CERT-In Alerts on WhatsApp 'GhostPairing' Vulnerability

CERT-In Alerts on WhatsApp 'GhostPairing' Vulnerability

First seen 21 Dec 2025, 03:02 UTC DeccanchronicleHindustantimesDeccanheraldTechnologyreseller.Uk 26.6

Article Content

Browse articles
ThreatCluster

The Indian cyber security agency CERT-In has identified a vulnerability in WhatsApp's device-linking feature, termed 'GhostPairing'. This flaw allows attackers to gain complete control over user accounts, including access to messages, photos, and videos on the web version of WhatsApp. Malicious actors are reportedly exploiting this vulnerability using pairing codes without authentication.

Ask AI about this cluster