Hackers Exploit Galaxy S25 0-Day to Turn On Camera and Track Users
A zero-day vulnerability in Samsung's Galaxy S25 smartphone was successfully exploited at Pwn2Own Ireland 2025. This vulnerability allowed attackers to activate the device's camera and track a user's location without detection.
A zero-day vulnerability in Samsung's Galaxy S25 smartphone was successfully exploited at Pwn2Own Ireland 2025. This vulnerability allowed attackers to activate the device's camera and track a user's location without detection.
The vulnerability was due to improper input validation in the Galaxy S25's software. Researchers from Interrupt Labs demonstrated how this could be exploited to bypass security measures and gain remote control over the device, requiring no user interaction. This could lead to unauthorized access to the camera, location tracking, and potentially other sensitive information.
The exploit highlighted a gap in security testing, as it remained undisclosed before the event. It underscores the challenges manufacturers face in securing complex devices, making even flagship phones targets for sophisticated attacks.
A zero-day vulnerability in Samsung's Galaxy S25 smartphone was successfully exploited at Pwn2Own Ireland 2025.
The exploit earned the researchers $50,000 and recognition at Pwn2Own Ireland 2025. The event, organized by the Zero Day Initiative, awarded $2 million across 73 zero-day vulnerabilities, emphasizing its role in global cybersecurity by promoting responsible disclosure.
Samsung has not yet issued a public statement regarding the Galaxy S25 exploit. Based on past responses to similar vulnerabilities, it is expected that a security update will be released soon. The responsible disclosure process ensures that Samsung receives the necessary technical details to develop and test patches.
Galaxy S25 users are advised to enable automatic updates and monitor Samsung's security channels for updates. Keeping devices patched is crucial to protect against zero-day vulnerabilities. Until a patch is released, users should remain cautious about their device's behavior and permissions.
Based on reporting by GBHackers.
