April 10, 2026 09:52 pm (IST)
Follow us:
facebook-white sharing button
twitter-white sharing button
instagram-white sharing button
youtube-white sharing button
Amit Shah promises UCC, ₹3,000 aid per month for women and youth in BJP’s Bengal manifesto | Nitish Kumar takes Rajya Sabha oath; power shift looms in Bihar | Sting video fallout: AIMIM snaps electoral ties with Humayun Kabir in Bengal | Israel says Hezbollah chief’s nephew-cum-secretary killed in Beirut strikes last night | Modi slams TMC on trade, fisheries at Haldia; vows 7th pay commission for govt employees | ‘US military will remain in and around Iran’: Trump amid fragile ceasefire | BJP eyes Assam hattrick, Puducherry comeback; LDF faces Kerala test | Israel claims Hezbollah chief's nephew killed in Beirut strikes last night | Jaishankar’s high-stakes diplomatic tour: EAM to visit UAE this week, first visit amid Middle East conflict | Passport row: Barricades outside Pawan Khera’s Hyderabad house after Himanta Biswa Sarma's warning
Samsung
A representative image of a Samsung phone. Photo: Unsplash

New spyware attack! Samsung Galaxy phones hit through WhatsApp images

| @indiablooms | Nov 11, 2025, at 05:06 pm

A newly identified spyware targeting Samsung Galaxy smartphones has been discovered by Palo Alto Networks’ Unit 42 researchers.

The malware, named LANDFALL, was found to be exploiting a zero-day vulnerability in Samsung’s Android image processing library.

According to Unit 42, attackers used the flaw — tracked as CVE-2025-21042 — to embed the spyware within malicious DNG image files, which were allegedly delivered via WhatsApp. Opening the infected image allowed the malware to execute on the device.

The research team noted that the vulnerability was actively exploited in the wild before Samsung released a security patch in April 2025. Details on the full capabilities of LANDFALL and the exploit toolkit used have not yet been made public.

Cybersecurity experts have advised Samsung Galaxy users to ensure their devices are updated with the latest firmware and security patches to reduce exposure to the threat.

Support Our Journalism

We cannot do without you.. your contribution supports unbiased journalism

IBNS is not driven by any ism- not wokeism, not racism, not skewed secularism, not hyper right-wing or left liberal ideals, nor by any hardline religious beliefs or hyper nationalism. We want to serve you good old objective news, as they are. We do not judge or preach. We let people decide for themselves. We only try to present factual and well-sourced news.

Support objective journalism for a small contribution.