WhatsApp Flaw Exposes User Device Information

Published:

A new security vulnerability has been discovered in WhatsApp, potentially exposing users’ operating systems and device setup information. Researchers at Zengo, a cryptocurrency wallet provider, have identified a flaw in the app’s multi-device setup that could allow attackers to target specific users.

The issue stems from the way WhatsApp manages unique identity keys for each linked device. These keys vary based on the operating system, allowing attackers to fingerprint devices and identify the OS they are running.

Zengo co-founder Tal Be’ery explained that this information could be exploited by malicious actors to target users with tailored malware attacks. By analyzing the identity keys, attackers could determine the most vulnerable devices and launch targeted attacks.

Meta has been informed of the security flaw and acknowledged the researcher’s report. However, the company has not provided a timeline for addressing the issue.

While the vulnerability is not considered critical, it highlights the importance of ongoing security research and the need for WhatsApp to prioritize the protection of user data.

Read more here

Related articles

spot_img