Adaderana.Lk
WhatsApp Spyware Exploit via Phone Calls Poses Serious Threat
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
A vulnerability in WhatsApp allowed attackers to install spyware through phone calls made via the app, even if the call was not answered. This exploit, linked to a buffer-overflow vulnerability, was quickly patched by WhatsApp. The malicious code was reportedly developed by the NSO Group, known for its Pegasus spyware, which can activate device cameras and microphones. The attack primarily targets high-risk individuals such as activists and journalists, but regular users are also at risk due to the widespread nature of the vulnerability. Users are urged to update their WhatsApp applications immediately to mitigate the threat. The incident highlights the ongoing risks associated with messaging apps, which are often targeted for their sensitive data. Buffer-overflow vulnerabilities have been a concern in software development for decades, making this a significant security issue.
Key Points: • WhatsApp patched a critical buffer-overflow vulnerability that allowed spyware installation. • The exploit could compromise devices without user interaction, increasing the risk for all users. • The NSO Group's Pegasus spyware was linked to this attack, targeting high-value individuals.