ForcedEntry is a high-profile exploit family historically tied to zero-click remote code execution, notably used to compromise iOS devices in targeted surveillance campaigns.
Overview
ForcedEntry is a high-profile exploit family historically tied to zero-click remote code execution, notably used to compromise iOS devices in targeted surveillance campaigns. The article reference suggests a look at an Android variant (ITW DNG exploit), indicating potential cross-platform evolution of the ForcedEntry lineage and underscoring ongoing risks to Android devices alongside the well-known iOS threat.
Related Threat Clusters
-
Android DNG Exploit Targets Samsung Devices
Between July 2024 and February 2025, six suspicious DNG image files were uploaded to VirusTotal, targeting the Quram library used in Samsung devices. The investigation was initiated by a lead from Meta and conducted by…
1 article · Updated December 12, 2025 -
Canis C2 Surveillance Framework Targets Japan with Phishing Campaign
A previously undocumented surveillance framework, Canis C2, has been identified targeting Japan. The investigation began when researchers discovered a phishing Android application masquerading as Paidy, a…
2 articles · Updated April 13, 2026 -
Congresswoman Lee Presses for Answers on NSO Group's Ties to Trump Administration
On May 7, 2026, Rep. Summer Lee demanded a briefing from the Commerce Department regarding the Trump Administration's connections to NSO Group, an Israeli spyware firm blacklisted by the U.S. government. The company,…
2 articles · Updated May 7, 2026
Recent Intelligence Reports
- Nso Groups Pegasus Spyware Returns In 2022 — citizenlab.ca · May 7, 2026
- Canis C2 Surveillance Framework Exposed API Discovered Targeting Japan — Technadu · April 13, 2026
- A look at an Android ITW DNG exploit — Blogger · December 12, 2025