13.1 C
Delhi
Saturday, January 17, 2026

Samsung Galaxy Spyware Attack via WhatsApp Images Exposed

Key Takeaways

  • A spyware campaign exploited a Samsung software flaw via weaponized DNG images sent through WhatsApp.
  • The “Landfall” spyware could infect devices without user interaction (zero-click attack).
  • Affected models include Galaxy S22, S23, S24, Z Fold 4, and Z Flip 4.
  • Samsung patched the vulnerability in April 2025 after months of exposure.

A sophisticated spyware campaign has been targeting Samsung Galaxy smartphones through a critical vulnerability in the device’s image-processing software. The attack, which required no user interaction beyond receiving a message, allowed hackers to install commercial-grade spyware simply by sending a weaponized image file.

What is the Landfall Spyware?

Security researchers from Palo Alto Networks’ Unit 42 uncovered a spyware operation that remained active for nearly a year. The campaign exploited a flaw in Samsung’s software to infiltrate phones without requiring victims to click any links or install suspicious apps.

The hackers used a commercial spyware called “Landfall,” which they concealed within seemingly harmless photos distributed through popular messaging applications like WhatsApp.

How the Attack Works

The vulnerability, tracked as CVE-2025-21042, existed in Samsung’s image-processing library. Attackers weaponized Digital Negative (DNG) image files, disguising them as ordinary JPEGs, and delivered them through messaging platforms.

This constituted a “zero-click” attack where simply receiving the image could silently compromise the device. Users wouldn’t need to download, open, or interact with the file for the infection to occur.

Spyware Capabilities and Targets

Once installed, Landfall functioned as a comprehensive surveillance tool capable of:

  • Monitoring all phone calls and recording conversations
  • Accessing photos, messages, and contact lists
  • Tracking the user’s location in real-time
  • Scouring through personal data and communications

The primary targets included users of Galaxy S22, S23, S24, Z Fold 4, and Z Flip 4 models across several Middle Eastern countries, particularly Turkey, Iran, Iraq, and Morocco.

Timeline of the Vulnerability

Researchers first detected the spyware campaign in mid-2024, though it had been operating undetected for months prior. Samsung was notified about the security issue in September 2024 but didn’t release a patch until April 2025.

This nearly seven-month gap left numerous devices vulnerable to silent surveillance despite the company’s awareness of the threat.

Protection and Recommendations

Samsung users who have installed the April 2025 security update are now protected against this specific vulnerability. However, the Landfall incident serves as a stark reminder about the evolving nature of mobile threats.

Security experts recommend:

  • Avoid downloading media files from unknown contacts on messaging apps
  • Regularly install the latest security patch updates
  • Be cautious of any unsolicited images, even from known contacts
  • Enable automatic security updates when available

Latest

Elon Musk Shares OpenAI President’s Files, Alleges Fraud Conspiracy

Elon Musk releases internal OpenAI documents, accusing leadership of a 'conspiracy to commit fraud' in an escalating legal and public feud.

Japan Investigates Elon Musk’s Grok AI, Warns Social Media Firms

Japan launches probe into Grok AI's data and content practices, issuing a compliance warning to all social media companies in a major regulatory move.

iQOO Z11 Turbo Launched With 7,600mAh Battery & Snapdragon 8s Gen 3

iQOO Z11 Turbo debuts with a massive battery, 100W charging, and flagship Snapdragon 8s Gen 3 chip. Check price, specs, and launch details.

Microsoft Cuts Staff Library, 1,500 Azure Jobs in AI Push

Microsoft replaces employee library access with AI experiences and cuts 1,500 Azure jobs as part of a restructuring focused on cloud and artificial intelligence.

Grimes Sues Elon Musk’s xAI Over Grok Deepfakes, Says She Lives in Fear

Musician Grimes files lawsuit against Elon Musk's AI company, alleging its Grok chatbot created explicit deepfakes, sparking a major legal battle over AI abuse.

Topics

Elon Musk Shares OpenAI President’s Files, Alleges Fraud Conspiracy

Elon Musk releases internal OpenAI documents, accusing leadership of a 'conspiracy to commit fraud' in an escalating legal and public feud.

Japan Investigates Elon Musk’s Grok AI, Warns Social Media Firms

Japan launches probe into Grok AI's data and content practices, issuing a compliance warning to all social media companies in a major regulatory move.

Trump Threatened Denmark with Tariffs Over Greenland Purchase Bid

Donald Trump reveals he considered tariffs and reduced protection to pressure Denmark into selling strategic Greenland, citing Russian and Chinese threats.

Putin Warns of ‘Catastrophic’ War in Calls with Israel, Iran Leaders

Russian President urges Netanyahu and Pezeshkian to de-escalate tensions, warning further conflict could lead to catastrophic violence across the Middle East.

RIL Q3 Profit Rises 11% to ₹19,641 Crore, Beats Estimates

Reliance Industries posts strong Q3 results with profit up 10.9%, EBITDA growth of 16.7%, and robust performance across all business segments.

Budget 2026: Education Sector Demands Focus on Skills and Jobs

Industry and academia seek higher funding for skill development, NEP implementation, and tax incentives in the upcoming Union Budget to boost employability.

Mumbai Voter Turnout Hits 32-Year High in Lok Sabha Elections

Mumbai recorded 55.38% voter turnout in 2024 Lok Sabha polls, its second-highest in 32 years. Analysis reveals what drove the surge and what it means for the city's civic engagement.

Indian Scientists Uncover Cell’s Life-or-Death Decision Mechanism

Breakthrough research reveals how cells choose survival or self-destruction under stress, opening new paths to treat cancer, heart attacks, and Alzheimer's.
spot_img

Related Articles

Popular Categories

spot_imgspot_img