Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Samsung Patches Zero-Day Exploited Against Android Users

Samsung Patches Zero-Day Exploited Against Android Users

Posted on September 15, 2025September 15, 2025 By CWS

Samsung’s September 2025 safety updates for Android units embody a patch for a vulnerability that has been exploited within the wild.

The exploited bug, tracked as CVE-2025-21043 (CVSS rating of 8.8), is described as an out-of-bounds write difficulty within the libimagecodec.quram.so picture parsing library, which is utilized by purposes that course of pictures on Samsung units.

In keeping with Samsung, profitable exploitation of the safety defect permits distant attackers to execute arbitrary code on weak units.

“Samsung was notified that an exploit for this difficulty has existed within the wild,” the cell phone maker notes in its advisory.

The corporate has not shared particulars on the flaw, nor on the noticed exploitation, however credited the Meta and WhatsApp safety groups for reporting it on August 13.

The timing of the report and the truth that the Samsung zero-day was in a core picture library means that CVE-2025-21043 may need been exploited in assaults concentrating on WhatsApp customers, simply as was CVE-2025-43300, an out-of-bounds write difficulty within the ImageIO framework part of iOS, iPadOS, and macOS.

The Apple bug, WhatsApp mentioned two weeks in the past, was seemingly chained with a WhatsApp vulnerability tracked as CVE-2025-55177 in “a classy assault towards particular focused customers”.

The Meta-owned communication platform mentioned on the time it had notified lower than 200 customers of potential assaults concentrating on their units.Commercial. Scroll to proceed studying.

WhatsApp’s late August advisory made no point out of CVE-2025-55177 being exploited towards Android customers, though Amnesty Worldwide’s Donncha Ó Cearbhaill mentioned that each iPhone and Android customers had been impacted. The assaults had been attributed to spy ware distributors. 

“Early indications are that the WhatsApp assault is impacting each iPhone and Android customers, civil society people amongst them. Authorities spy ware continues to pose a risk to journalists and human rights defenders,” Ó Cearbhaill mentioned.

SecurityWeek has emailed each Samsung and WhatsApp for clarification and can replace this text if the 2 firms reply.

Associated: Hackers Exploit Sitecore Zero-Day for Malware Supply

Associated: Two Exploited Vulnerabilities Patched in Android

Associated: Sangoma Patches Vital Zero-Day Exploited to Hack FreePBX Servers

Associated: Citrix Patches Exploited NetScaler Zero-Day

Security Week News Tags:Android, Exploited, Patches, Samsung, Users, ZeroDay

Post navigation

Previous Post: Top 10 Best Ransomware Protection Solutions In 2025
Next Post: DarkCloud Stealer Attacking Financial Companies With Weaponized RAR Attachments

Related Posts

In Other News: PQC Adoption, New Android Spyware, FEMA Data Breach In Other News: PQC Adoption, New Android Spyware, FEMA Data Breach Security Week News
Militant Groups Are Experimenting With AI, and the Risks Are Expected to Grow Militant Groups Are Experimenting With AI, and the Risks Are Expected to Grow Security Week News
Vibe Coding Tested: AI Agents Nail SQLi but Fail Miserably on Security Controls Vibe Coding Tested: AI Agents Nail SQLi but Fail Miserably on Security Controls Security Week News
Intel Employee Data Exposed by Vulnerabilities Intel Employee Data Exposed by Vulnerabilities Security Week News
GhostPoster Firefox Extensions Hide Malware in Icons GhostPoster Firefox Extensions Hide Malware in Icons Security Week News
Verisoul Raises .8 Million for Fraud Prevention Verisoul Raises $8.8 Million for Fraud Prevention Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Critical F5 BIG-IP Vulnerability Now Actively Exploited
  • China-Linked Cyber Threats Target Southeast Asian Government
  • AI-Powered VoidLink Malware Framework Poses New Cyber Threat
  • Top Log Monitoring Tools to Watch in 2026
  • Top Spam Filter Tools for 2026: A Comprehensive Guide

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Critical F5 BIG-IP Vulnerability Now Actively Exploited
  • China-Linked Cyber Threats Target Southeast Asian Government
  • AI-Powered VoidLink Malware Framework Poses New Cyber Threat
  • Top Log Monitoring Tools to Watch in 2026
  • Top Spam Filter Tools for 2026: A Comprehensive Guide

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark