logo

WhatsApp patched zero-click flaw exploited in Paragon spyware attacks

ID: f31aab62-8ab8-5979-9a58-af252c7860a7

STIX ID: report--f31aab62-8ab8-5979-9a58-af252c7860a7

Feed Name: Bleeping Computer

Threat Score
88/100

Date Published: 2025-03-19

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

WhatsApp patched a zero-click zero-day exploit that operators used to deliver Paragon Solutions' Graphite spyware to targets including journalists and activists; Citizen Lab analysis identified a forensic artifact (BIGPRETZEL), mapped a broad C2 infrastructure with 150 certificates and multiple IPs, and found potential links to government customers across several countries, while WhatsApp notified ~90 affected Android users.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.