CISA Adds Zero-Day Bug Used in Spyware Attacks to KEV

US federal agencies have been told to patch a zero-day vulnerability used by threat actors since last year to deploy spyware to Samsung devices.

The out-of-bounds write flaw CVE-2025-21042 has a CVSS score of 9.8 and was patched by Samsung in…

Continue Reading