Known zero-click exploits worldwide 2025
In February 2025, the Israeli spyware Paragon was found to be behind the zero-click exploits of WhatsApp spyware campaign. The attack campaign targeted around 90 journalists. Earlier, in 2023, an investigation was published indicating the infection of iPhone iOS (16.6) devices with Pegasus spyware. The report refers to the exploit chain as BLASTPASS. This, by far, is the latest known zero-click exploit. In 2021, it was reported about another case of a zero-click malware spread.
Furthermore, in 2016, some Apple users were targeted by a tool called Karma, which also had a zero-click nature. In 2019, approximately 1400 users of WhatsApp Messenger were targeted by a zero-click exploit that infected their devices with Pegasus spyware.