Connect with us

Hi, what are you looking for?

The American GeniusThe American Genius

Tech News

WhatsApp bugs could have let attackers hack devices remotely

If you’re wondering what the deal is with the WhatsApp warnings, you’ve come to the right place. Critical bugs could be causing issues.

WhatsApp on phone

If you’re wondering what the deal is with the Whatsapp warnings, you’ve come to the right place. 

Many reports have rolled in, claiming the existence of two security holes in Whatsapp, linking back to two tweets. Their bug IDs are allegedly CVE-2022-36934 and CVE-2022-27492. 

An article based on the two tweets claimed that not only are they zero-day bugs, but they’ve also been discovered and supposedly fixed by the Whatsapp team. 

By definition, however, zero-day is referring to a bug that attackers found and used to exploit before a patch was available so that there were zero days that even an incredibly talented sysadmin could’ve caught it. 

Advertisement. Scroll to continue reading.

So, basically, stating that this bug is a zero-day is to infer that it’s important. 

So, is Whatsapp actually under attack? Is there an active danger that you should be notified of? 

As far as anyone knows, the reports are based on information coming directly from Whatsapp’s security advisory page. 

Both bugs are currently listed as leading to remote code execution, or RCE, meaning that data could force the app to crash and that an attacker might be able to rig up the circumstances of the crash to trigger prohibited behavior.

Usually, when an RCE is involved, the unauthorized behavior means running malware to take some form of control over your device. 

Advertisement. Scroll to continue reading.

Based on the descriptions, it seems like the first bug required a connected call to be triggered, while the second looks like it could be triggered at other times. 

Mobile apps are generally regulated more strictly than apps on laptops or servers, where local files are generally accessible to, and shared between, various programs. 

This means that the compromise of a single mobile app usually poses less of a risk than a similar malware attack on, say, your computer. 

There is good news! The bugs listed were apparently patched around a month ago, even though the latest reports implied that these flaws represent a clear danger to WhatsApp users.

So, yes, the holes have been patched, confirmed by Whatsapp itself. 

Advertisement. Scroll to continue reading.

Macie LaCau is a passionate writer, herbal educator, and dog enthusiast. She spends most of her time overthinking and watering her tiny tomatoes.

Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Advertisement

The
American Genius
news neatly in your inbox

Subscribe to our mailing list for news sent straight to your email inbox.

Advertisement

KEEP READING!

Social Media

WhatsApp is a well-known messaging platform with over 2 billion monthly users. They just unveiled communities where you can post and chat.

Business News

Businesses of all types, but especially large banks, should understand the conditions and risks of online transactions, like through Whatsapp

Business Marketing

(BUSINESS MARKETING) Work smarter, not harder. Newly funded luxury sock company, SockSoho, rockets forward in growth using WhatsApp and data science.

Tech News

[TECH NEWS] Facebook plans to merge Messenger, Instagram, and WhatsApp into one ubiquitous app.

The American Genius is a strong news voice in the entrepreneur and tech world, offering meaningful, concise insight into emerging technologies, the digital economy, best practices, and a shifting business culture. We refuse to publish fluff, and our readers rely on us for inspiring action. Copyright © 2005-2022, The American Genius, LLC.