January 27, 2026 01:44 pm (IST)
Follow us:
facebook-white sharing button
twitter-white sharing button
instagram-white sharing button
youtube-white sharing button
India, EU sign historic trade deal | ‘Dear Indian Friends’: Macron’s Republic Day message to India melts hearts | ‘Dhurandhar’ actor Nadeem Khan arrested in rape case; housemaid alleges abuse on marriage promise | Non-Hindus may no longer be allowed in Badrinath and Kedarnath — temple committee confirms | ‘No less than a concert’: PM Modi lauds India’s new bhajan club culture among Gen Z | Constitution ‘sacrosanct’ to PM Modi: Shashi Tharoor’s statement sets political chatter ablaze | A little piece of Greenland': Elon Musk takes a dig at Trump's Board of Peace at Davos | Over 5,000 killed during massive crackdown launched on Iranian protesters: Human rights body | 'Insult' in Kochi, silence in Delhi: Shashi Tharoor likely to skip key Congress meeting as party tensions surface | Outrage in America: ICE detains 5-year-old after he comes home from preschool
Samsung
A representative image of a Samsung phone. Photo: Unsplash

New spyware attack! Samsung Galaxy phones hit through WhatsApp images

| @indiablooms | Nov 11, 2025, at 05:06 pm

A newly identified spyware targeting Samsung Galaxy smartphones has been discovered by Palo Alto Networks’ Unit 42 researchers.

The malware, named LANDFALL, was found to be exploiting a zero-day vulnerability in Samsung’s Android image processing library.

According to Unit 42, attackers used the flaw — tracked as CVE-2025-21042 — to embed the spyware within malicious DNG image files, which were allegedly delivered via WhatsApp. Opening the infected image allowed the malware to execute on the device.

The research team noted that the vulnerability was actively exploited in the wild before Samsung released a security patch in April 2025. Details on the full capabilities of LANDFALL and the exploit toolkit used have not yet been made public.

Cybersecurity experts have advised Samsung Galaxy users to ensure their devices are updated with the latest firmware and security patches to reduce exposure to the threat.

Support Our Journalism

We cannot do without you.. your contribution supports unbiased journalism

IBNS is not driven by any ism- not wokeism, not racism, not skewed secularism, not hyper right-wing or left liberal ideals, nor by any hardline religious beliefs or hyper nationalism. We want to serve you good old objective news, as they are. We do not judge or preach. We let people decide for themselves. We only try to present factual and well-sourced news.

Support objective journalism for a small contribution.