Landfall Spyware Exploits Zero-Day to Target Samsung Devices via WhatsApp

TL;DR Summary
A security flaw in Samsung Galaxy Android devices was exploited as a zero-day to deliver the LANDFALL spyware via WhatsApp, targeting users in the Middle East. The flaw, CVE-2025-21042, allowed remote code execution through malicious DNG images, leading to comprehensive data theft. Samsung patched the vulnerability in April 2025, but the attack highlights the ongoing threat of sophisticated exploits in the wild.
- Samsung Zero-Click Flaw Exploited to Deploy LANDFALL Android Spyware via WhatsApp The Hacker News
- LANDFALL: New Commercial-Grade Android Spyware in Exploit Chain Targeting Samsung Devices Unit 42
- ‘Landfall’ spyware abused zero-day to hack Samsung Galaxy phones TechCrunch
- Previously unknown Landfall spyware used in 0-day attacks on Samsung phones theregister.com
- Newly identified Android spyware appears to be from a commercial vendor The Record from Recorded Future News
Reading Insights
Total Reads
0
Unique Readers
0
Time Saved
2 min
vs 3 min read
Condensed
88%
539 → 62 words
Want the full story? Read the original article
Read on The Hacker News