"A buffer overflow occurs when a programming error allows more data to be written to a given area of memory than can actually be stored there," Rik Ferguson, the vice president of security research at the security-software firm Trend Micro, told Business Insider via email."The extra data flows into adjacent storage, corrupting or overwriting the data previously held there, and can cause crashes, corruptions, or serve as an entry point for further intrusions.
In the case of the WhatsApp attack, intruders exploited the buffer overflow bug through the app's phone call function to inject spyware onto smartphones unknowingly, the Financial Times reported. The exploit would work even if the victim did not answer the call, the report said. To understand how this is possible, it helps to know how WhatsApp's calling functionality works. Like many popular messaging apps, WhatsApp employs a widely used technology known as Voice over Internet Protocol , which allows users to make and receive phone calls over the internet rather than through a standard telephone line.
When you receive a phone call through WhatsApp, the app sets up the VoIP transaction and the encryption that goes along with it, Ferguson said. It then notifies the user of the incoming call and prepares to either accept, decline, or ignore the call based on the user's input."It is my understanding that the buffer overflow exploit occurs during this phase, which is why the recipient does not need to answer the call to be successfully compromised," Ferguson said.
South Africa Latest News, South Africa Headlines
Similar News:You can also read news stories similar to this one that we have collected from other news sources.
Source: News24 - 🏆 4. / 80 Read more »
Source: IOL - 🏆 46. / 51 Read more »
Source: TheCitizen_News - 🏆 6. / 75 Read more »
WhatsApp urges users to upgrade app after report of spyware attackWhatsApp 'encourages people to upgrade to the latest version of our app, as well as keep their mobile operating system up to date, to protect against potential targeted exploits designed to compromise information stored on mobile devices.' MpumiLembz
Source: TimesLIVE - 🏆 28. / 59 Read more »
WhatsApp urges users to upgrade app after report of spyware attackFacebook's WhatsApp on Tuesday urged users to upgrade to the latest version of its popular messaging app following a report that users could be vulnerable to having malicious spyware installed on phones without their knowledge.
Source: SowetanLIVE - 🏆 13. / 63 Read more »
Source: eNCA - 🏆 49. / 51 Read more »
Source: BDliveSA - 🏆 12. / 63 Read more »
Source: TheCitizen_News - 🏆 6. / 75 Read more »
Satanic murder accused: ‘I am very sorry’The youngest accused in the Krugersdorp murder trial addresses the family of those she had help to kill
Source: SundayTimesZA - 🏆 47. / 51 Read more »
Source: IOL - 🏆 46. / 51 Read more »
Source: TheCitizen_News - 🏆 6. / 75 Read more »