So, the ICE/Paragon zero click attack can be sent via sms to any phone. No need to open it, just having it arrive on the device is all it takes. Correct? How long before it's leaked into the wild if it's not already?
I'd like to turn off sms entirely but what about companies that use that for 2FA? For example, PayPal requires you have their invasive app installed or that you use sms for 2FA.
Seems like a gaping security risk or am I missing something?