Samsung Galaxy phones were ‘hacked’ for 10 months, photos and more shared… | Technology News (HT Tech)

Samsung Galaxy phones were ‘hacked’ for 10 months, photos and more shared…

Published on: Nov 08, 2025 11:31 AM IST

Users with Samsung Galaxy devices running Android 13–15 are advised to ensure they have installed all April 2025 or later security updates.

Loading Suggestions...

Samsung Galaxy users were unknowingly exposed to a months-long hacking campaign that silently targeted their phones and extracted sensitive data, all without a single tap. Security researchers at Palo Alto Networks’ Unit 42 have revealed a sophisticated Android spyware operation, dubbed “Landfall,” that exploited a zero-day flaw in Samsung’s software for nearly 10 months, from July 2024 to April 2025.

Samsung eventually patched the flaw in April 2025, but until now, the scale and nature of the exploit had not been made public.
Samsung eventually patched the flaw in April 2025, but until now, the scale and nature of the exploit had not been made public.

A zero-click hack delivered through an image

According to researchers, Landfall took advantage of a previously unknown vulnerability, CVE-2025-21042, allowing attackers to hijack a device simply by sending a specially crafted image, likely via a messaging app. The victim didn’t need to click anything for the hack to work, making it a classic “zero-click” attack.

Samsung eventually patched the flaw in April 2025, but until now, the scale and nature of the exploit had not been made public.

Photos, chats, calls - everything was exposed

Once installed, the spyware could reportedly access a wide range of personal data, including:

• Photos

• Messages

• Contacts

• Call logs

• Precise location

• Device microphone for real-time audio

Researchers say the spyware targeted specific Samsung models, including Galaxy S22, S23, S24 and select Galaxy Z series devices. Android versions 13 through 15 are believed to have been affected.

Not a mass attack, a targeted espionage operation

Unit 42 emphasised that this wasn’t a widespread malware campaign but a precision attack aimed at selected individuals, likely for surveillance or intelligence gathering. Samples uploaded to VirusTotal came from Morocco, Iran, Iraq and Turkey, suggesting the campaign was focused on regions in the Middle East.

Turkey’s national cybersecurity agency even flagged one of the spyware’s servers as malicious, indicating active targeting within the country.

Unit 42 also found infrastructure overlaps with a known surveillance group called Stealth Falcon, previously linked to attacks on journalists and activists. However, the evidence was not strong enough to attribute the operation to any specific government.

Samsung yet to comment

Samsung has not issued a statement regarding the findings. Researchers also noted that it remains unclear who built the spyware and how many people were actually targeted.

Users with Galaxy devices running Android 13–15 are advised to ensure they have installed all April 2025 or later security updates. If you want, I can summarise which Samsung models should urgently check for patches.

SHARE THIS ARTICLE ON
SHARE
close
Story Saved
Live Score
Saved Articles
Following
My Reads
Sign out
Get App
crown-icon
Subscribe Now!
.affilate-product { padding: 12px 10px; border-radius: 4px; box-shadow: 0 0 6px 0 rgba(64, 64, 64, 0.16); background-color: #fff; margin: 0px 0px 20px; } .affilate-product #affilate-img { width: 110px; height: 110px; position: relative; margin: 0 auto 10px auto; box-shadow: 0px 0px 0.2px 0.5px #00000017; border-radius: 6px; } #affilate-img img { max-width: 100%; max-height: 100%; position: absolute; top: 50%; left: 50%; transform: translate(-50%, -50%); } .affilate-heading { font-size: 16px; color: #000; font-family: "Lato",sans-serif; font-weight:700; margin-bottom: 15px; } .affilate-price { font-size: 24px; color: #424242; font-family: 'Lato', sans-serif; font-weight:900; } .affilate-price del { color: #757575; font-size: 14px; font-family: 'Lato', sans-serif; font-weight:400; margin-left: 10px; text-decoration: line-through; } .affilate-rating .discountBadge { font-size: 12px; border-radius: 4px; font-family: 'Lato', sans-serif; font-weight:400; color: #ffffff; background: #fcb72b; line-height: 15px; padding: 0px 4px; display: inline-flex; align-items: center; justify-content: center; min-width: 63px; height: 24px; text-align: center; margin-left: 10px; } .affilate-rating .discountBadge span { font-family: 'Lato', sans-serif; font-weight:900; margin-left: 5px; } .affilate-discount { display: flex; justify-content: space-between; align-items: end; margin-top: 10px } .affilate-rating { font-size: 13px; font-family: 'Lato', sans-serif; font-weight:400; color: black; display: flex; align-items: center; } #affilate-rating-box { width: 48px; height: 24px; color: white; line-height: 17px; text-align: center; border-radius: 2px; background-color: #508c46; white-space: nowrap; display: inline-flex; justify-content: center; align-items: center; gap: 4px; margin-right: 5px; } #affilate-rating-box img { height: 12.5px; width: auto; } #affilate-button{ display: flex; flex-direction: column; position: relative; } #affilate-button img { width: 58px; position: absolute; bottom: 42px; right: 0; } #affilate-button button { width: 101px; height: 32px; font-size: 14px; cursor: pointer; text-transform: uppercase; background: #00b1cd; text-align: center; color: #fff; border-radius: 4px; font-family: 'Lato',sans-serif; font-weight:900; padding: 0px 16px; display: inline-block; border: 0; } @media screen and (min-width:1200px) { .affilate-product #affilate-img { margin: 0px 20px 0px 0px; } .affilate-product { display: flex; position: relative; } .affilate-info { width: calc(100% - 130px); min-width: calc(100% - 130px); display: flex; flex-direction: column; justify-content: space-between; } .affilate-heading { margin-bottom: 8px; } .affilate-rating .discountBadge { position: absolute; left: 10px; top: 12px; margin: 0; } #affilate-button{ flex-direction: row; gap:20px; align-items: center; } #affilate-button img { width: 75px; position: relative; top: 4px; } }