WhatsApp Patches Silent Spyware Exploit Linked to NSO Group

WhatsApp fixes a severe zero-click vulnerability that allows attackers to install malware without any user interaction. Experts urge users to update the app immediately to stay protected.

WhatsApp reveals a severe vulnerability that allows attackers to remotely install malicious code onto a phone simply by sending hidden data packets that mimic phone calls. This exploit is especially alarming because it requires absolutely no action from the user, meaning the target does not need to answer the call, click a link, or share passwords to become infected.

The company successfully patches the vulnerability on its servers over the weekend and releases a client-side update on Monday. WhatsApp attributes the use of this zero-click exploit to NSO Group, an Israeli security firm known for selling sophisticated spyware to governments that frequently target human rights activists, journalists, and scientists.

Security experts advise all users to update their WhatsApp applications immediately to protect against this threat. While this type of advanced malware sounds frightening, authorities emphasize that everyday users should stay calm and continue relying on end-to-end encrypted chat apps, which remain one of the most effective tools for protecting private communications.

Read More at the original source →