WhatsApp Patches Severe Vulnerability Exploited to Install Government Spyware

WhatsApp fixes a critical flaw that allows attackers to remotely install advanced spyware on phones through missed audio calls. The exploit reportedly leverages NSO Group's Pegasus software to target a select group of users.

WhatsApp fixes a highly severe vulnerability that allows malicious actors to remotely install government-grade spyware on targeted phones. The Facebook-owned company discovers the flaw in early May and determines that attackers leverage a bug in the app's audio call feature to compromise devices. This exploit works even if the recipient does not answer the incoming call, making it incredibly dangerous and difficult for victims to detect.

The spyware used in this attack is identified as Pegasus, a sophisticated surveillance tool developed by Israel-based NSO Group. This software is typically licensed to governments to investigate targets and gain deep access to various functions of mobile operating systems. WhatsApp suspects only a relatively small number of users are targeted, as deploying this type of advanced exploit requires highly motivated and well-resourced actors.

WhatsApp takes less than ten days to update its infrastructure and render the attack completely inoperable. The company subsequently releases a client-side update to further secure users against the exploit and strongly encourages everyone to upgrade to the latest version of the app. While NSO Group claims it only vets customers and does not control how its code is used, WhatsApp indicates the attack bears all the hallmarks of a private company working with governments to deliver spyware.

Read More at the original source →