Categories: Digital LifeNews

Be careful what you share on WhatsApp, it may not be as secure as you think

WhatsApp is easily the application I use the most on a daily basis on my smartphones. I use it for work, I use it to reconnect, and I use it to send silly memes to silly people all the time.

Odds are, WhatsApp’s probably super important to you too. But when something’s very important, there will be people who will want to exploit it for malicious purposes — especially considering the amount of information that gets shared via WhatsApp. And the bad news is that these bad people may have a way in if you’re not careful.

It’s easy to lull yourself into a false sense of security when using WhatsApp, especially after the company rolled out end-to-end encryption in all forms of communication across their entire platform. However, a group of researchers found a flaw in WhatsApp that could potentially be a gate into your secure conversations: Group chats.

Yup. According to the researchers, anyone who has control over WhatsApp’s servers could insert new members into private group chats without the permission of the group’s administrator. TechCrunch reports that the flaw takes advantage of “a bug in how WhatsApp handles group chats”. Because only the administrator of a group can invite new people in, WhatsApp doesn’t use any authentication mechanism for invitations that “its own servers cannot spoof”.

This means that once an attacker gains access to WhatsApp’s servers, they can insert themselves into groups, gaining access to any future messages in the group. That said, they won’t be able to read messages sent prior to them joining the group.

Tech Crunch also reports that attackers with access to WhatsApp’s servers could selectively block any messages in the group, preventing participants from warning the others of the intruder.

While this could potentially be a not insignificant vulnerability, the attackers would first have to hack into WhatsApp’s servers, which is no easy task. Cybersecurity company Kaspersky Lab’s security researcher Victor Chebyshev said that hacking Whatsapp’s servers is “not easy from a technical perspective” and that it “takes a lot of time and effort”. Victor says that it’s far easier for attackers to hack and gain control of a group chat member’s mobile device than it is to hack the servers.

Nevertheless, you should be careful with the information you share in WhatsApp group chats. One way would be to pay close attention to the members of your group and verify their security code for extra security. Administrators should also monitor and manually control the addition of new members.

If you absolutely must share sensitive information like passwords or pictures of your junk (why are you doing this in a group chat, btw), do so via private messaging instead.

Recent Posts

EPF Account 3 ratio applies to both mandatory and voluntary contributions

Employee’s Provident Fund (EPF) has recently announced the implementation of the new 3-account structure which…

16 hours ago

BMW and Gentari launch EV chargers at The Exchange TRX

EV drivers heading to The Exchange Mall at TRX can now charge their vehicles while…

18 hours ago

Schneider Electric, JusEV unveil EV charging hub: Up to 180kW of DC charging, supports eWallet

The French automation and energy company, Schneider Electric has officially opened its first-ever EV charging…

19 hours ago

TNG eWallet Visa Prepaid continues to offer 0% markup for foreign currency exchange rate

If you're travelling overseas, Touch 'n Go eWallet (TNG eWallet) provides a seamless cross-border payment…

1 day ago

Chery Omoda 5 broken axle: does the EV version use the same suspension?

The Chery Omoda 5 has recently made its way into the limelight once again this…

2 days ago

Samsung takes over Semua House with interactive Galaxy 24-themed escape room adventure

Samsung Malaysia is doing a Semua House takeover with an escape room adventure powered by…

2 days ago

This website uses cookies.