WeWorm: Zero-Click Worm Exploits WeChat Calls

WeWorm: Zero-Click Worm Exploits WeChat Calls

First seen 8 Sep 2026, 14:12 UTC ThehackernewsCybersecuritynewscalif.io 57.8

Article Content

Browse articles
ThreatCluster

Calif has developed WeWorm, a zero-click worm that spreads through WeChat voice calls on iOS and Android devices. This exploit allows an attacker to take over a victim's WeChat account simply by calling them, without requiring any interaction from the victim. The attacker must be on the victim's WeChat contact list, but once one account is compromised, the worm can spread rapidly. Calif reported the vulnerability to Tencent in July 2026, and Tencent has since mitigated the exploit for all users. No active attacks exploiting this vulnerability have been reported. The potential impact is significant, with WeChat having over 1.4 billion users. The worm demonstrates how AI can facilitate the creation of sophisticated attacks quickly. Users are advised to ensure they are running the latest version of WeChat to mitigate risks.

Key Points: • WeWorm can compromise WeChat accounts via zero-click calls. • The exploit requires the attacker to be a contact of the victim. • Tencent has mitigated the vulnerability, but no active attacks have been reported.

Ask AI about this cluster

Timeline

2024-11-20
CVE-2024-10382 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-01
Vulnerability reported to Tencent
Calif reported the WeChat exploit to Tencent, prompting a response to mitigate the issue.
Thehackernews
2026-08-21
Tencent releases updates
Tencent released versions 8.0.77 for Android and 8.0.76 for iOS to address the exploit.
Thehackernews
2026-08-28
Exploit confirmed blocked
Calif confirmed that Tencent's servers have blocked the exploit for all users.
Thehackernews
2026-09-08
WeWorm demo released
Calif released a demo of WeWorm, showcasing its ability to spread through WeChat calls.
calif.io