By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: ‘Landfall’ spyware abused zero-day to hack Samsung Galaxy phones | News
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > News > ‘Landfall’ spyware abused zero-day to hack Samsung Galaxy phones | News
News

‘Landfall’ spyware abused zero-day to hack Samsung Galaxy phones | News

News Room
Last updated: 2025/11/07 at 8:33 AM
News Room Published 7 November 2025
Share
‘Landfall’ spyware abused zero-day to hack Samsung Galaxy phones |  News
SHARE

Security researchers have discovered an Android spyware that targeted Samsung Galaxy phones during a nearly year-long hacking campaign.

Researchers at Palo Alto Networks’ Unit 42 said the spyware, which they call “Landfall,” was first detected in July 2024 and relied on exploiting a security flaw in the Galaxy phone software that was unknown to Samsung at the time, a type of vulnerability known as a zero-day. 

Unit 42 said the flaw could be abused by sending a maliciously crafted image to a victim’s phone, likely delivered through a messaging app, and that the attacks may not have required any interaction from the victim. 

Samsung patched the security flaw — tracked as CVE-2025-21042 — in April 2025, but details of the spyware campaign abusing the flaw have not been previously reported.

The researchers said in a blog post that it’s not known which surveillance vendor developed the Landfall spyware, nor is it known how many individuals were targeted as part of the campaign. But the researchers said that the attacks likely targeted individuals in the Middle East.

Itay Cohen, a senior principal researcher at Unit 42, told News that the hacking campaign consisted of a “precision attack” on specific individuals and not a mass-distributed malware, which indicates that the attacks were likely driven by espionage.

Unit 42 found that the Landfall spyware shares overlapping digital infrastructure used by a known surveillance vendor dubbed Stealth Falcon, which has been previously seen in spyware attacks against Emirati journalists, activists, and dissidents as far back as 2012. But the researchers said that the links with Stealth Falcon, while intriguing, were not enough to clearly attribute the attacks to a particular government customer.

Unit 42 said that the Landfall spyware samples that they discovered had been uploaded to VirusTotal, a malware scanning service, from individuals in Morocco, Iran, Iraq, and Turkey throughout 2024 and early 2025.

Turkey’s national cyber readiness team, known as USOM, flagged one of the IP addresses that the Landfall spyware connected to as malicious, which Unit 42 said supports the theory that individuals in Turkey may have been targeted.

Much like other government spyware, Landfall is capable of broad device surveillance, such as accessing the victim’s data, including photos, messages, contacts and call logs, as well as the tapping of the device’s microphone and tracking their precise location.

Unit 42 found that the spyware’s source code referenced five specific Galaxy phones, including the Galaxy S22, S23, S24, and some Z models, as targets. Cohen said that the vulnerability may have also been present on other Galaxy devices, and affected Android versions 13 through 15. 

Samsung did not respond to a request for comment.

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article Scientists Have Discovered The Neuron Connection That Might Spread Alzheimer’s Disease – BGR Scientists Have Discovered The Neuron Connection That Might Spread Alzheimer’s Disease – BGR
Next Article Emerging Tech Companies Must Stop Using Decentralization As An Ideological Gimmick | HackerNoon Emerging Tech Companies Must Stop Using Decentralization As An Ideological Gimmick | HackerNoon
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Google, Microsoft, and Meta Have Stopped Publishing Workforce Diversity Data
Google, Microsoft, and Meta Have Stopped Publishing Workforce Diversity Data
Gadget
China’s Xpeng Motors unveils hybrid EV system and AI chipset · TechNode
China’s Xpeng Motors unveils hybrid EV system and AI chipset · TechNode
Computing
5 Free Android Apps That Help You Save Money Every Day – BGR
5 Free Android Apps That Help You Save Money Every Day – BGR
News
Disney’s startup accelerator is about more than accelerating startups
Disney’s startup accelerator is about more than accelerating startups
Software

You Might also Like

5 Free Android Apps That Help You Save Money Every Day – BGR
News

5 Free Android Apps That Help You Save Money Every Day – BGR

8 Min Read
This upcoming Google Play Store change could make app reviews actually useful
News

This upcoming Google Play Store change could make app reviews actually useful

4 Min Read
The MacRumors Show: AirPods Pro 3 and What’s Coming Next
News

The MacRumors Show: AirPods Pro 3 and What’s Coming Next

4 Min Read
Does the Trump phone exist yet?
News

Does the Trump phone exist yet?

3 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?