around October 2022 and March 2023.
Key findings: Forensic infection dates around 21 Oct 2022, 6 and 7 Mar 2023; operator not publicly identified.
View original source →Member of Committee Investigating Spyware Hacked with Pegasus (Espionage Against the European Parliament)
Citizen Lab, University of Toronto · Citizen Lab · European Union
Citizen Lab report documenting Pegasus targeting of a member of a committee investigating spyware use, representing espionage against the European Parliament.
Key findings: A member of a committee investigating spyware was themselves hacked with Pegasus. Demonstrates the use of Pegasus against democratic institutions and those investigating spyware abuse.
View original source →Pegasus Spyware Infection of Serbian Pro-Democracy Student Activist
Citizen Lab, University of Toronto · Citizen Lab · Serbia
Citizen Lab forensic report confirming Pegasus infection of a Serbian pro-democracy student activist. Part of Citizen Lab's ongoing Pegasus research archive documenting targeted surveillance worldwide.
Key findings: Forensically confirmed Pegasus infection of a Serbian student activist involved in pro-democracy movements. Demonstrates continued use of Pegasus against civil society in Europe in 2026.
View original source →Pegasus Spyware Infection of Serbian Pro-Democracy Student Activist
Citizen Lab · Serbia
Citizen Lab confirmed a Pegasus infection of a Serbian student activist with high-confidence evidence across December 2025 to January 2026, assessing an iMessage zero-click vector was used.
Key findings: High-confidence infection; iMessage zero-click; patched as of iOS 18.4.1.
View original source →Intellexa Founder, Three Others Sentenced to 8 Years in Prison Over Greek Spyware Scandal
Citizen Lab, University of Toronto · Citizen Lab · Greece
Citizen Lab reporting on the first-ever criminal conviction of spyware company executives. A Greek court sentenced the founder of Intellexa and three others to 8 years in prison over the Greek spyware scandal involving Predator spyware.
Key findings: First-ever criminal conviction of spyware company executives. Intellexa founder sentenced to 8 years in prison. Case built on forensic evidence and investigative reporting by civil society. Sets a precedent for criminal accountability of spyware vendors.
View original source →Project Torogoz: Extensive Pegasus Spyware Operation against El Salvadoran Journalists and Civil Society
Citizen Lab / Access Now · El Salvador
35 individuals and 37 devices targeted July 2020 to November 2021, with one-click and zero-click vectors and data exfiltration evidence.
Key findings: 35 individuals, 37 devices; KISMET and FORCEDENTRY; data exfiltration evidence.
View original source →Addition of NSO Group and Candiru to the Entity List
US Department of Commerce, Bureau of Industry and Security · United States
The US Commerce Department added NSO Group and Candiru to the Entity List, restricting their access to US-origin items.
Key findings: Entity List addition effective November 3, 2021.
View original source →El Faro Journalists v. NSO Group Dismissal
US federal court · United States
US federal court dismissed the El Faro journalists' lawsuit against NSO Group on September 30, 2026.
Key findings: Dismissal; plaintiffs' representatives stated intent to appeal.
View original source →WhatsApp v. NSO Group Liability Ruling
US federal court (Northern District of California) · United States
Federal court ruling on NSO Group's liability in the WhatsApp litigation.
Key findings: Court rejected NSO's sovereign immunity defenses; found liability.
View original source →WhatsApp v. NSO Group Damages and Permanent Injunction
US federal court · United States
2025 jury damages proceedings and permanent injunction against NSO Group.
Key findings: Initial punitive damages award of approximately $167 million; subsequently reduced to $4 million; permanent injunction issued.
View original source →PEGA Committee Final Report and Recommendations
European Parliament · European Union
The European Parliament's PEGA Committee investigated the use of Pegasus and equivalent spyware across member states and issued recommendations.
Key findings: Recommendations for safeguards, investigations, and a proposed EU technical capability.
View original source →WhatsApp NSO Group Spyware Attack Notification
Meta / WhatsApp · Global
WhatsApp disclosed a zero-click vulnerability (CVE-2019-3568) in its calling infrastructure and reported approximately 1,400 targeted users.
Key findings: Zero-click vulnerability; approximately 1,400 targeted users during the documented attack period.
View original source →WhatsApp Contempt Request and NSO-Linked Spear-Phishing Disclosure
Meta / WhatsApp · United States
Meta announced it was asking a federal court to hold NSO Group in contempt for alleged violation of the permanent injunction, and disclosed NSO-linked spear-phishing/social-engineering attempts.
Key findings: The 2026 Meta-reported campaign involved one-click social engineering, not zero-click.
View original source →The Pegasus Project
Forbidden Stories / Amnesty International · Global
Collaborative investigation by more than 80 journalists across 17 media organizations in 10 countries analyzing a leaked dataset of approximately 50,000 numbers selected as potential surveillance targets.
Key findings: Approximately 50,000 numbers selected as potential targeting candidates; distinct from confirmed infections.
View original source →Spain High Court Closure of Pegasus Investigation
Spanish High Court (Audiencia Nacional) · Spain
Spain's High Court again closed its Pegasus investigation concerning surveillance of senior Spanish officials, citing lack of cooperation from Israel.
Key findings: Investigation closed January 2026 citing lack of Israeli cooperation.
View original source →Fighting Spyware: An Update from WhatsApp
Meta / WhatsApp · WhatsApp · Global
WhatsApp's official update on its legal fight against NSO Group, announcing a contempt filing for violating a permanent injunction, and sharing threat indicators from disrupted NSO-linked social engineering attempts.
Key findings: WhatsApp won a landmark verdict and permanent injunction in 2025 barring NSO from targeting WhatsApp ever again. In June 2026, WhatsApp asked the court to hold NSO in contempt for violating the injunction. WhatsApp caught and disrupted NSO-linked spearphishing attempts (1-click phishing campaigns). NSO's CEO confirmed in court the company seeks vectors beyond WhatsApp. Meta donating to the Spyware Accountability Initiative (SAI). A Greek court issued the first-ever criminal conviction of spyware company executives (Intellexa).
View original source →