In the last decade, spyware tools have been repeatedly found on the phones of journalists, activists, and politicians, including US officials, raising concerns over the unprecedented proliferation of spyware technologies and, subsequently, the lack of protections within the tech space amid growing threats. Also: Google releases responsible AI report while removing its anti-weapons pledge Last Friday, Meta's WhatsApp revealed that it had discovered a hacking campaign targeting about 90 users, mostly journalists and civil society members across two dozen countries. According to a WhatsApp spokesperson, the Israeli spyware company Paragon Solutions -- now acquired by Florida-based private equity firm AE Industrial Partners -- was behind the attack. Graphite, Paragon's spyware, was found to have infiltrated WhatsApp groups by simply sending users a malicious PDF attachment. Without users' knowledge, it can access and read messages on encrypted applications like WhatsApp and Signal. This is also known as a zero-click attack, which means that targets do not have to take any actions for their devices to become compromised. In contrast, phishing or one-click attacks require user interaction with a malicious link or attachment. Once a phone is infected with a zero-click capability, the operator of the attack can secretly gain total access to the phone by exploiting a security vulnerability. Also: How to turn on Private DNS Mode on Android - and why it's a must for security In an inter...
Why rebooting your phone daily is your best defense against zero-click hackers
ZDNet
·Matene Toure
·Published Feb 6, 2025
·Updated
Affected Software
4 affected components
Meta WhatsApp
Signal Foundation Signal
Meta WhatsApp
Paragon Solutions Graphite
Frequently Asked Questions
1
What is the main topic of this article?
The article discusses the importance of daily phone reboots as a defense mechanism against zero-click hacking attempts.
2
What security implications are discussed?
It highlights how zero-click vulnerabilities can compromise devices without any user interaction, making rebooting a crucial preventative measure.
3
What products or software are affected?
The article mentions that apps like Meta's WhatsApp and Signal are potential targets for zero-click exploits.
4
Why is rebooting the phone considered effective against hacking?
Rebooting the phone can disrupt persistent spyware and malicious processes that may be running in the background.
5
Who is primarily at risk of these zero-click attacks?
Journalists, activists, and political figures are among those most threatened by zero-click spyware technologies.