Close Menu
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
What's Hot

Texas AG sues Roblox for prioritizing ‘pixel pedophiles’ over child safety

New innovation could connect quantum computers 200 times farther apart

Logic bomb hidden in malware-laden NuGet package is set to explode several years after installation

Facebook X (Twitter) Instagram
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
Facebook X (Twitter) Instagram
Fyself News
  • Home
  • Identity
  • Inventions
  • Future
  • Science
  • Startups
  • Spanish
Fyself News
Home » ‘Landfall’ spyware exploits zero-day to hack Samsung Galaxy phones
Startups

‘Landfall’ spyware exploits zero-day to hack Samsung Galaxy phones

userBy userNovember 7, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Security researchers have discovered Android spyware targeting Samsung Galaxy phones during a nearly year-long hacking campaign.

Palo Alto Networks Unit 42 researchers said the spyware, called Landfall, was first detected in July 2024 and relied on exploiting a security flaw in Galaxy phone software that Samsung didn’t know about at the time, a type of vulnerability known as a zero-day.

Unit 42 said the flaw could be exploited by sending a maliciously crafted image to a victim’s phone, possibly delivered through a messaging app, and the attack may not have required any interaction from the victim.

Samsung patched this security flaw (tracked as CVE-2025-21042) in April 2025, but details of the spyware campaign that exploited this flaw were not previously reported.

Researchers said it is unclear which surveillance vendor developed the Landfall spyware, and it is also unclear how many individuals were targeted as part of the campaign. But researchers said the attack likely targeted individuals in the Middle East.

Itay Cohen, a senior principal investigator at Unit 42, told TechCrunch that the hacking campaign consisted of “precision attacks” against specific individuals rather than mass-distributed malware, indicating the attacks were likely the result of espionage.

Unit 42 discovered that Landfall spyware shares overlapping digital infrastructure used by a known surveillance vendor called Stealth Falcon. Stealth Falcon was seen in spyware attacks against journalists, activists, and dissidents in the United Arab Emirates as far back as 2012. However, researchers said that while the Stealth Falcon connection is interesting, it is not enough to definitively attribute the attack to a specific government customer.

Unit 42 said the Landfall spyware samples it discovered were uploaded to malware scanning service VirusTotal by individuals in Morocco, Iran, Iraq and Turkey between 2024 and early 2025.

Turkey’s National Cyber ​​Preparedness Team, known as USOM, flagged one of the IP addresses that the Landfall spyware was connecting to as malicious, and Unit 42 said this supports the theory that individuals within Turkey may have been targeted.

Like other government spyware, Landfall is capable of extensive device surveillance, including accessing victim data such as photos, messages, contacts, and call logs, as well as tapping the device’s microphone and tracking its exact location.

Unit 42 discovered that the spyware’s source code references five specific Galaxy phones as targets, including the Galaxy S22, S23, S24, and some Z models. Cohen said the vulnerability existed on other Galaxy devices and may have affected Android versions 13 to 15.

Samsung did not respond to a request for comment.


Source link

#Aceleradoras #CapitalRiesgo #EcosistemaStartup #Emprendimiento #InnovaciónEmpresarial #Startups
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleThe future of digital infrastructure starts with SLICES
Next Article Logic bomb hidden in malware-laden NuGet package is set to explode several years after installation
user
  • Website

Related Posts

Texas AG sues Roblox for prioritizing ‘pixel pedophiles’ over child safety

November 7, 2025

Tesla postpones mass production announcement of Roadster 2 to April Fools’ Day

November 6, 2025

Tesla shareholders approve Elon Musk’s $1 trillion compensation package

November 6, 2025
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Texas AG sues Roblox for prioritizing ‘pixel pedophiles’ over child safety

New innovation could connect quantum computers 200 times farther apart

Logic bomb hidden in malware-laden NuGet package is set to explode several years after installation

‘Landfall’ spyware exploits zero-day to hack Samsung Galaxy phones

Trending Posts

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to Fyself News, your go-to platform for the latest in tech, startups, inventions, sustainability, and fintech! We are a passionate team of enthusiasts committed to bringing you timely, insightful, and accurate information on the most pressing developments across these industries. Whether you’re an entrepreneur, investor, or just someone curious about the future of technology and innovation, Fyself News has something for you.

Meet Your Digital Twin: Europe’s Cutting-Edge AI is Personalizing Medicine

TwinH: The AI Game-Changer for Faster, More Accessible Legal Services

Immortality is No Longer Science Fiction: TwinH’s AI Breakthrough Could Change Everything

The AI Revolution: Beyond Superintelligence – TwinH Leads the Charge in Personalized, Secure Digital Identities

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About Us
  • Advertise with Us
  • Contact Us
  • DMCA
  • Privacy Policy
  • Terms & Conditions
  • User-Submitted Posts
© 2025 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.