Bleepingcomputer
WhatsApp Account Hijacking Exploits Device Linking Feature
First seen 17 Dec 2025, 20:55 UTC
•

•55.9
Export
Article Content
Browse articles
Threat actors are exploiting WhatsApp's device-linking feature to hijack accounts through a campaign named GhostPairing. This attack method does not require authentication, as victims are deceived into linking the attackers' browser to their WhatsApp account. The campaign was initially identified in Czechia but is capable of spreading to other regions.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
WhatsApp Accounts Targeted by Evolving Hijacking Scams
WhatsApp Accounts Compromised via Social Engineering and Malware
Ghostpairing: New WhatsApp Hijacking Threat via Social Engineering
Phishing Attacks via Signal Targeting German Officials and Journalists
CERT-In Alerts on WhatsApp 'GhostPairing' Vulnerability