Security2 distinct publishers2 min readPublished
SHARE Foundation, Citizen Lab and Amnesty confirmed three infections among at least 14 Serbian targets around the March local elections, and the Android half of the wave was installed by hand during police custody.
The Watch · Security desk

Compiled by The WatchSomething wrong?How this is made
Twelve people came to SHARE Foundation in August after Apple warned them their devices had likely been targeted [3]. Eleven of those phones are still in forensic analysis [7]. Subtract, and one file from that batch is closed [24]: the Pegasus case. Three confirmed infections against at least 14 known targets is roughly one in five [25], and the denominator is still open.
The two NoviSpy cases came in through other doors. One student's phone was infected after authorities took it during police questioning [9]. The second was found because the owner's private messages were read out on a Serbian television network friendly to the ruling party [8]. Amnesty's Donncha O Cearbhaill said the new variant appears to have been updated to avoid detection [10]. In both cases the trigger was an event in the physical world rather than a signature hit.
The two implants differ in what an operator has to arrange. Pegasus reaches a phone with no victim interaction and without the device ever being seized; NoviSpy requires physical access to the handset [13]. Serbia's version of that requirement is already on record. In February 2025, Amnesty reported that Cellebrite had cut ties with the country after documenting police using its extraction tooling to open detainees' phones, never asking for passwords, and then implanting NoviSpy [14]. A month later, Amnesty found two Serbian investigative journalists targeted with Pegasus [15].
Bill Marczak of Citizen Lab said Apple's updates have broken this particular exploit and urged everyone onto the latest iOS [19]. That is the whole of the vendor-side fix available here.
SHARE places the wave in the build-up to March local elections that were read as a test of the ruling Serbian Progressive Party, with student protests that grew after the 2024 Novi Sad railway station canopy collapse [17]. NSO Group says its spyware is for use against terrorism and crime and that it halts any abuses it discovers [21]. Citizen Lab's John Scott-Railton said the company continues to enable authoritarian governments even as Apple threat notifications and forensic research increasingly expose the attacks [22]. The exposure side of that sentence is the operational change worth tracking: a consumer notification, twelve self-referrals and two peer-reviewing labs produced named implants on named devices within about six months.
Ranked by verification strength, evidence, and original report placement.
At least 14 Serbians have been targeted with advanced spyware since December, including a member of Parliament, a local opposition politician and student protesters, according to digital forensic researchers.
SHARE Foundation said Wednesday it found 14 people targeted in all, including one member of parliament and a local government official.
SHARE Foundation set out to confirm the targeting after 12 people contacted the organisation in August saying they had received Apple threat notifications.
Citizen Lab confirmed one of the student protesters' phones was infected with zero-click Pegasus spyware between December 2025 and January 2026.
Citizen Lab confirmed the Pegasus infection of a student activist with 'high probability', and researchers say it is the first confirmed Pegasus infection of 2026.
Amnesty International, which peer reviewed SHARE Foundation's findings, confirmed that a new form of Android spyware known as NoviSpy was used in at least two cases.
Distinct publishers with included, body-backed reporting in this cluster.
1 article · September 2, 2026
1 article · September 3, 2026
Follow any of these and your For You feed starts watching them — no settings page required.
security
Pegasus reached a Serbian student's iPhone through a hole Apple closed eight months earlier3 distinct publishers
security
Apple's spyware alerts reached 110 countries, and they land on people, not fleets4 distinct publishers
invest
Apple moved its spyware warnings to the Lock Screen. Your incident alerts are still in email.1 distinct publisher
build
The Crypto Wars Ended, And The Prize Went To Whoever Owns Your Endpoint1 distinct publisher
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
Two labs behind the findings, one report behind the coverage
Three named forensic outfits stand behind this: Citizen Lab on the iPhone, Amnesty's Security Lab peer-reviewing SHARE Foundation on the Android devices, with Apple's own notifications as the tripwire. That is about as sturdy as spyware attribution reporting gets. The limit is that CyberScoop and The Record are both reading the same SHARE report — nobody outside those three has touched the phones — and the number that should temper every headline, eleven analyses still unfinished, appears only in The Record.
Three devices confirmed, against a pattern already on file
Measured deployment is small and specific — one Pegasus infection, two NoviSpy devices — but it lands on top of a documented history rather than in a vacuum: NoviSpy used extensively in Serbia in 2024, two journalists hit with Pegasus in March 2025, and Cellebrite walking away from the customer in between. Recurrence in the same jurisdiction with the same custody trick is what makes three devices meaningful.
'Targeted' and 'infected' are doing different work
Fourteen is a targeting count; three is the compromise count, and the two travel together in the headlines without much distance between them. 'Largest documented wave to date' comes from the organisation doing the documenting, and 'first confirmed Pegasus infection of 2026' is as much a property of the calendar as of the finding. Nothing here is invented — the labs are careful and the hedges are printed — but the gap between what was proved and what a skimmer will take away is real, and CyberScoop's omission of the eleven pending cases widens it.
Campaigning labs, a denying agency, a vendor that stayed quiet
Everyone speaking here has something riding on it. SHARE Foundation and Amnesty are advocacy organisations whose case against the government is strengthened by exactly these findings; Citizen Lab's standing rests on confirmations like this one; the BIA's interest in calling it sensationalism and blaming foreign intelligence needs no explanation. NSO offered CyberScoop its standard counter-terrorism line and gave The Record nothing. And Apple, whose notifications and patch come out well in both accounts, is credited by the researchers its alerts sent the work to. The countervailing detail is that the technical findings were peer-reviewed across organisations rather than asserted by one.
Solid on what was found, thinner on who pressed the button
We would bet on the device findings: dated, lab-confirmed, peer-reviewed, and consistent across two independent newsrooms. We would bet much less on the completeness of the picture, since most of the phones have no verdict yet and the Pegasus operator is explicitly unidentified. The NoviSpy attribution is stronger than the Pegasus one, because a phone taken in custody narrows the suspect list in a way a zero-click never does.