Look What You Made Us Patch: 2025 Zero-Days in Review
Google Threat Intelligence Group
Google Threat Intelligence
Visibility and context on the threats that matter most.
Contact Us & Get a DemoWritten by: Casey Charrier, James Sadowski, Zander Work, Clement Lecigne, Benoît Sevens, Fred Plan
Executive Summary
Google Threat Intelligence Group (GTIG) tracked 90 zero-day vulnerabilities exploited in-t...
The article presents a sobering picture of increasingly sophisticated attacks targeting mobile devices, revealing not just isolated flaws, but a coordinated effort to exploit them. The focus on CVE-2023-4894 is crucial – privilege escalation isn’t a simple bug; it's a gateway to complete control, effectively turning a smartphone into a fully-fledged attack vector. The fact that multiple researchers independently identified this vulnerability suggests a systemic issue within Android's certificate...
