How Hackers Can Control Your Phone Without You Clicking on a Link

5Mind. The Meme Platform

Zero-click attacks have evolved from being used to primarily target high-profile people for information to becoming a threat to anyone with a smart device.

In 2025, most people are inseparable from their laptops and smartphones. With that familiarity has come a wariness of the dangers of clicking on unsolicited emails, SMS, or WhatsApp messages.

But there is a new and growing menace called zero-click attacks, which have previously targeted only VIPs or the very wealthy because of their cost and sophistication.

A zero-click attack is a cyberattack that hacks a device without the user clicking anything. It can happen just by receiving a message, call, or file. The attacker uses hidden flaws in apps or systems to take control of the device, with no action needed from the user and the user remains unaware of the attack.

“Although public awareness has increased recently, these attacks have steadily evolved over many years, becoming more frequent as smartphones and connected devices proliferated,” Nathan House, CEO of StationX, a UK-based cybersecurity training platform, told The Epoch Times.

“The key vulnerability is in the software, rather than the type of device, meaning any connected device with exploitable weaknesses could potentially be targeted,” he said.

Aras Nazarovas, an information security researcher at Cybernews, told The Epoch Times why zero-click attacks usually target VIPs, rather than ordinary individuals.

“Since finding such zero-click exploits is difficult and expensive, most of the time such exploits are used to gain access to information from key figures, such as politicians or journalists in authoritarian regimes,” he said.

“They are often used in targeted campaigns. Using such exploits to steal money is rare.”

In June 2024, the BBC reported that social media platform TikTok had admitted that a “very limited” number of accounts, including those of media outlet CNN, had been compromised.

While ByteDance, the owner of TikTok, did not confirm the nature of the hack, cybersecurity companies such as Kaspersky and Assured Intelligence suggested it stemmed from a zero-click exploit.

“The part that requires high levels of sophistication is finding bugs that allow such attacks and writing exploits for these bugs,” Nazarovas said.

“It has been a billion-dollar market for years, selling zero-click exploits and exploit chains. Some gray/dark market exploit brokers often offer $500,000 to $1 million for such exploit chains for popular devices and apps.”

Nazarovas added that while ordinary users have been hit in the past by zero-click ‘drive-by’ attacks. These are attacks that emerge after the unintentional installation of malicious software onto a device, often without the user even realizing it. They have become more infrequent with the growing gray market for such exploits.

House said zero-click exploits often seek out vulnerabilities in software and apps that are expensive to discover, which means the perpetrators are usually “nation-state actors or highly-funded groups.”

By Chris Summers

Read Full Article on TheEpochTimes.com

Contact Your Elected Officials
The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.
00:02:04

Forged on the frontier

George Washington is widely known as a general and president, but his early life remains obscured by myth, legend, and misunderstanding.
00:02:52

A bobblehead too far

The Orioles did not just hand out a bobblehead. They sent a message that the legacy of their own players is not enough to draw.

Congress fumbles college sports

College sports landscape is a dumpster fire and every sports reporter, broadcaster and fan believes Congress needs to stay out of it.

The Hating Game

The Democrat Party game show should be titled "The Hating Game", played by pitting one class, race, or identity against another for political power.
00:09:50

The Invasion Of The Ballot Snatchers

As election results loom, California faces ballot controversies in a real-life political drama that raises concerns about election integrity.
00:04:41

US Energy Secretary Forecasts Oil, Gas Prices to Drop as Strait Traffic ‘Back to Normal’

U.S. Secretary of Energy Chris Wright said on June 21 that commercial shipping traffic through the Strait of Hormuz is “back to normal”.

FBI, DOJ Announce Arrest of Most Wanted Fraudster Herbert Leon Kimble

One of the FBI’s Most Wanted Fraudsters, Herbert Leon Kimble, who is accused of a $1.2 billion Medicare fraud, was captured in the Philippines on June 11.
00:03:31

California Declares State of Emergency Over Los Angeles Warehouse Fire, Smoke

California Gov. Gavin Newsom declared an emergency as a massive Los Angeles warehouse fire burns for a fourth day, prompting aid.
00:02:06

13th Consecutive Month of Zero Releases at Southern Border: CBP

Border Patrol released zero illegal immigrants into the United States at the southwest border for the 13th straight month in May.

Banning Hospitals’ Certain Contracts Could Save Americans $45 Billion, Report Finds

A ban on certain contracts between hospital systems and health insurers could save Americans around $45 billion, according to a report.
00:01:33

Trump Unveils New Air Force One Plane

President Trump unveiled the plane that will serve as the new Air Force One, a Boeing 747-8 luxury jet that was gifted to the US by the Qatari government in 2025.
00:01:27

Trump Threatens 100 Percent Tariff on French Wines Over Digital Services Tax

Trump threatened to impose a 100% tariff on French wines and champagne unless France eliminates its digital services tax on large American tech companies.

Trump Heads to G7 Summit in France: Here’s What to Expect

U.S. President Donald Trump is en route to France on June 15 to attend the annual G7 summit, just hours after announcing a deal with Iran.
spot_img

Related Articles

Popular Categories

MAGA Business Central