A WhatsApp vulnerability allowed attackers to remotely install spyware onto phones -- by simply calling them.
First reported by the Financial Timesand confirmed by WhatsApp,Apps Archives the issue was discovered in early May and was promptly fixed by the company.
The Facebook-owned messaging service said it believed certain users were targeted through the vulnerability by an advanced cyber actor.
As noted by the Financial Times, the spyware was developed by the Israeli cyber intelligence firm NSO Group. The malicious code could be inserted via a voice call, even if the recipient didn't answer their phone, and the call would disappear from logs.
SEE ALSO: WhatsApp has become a haven for Nazi propaganda in Germany: reportIn a statement, WhatsApp did not name the NSO Group, but said the attack was representative of a private company which works with governments to create spyware for mobile devices.
The messaging company said it has briefed human rights organisations on the finding, and notified U.S. law enforcement to help them conduct an investigation.
WhatsApp said it made changes to its infrastructure last week to prevent the attack from happening, and issued an update for its app.
"WhatsApp encourages people to upgrade to the latest version of our app, as well as keep their mobile operating system up to date, to protect against potential targeted exploits designed to compromise information stored on mobile devices," a WhatsApp spokesperson said in a statement.
"We are constantly working alongside industry partners to provide the latest security enhancements to help protect our users."
The NSO Group is behind a spyware product called Pegasus, which allows operators to take control of a target's phone, allowing them to switch on a phone's camera and a microphone, as well as retrieve private data.
A spokesperson for NSO told Mashable it was investigating the WhatsApp issue.
“NSO’s technology is licensed to authorized government agencies for the sole purpose of fighting crime and terror. The company does not operate the system, and after a rigorous licensing and vetting process, intelligence and law enforcement determine how to use the technology to support their public safety missions. We investigate any credible allegations of misuse and if necessary, we take action, including shutting down the system," the statement read.
"Under no circumstances would NSO be involved in the operating or identifying of targets of its technology, which is solely operated by intelligence and law enforcement agencies," it continued. "NSO would not or could not use its technology in its own right to target any person or organization."
Human rights organisation Amnesty International is behind legal action to revoke the NSO Group's export licence in Israel, after an Amnesty staff member was targeted last August by Pegasus.
"NSO Group sells its products to governments who are known for outrageous human rights abuses, giving them the tools to track activists and critics. The attack on Amnesty International was the final straw," Danna Ingleton, deputy director of Amnesty Tech, said in a statement.
Topics Cybersecurity WhatsApp
On Unpleasantness and EmojiStaff Picks: Staircases, Sister Mountains, SelfWordle today: Here's the answer and hints for September 7An Interview with Gladys NilssonCould the AI Drake and Weeknd song actually win a Grammy?The Morning News Roundup of November 26, 2014Ford Mustang MachPinterest unveils AI body type tech to increase representationHow 'Evil be like' memes expose our macabre fascinations and fear of deathAI anxiety and employee monitoring: Workplace stress mountsThe Morning News Roundup for December 5, 2014Douglas Coupland on Marshall McLuhan by James AtlasThe Ballad of Ferguson, MissouriWhat teachers and parents wish they could tell kids about pornBarbie 2023 Career of the Year collection highlights women in sportsWhy Migraines are the Most Glamorous of HeadachesVisit Our Holiday PopBarbie 2023 Career of the Year collection highlights women in sportsThe Morning News Roundup of November 26, 2014A Letter from Delmore Schwartz to James Laughlin We asked total strangers to tell us what to wear on a Tinder date 15 YouTube covers that display the vast talent of Christina Grimmie Extremely happy dog doesn't need a human to play fetch A lot of Uber, Lyft rides get posted online without anyone noticing U.S. officials say Russian hackers infiltrated electric utilities Anyone can help name the new Mars rover, but there's one small catch Maisie Williams is getting the perfect 'Game of Thrones' tattoo Google's record Uber drivers in New York State can get unemployment insurance Report: HomePod will be able to set multiple timers this fall 6 'Harry Potter and the Cursed Child' clues that won't spoil the story Over 230,000 petition Disney to rehire 'Guardians' director James Gunn Space photos show the UK turned from green to brown by heat waves Facebook confirms it's building an internet satellite 'Vomit fraud' is the latest scam from shady Uber drivers Fortnite celebrates 'Shark Week' with new items Sony's new phone camera sensor will let you take 48 Samsung's upcoming wireless charger can charge two devices at once 'Spider Google, Facebook, Twitter, and Microsoft are joining forces to make your data super portable
3.0947s , 10131.46875 kb
Copyright © 2025 Powered by 【Apps Archives】,Unobstructed Information Network