Yeah but third party tools like iMazing have the ability to check for Pegasus. All it does is look for the presence of certain files unique to Pegasus. Why can’t Apple do this too or buy such tools from iMazing? Not like they can’t afford it.
Everybody who claims Pegasus and other ATP-malware is trivial to detect has no clue what he's talking about.