This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Pegasus (NSO) - will Intercept X Endpoint 9.6.3434 for Android 8.0.0 detect this spyware?

Subject line pretty much says it all and is my primary concern / question.

I searched 'Pegasus' here in the Community and only found this: What to do with a Pegasus type spyware application infection?

I had a look at the MVT ... that is an option I suppose, but the use of that tool is not all that (layperson) end-user friendly, and, if I'm not mistaken, essentially has the user upload a complete phone backup to an external server - not something I would ever normally consider.

On my Samsung GALAXY S7 edge smartphone, I tried updating Intercept X Endpoint 9.6 to v9.7 via Google Play (which I have otherwise configured globally to not Auto-update apps) but am (still) only at v9.6.3434 .

Please advise if Sophos Intercept X Endpoint for Android will detect (and quarantine / remove) NSO's Pegasus spyware.

Thanks, K Mc



This thread was automatically locked due to age.
Parents
  • Hi,

    As per checking with our lab's team, Detections are in place for Andr/Pegasus-A and Andr/Pegasus-B were released back in 2017, which detect versions of Pegasus that were disclosed. The IoCs released by Amnesty don’t include any Android apps. We’re constantly monitoring our usual sources for any Android-related Pegasus samples and IOCs.

    Glenn ArchieSeñas (GlennSen)
    Global Community Support Engineer

    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Reply
  • Hi,

    As per checking with our lab's team, Detections are in place for Andr/Pegasus-A and Andr/Pegasus-B were released back in 2017, which detect versions of Pegasus that were disclosed. The IoCs released by Amnesty don’t include any Android apps. We’re constantly monitoring our usual sources for any Android-related Pegasus samples and IOCs.

    Glenn ArchieSeñas (GlennSen)
    Global Community Support Engineer

    The New Home of Sophos Support Videos!  Visit Sophos Techvids
Children