Sep 04, 2026 · 7 min read
Pegasus Hit 14 Serbian Students and Politicians
Two kinds of spyware, two completely different ways in. One arrived silently over the network. The other needed somebody to hold the phone in their hand.
In August 2026, twelve people in Serbia opened their iPhones and found the same banner waiting: Apple had detected a mercenary spyware attack aimed at that device. They took the alerts to the SHARE Foundation, a Belgrade digital rights group with its own forensics capability. What came back on September 2 was the largest documented surveillance wave in the country's history.
Key Takeaways
- The SHARE Foundation documented at least 14 people in Serbia targeted with advanced spyware since January 2026, including student movement members, a member of parliament and a local councillor.
- Citizen Lab at the University of Toronto confirmed with high probability that a student activist's iPhone carried NSO Group's Pegasus, delivered by a zero click iMessage exploit around December 2025.
- Amnesty International's Security Lab confirmed two Android devices carrying a new version of NoviSpy, spyware that requires physical access to install.
- One NoviSpy victim's private messages were later read out on a pro government television network in Serbia.
- Twelve of the 14 cases surfaced only because Apple sent threat notifications to users in 110 countries on August 13, 2026, and 11 more phones are still being examined.
Who Was Targeted?
People organising against the government, at the moment they were most effective at it.
The victims described by European Digital Rights fall into a narrow band: the student movement driving street protests since the Novi Sad railway station canopy collapse of November 2024, plus activists and officials tied to opposition parties. Targeting clustered around the March 29 local elections and continues toward a parliamentary vote expected in October.
Student Jelena Kontić made the point the headcount hides: it was not only her privacy that was breached, but that of everyone she had ever messaged. Fourteen infected phones means fourteen address books, and every contact who assumed those chats were private.
What Is the Difference Between Pegasus and NoviSpy?
Pegasus arrives remotely, with no action from you. NoviSpy needs somebody to physically hold your phone. That distinction decides which defences are worth your time.
Pegasus, built by Israeli firm NSO Group, arrived through a zero click iMessage exploit. No link, no attachment, no mistake by the target. Citizen Lab's Bill Marczak told CyberScoop that Apple's updates have broken that exploit, which makes patching the entire defence. Your behaviour was never involved, so there is nothing about it to change.
NoviSpy is the opposite problem. Android spyware first documented in Serbia in 2024, it must be installed by hand, and Amnesty found it configured to send data to the BIA, Serbia's intelligence agency. In one 2026 case the victim's phone had been confiscated during police questioning. Donncha Ó Cearbhaill, head of Amnesty's Security Lab, said the evidence suggests infections are carried out during detention.
Most operational security advice for activists addresses the first route and ignores the second. Yet the second is the one you can plan around: it has a location, a timestamp and a witness. If your phone leaves your hands, treat it as compromised from that minute on.
How Was the Surveillance Discovered?
A push notification from Apple, not an investigation by anyone in Serbia.
On August 13, 2026, Apple sent mercenary spyware threat notifications to users in 110 countries, for the first time as Lock Screen alerts rather than email alone. We covered that notification wave and how to verify one when it landed. Twelve recipients took their phones to SHARE, whose analysis surfaced two further infections Apple had not flagged. Citizen Lab and Amnesty's Security Lab peer reviewed the results.
Run the arithmetic and the detection story gets uncomfortable. Roughly 86% of this wave, 12 of 14 cases, became known because a hardware vendor in Cupertino chose to tell people. No Serbian institution found it, and the confirmed Pegasus infection had run since December 2025. Eleven more flagged phones remain under analysis, so 14 is a floor.
From a Private Chat to Prime Time Television
Private messages from one NoviSpy victim were later read out on a Serbian television network aligned with the ruling party, as The Record reported. The pipeline runs from a phone taken during police questioning, to spyware, to a broadcast meant to discredit its owner. That is not intelligence gathering. It is opposition research with a state budget.
Ó Cearbhaill of Amnesty called it evidence that "digital surveillance is yet another element of a broader pattern of systemic repression," alongside excessive force and arbitrary arrests. This is Serbia's third documented wave since the first civil society cases in November 2023, and larger than either before it. Our earlier coverage of how Cellebrite cut off Serbian police over NoviSpy concerned an earlier incident. Vendor sanctions did not end the practice.
What Serbia's Government Says
It denies all of it, and attacks the source rather than the forensics.
The BIA called the allegations "nothing more than trivial sensationalism" and suggested those making them serve foreign intelligence interests. Parliament Speaker Ana Brnabić argued it would be idiotic for the state to use million euro software that leaves traces. Neither engages the artefacts Citizen Lab and Amnesty published, or explains a NoviSpy build configured to report to the BIA's own infrastructure. NSO Group maintains Pegasus goes only to vetted agencies for serious crime and terrorism, a line it held through the WhatsApp litigation over its 2026 campaign.
What Should You Do If Apple Sends You a Threat Notification?
Treat it as accurate, get expert help, and do not touch the evidence. Apple calls these high confidence alerts that someone was targeted individually.
- Verify through your account, never a link. Sign in at account.apple.com, where a genuine notification appears as a banner. Apple's support page says a real alert never asks you to install anything.
- Do not wipe or factory reset the phone. A reset destroys the traces a lab needs to identify what hit you. Twelve Serbians kept their devices intact, which is why a report exists at all.
- Get it to people who do this professionally. Access Now's Digital Security Helpline is free and staffed around the clock; Amnesty's Security Lab takes referrals for activists and journalists.
- Update, then turn on Lockdown Mode. Patching killed the iMessage exploit used in Serbia; Lockdown Mode blocks most attachment types and unsolicited invitations.
- Plan for the physical route too. Assume any device out of your sight at a police stop or border crossing is compromised. Carry a clean phone instead.
- Warn your contacts. Anyone who messaged you during the infection window was surveilled too, and gets no alert of their own.
Why This Reaches Past Serbia
Because the detection channel that exposed this wave does not exist for most people at risk. Pegasus on an iPhone triggered Apple alerts. NoviSpy, installed by hand on Android, triggered nothing. Google warns account holders about government backed attackers, but no vendor notifies you when an officer plugs a cable into a confiscated handset, because no server sees it happen.
That gap matters for anyone whose threat model includes a state. Full device spyware never touches communications in transit, where encryption protects them. It sits on the endpoint and reads what you read: message threads after decryption, mail in your inbox, the microphone, the camera. Signal and encrypted mail defend the network beautifully, and a phone turned into a listening post not at all. The providers themselves are under pressure from another direction entirely, as when a US terror listing wiped out 16,000 activist email accounts in 48 hours.
Europe has watched this repeat for four years without building an enforcement mechanism, from Poland and Hungary to Greece and Spain, and even to a European Parliament investigator hacked with Pegasus while investigating Pegasus. Serbia is an EU candidate. Fourteen phones, a broadcast leak and an official denial is now a recognisable sequence, and its only reliable early warning was a banner nobody asked for. Government spyware is only the expensive end of the market, too: three US lawmakers are trying to get the hack for hire firms BellTroX and Appin added to the Commerce entity list, and their tradecraft was ordinary phishing mail.