This is how attackers were able to spread spyware through WhatsApp with just a phone call

  • 📰 News24
  • ⏱ Reading Time:
  • 56 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 26%
  • Publisher: 80%

South Africa Headlines News

South Africa Latest News,South Africa Headlines

This is how attackers were able to spread spyware through WhatsApp with just a phone call | BISouthAfrica

"A buffer overflow occurs when a programming error allows more data to be written to a given area of memory than can actually be stored there," Rik Ferguson, the vice president of security research at the security-software firm Trend Micro, told Business Insider via email."The extra data flows into adjacent storage, corrupting or overwriting the data previously held there, and can cause crashes, corruptions, or serve as an entry point for further intrusions.

In the case of the WhatsApp attack, intruders exploited the buffer overflow bug through the app's phone call function to inject spyware onto smartphones unknowingly, the Financial Times reported. The exploit would work even if the victim did not answer the call, the report said. To understand how this is possible, it helps to know how WhatsApp's calling functionality works. Like many popular messaging apps, WhatsApp employs a widely used technology known as Voice over Internet Protocol , which allows users to make and receive phone calls over the internet rather than through a standard telephone line.

When you receive a phone call through WhatsApp, the app sets up the VoIP transaction and the encryption that goes along with it, Ferguson said. It then notifies the user of the incoming call and prepares to either accept, decline, or ignore the call based on the user's input."It is my understanding that the buffer overflow exploit occurs during this phase, which is why the recipient does not need to answer the call to be successfully compromised," Ferguson said.

 

Thank you for your comment. Your comment will be published after being reviewed.
Please try again later.
We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

 /  🏆 4. in ZA

South Africa Latest News, South Africa Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

WhatsApp has been hacked and attackers installed spyware on people’s phonesWhatsApp is urging users to update the app after it was targeted by 'an advanced cyber actor.' BISouthAfrica Basically dont be an idiot and click on arb links. BISouthAfrica WhatsApp the new Facebook. BISouthAfrica lordbyronnnn
Source: News24 - 🏆 4. / 80 Read more »

WhatsApp discovers spyware that infected dozens of phones with a call | IOL NewsSpyware crafted by hackers-for-hire took advantage of a flaw in WhatsApp to remotely hijack dozens of phones, the company said.
Source: IOL - 🏆 46. / 51 Read more »

Hackers use WhatsApp security flaw to install spyware on phonesThe latest exploit -- which impacts Android devices and Apple's iPhones, among others -- was discovered earlier this month.
Source: TheCitizen_News - 🏆 6. / 75 Read more »

WhatsApp urges users to upgrade app after report of spyware attackWhatsApp 'encourages people to upgrade to the latest version of our app, as well as keep their mobile operating system up to date, to protect against potential targeted exploits designed to compromise information stored on mobile devices.' MpumiLembz
Source: TimesLIVE - 🏆 28. / 59 Read more »

WhatsApp urges users to upgrade app after report of spyware attackFacebook's WhatsApp on Tuesday urged users to upgrade to the latest version of its popular messaging app following a report that users could be vulnerable to having malicious spyware installed on phones without their knowledge.
Source: SowetanLIVE - 🏆 13. / 63 Read more »

WhatsApp urges app updates to avoid spyware installationThe messaging giant published an update to the app on Monday after identifying potential spyware.
Source: eNCA - 🏆 49. / 51 Read more »

WhatsApp users need to upgrade after report of spyware attackAccording to the FT, a vulnerability allowed attackers to inject spyware into phones by ringing up targets
Source: BDliveSA - 🏆 12. / 63 Read more »

WhatsApp patches security flaw after spyware injection revealedThe unpatched security flaw opens the door to spying by rogue entities on human rights activists, journalists and others.
Source: TheCitizen_News - 🏆 6. / 75 Read more »

Satanic murder accused: ‘I am very sorry’The youngest accused in the Krugersdorp murder trial addresses the family of those she had help to kill
Source: SundayTimesZA - 🏆 47. / 51 Read more »

I am still the mayor - Zandile Gumede | The MercurySpeaking to Independent Media shortly after she was granted R50000 bail and told to surrender her passport and not to interfere with witnesses, Gumede said she would continue as mayor as “these are mere allegations”. TheMercurySA TheMercurySA ANCKZN ,Magashule_Ace , MYANC is there no Integrity Commission to deal with this? TheMercurySA Arrest her and hold her in contempt TheMercurySA Why is she not suspended without pay? Disgusting and typical arrogance.
Source: IOL - 🏆 46. / 51 Read more »

I am broken and finished – Julius Malema in mourning'My grandmother’s death is like a sharp instrument into my heart,' the EFF leader said, while also mourning Ngwako Modjadji, a former Citizen reporter.
Source: TheCitizen_News - 🏆 6. / 75 Read more »