Blocking ads removes funding from us!
Researching and writing articles takes a lot of time. Operating our infrastructure costs money.
All of this is funded with advertising revenue.
We don't like advertising either - that's why we avoid annoying banners and pop-ups.
Please give us a chance and deactivate your adblocker!
Alternatively, you can support us here voluntarily.

Follow us:


Vulnerability discovered in WhatsApp Web: all users affected

Facebook-WhatsApp
Image: APA / EPA / Patrick Pleul
(Post picture: © 2016 APA / EPA / Patrick Pleul)

Security researchers have found a new vulnerability in the WhatsApp Web API. It is thus possible for hackers to access third-party user data. And unlimited.

Security researcher Loran Kloeze has uncovered a critical loophole in WhatsApp's web interface. This enables hackers to query unlimited telephone numbers in the database. He also has the gap here in one Blog post recorded.

Creation of infinite user databases possible

For this experiment, Kloeze has developed a special script that runs through several numbers. If a match is found, the corresponding phone number, information and profile picture of the user are displayed. In this case, the IT expert defines a filter of phone numbers that the script searches through. This is done using only the WhatsApp developer API. This means that a user's online times could be recorded for months - without them noticing.

This is the script, the vulnerability in WhatsApp Web. This can be used to read out third-party user data. (Image: Loran Kloetze/ Blog)

As a spokesperson told Motherboard, the problem is already being worked on. In addition, abuse will be monitored behind the scenes and unusual requests will be blocked. If you don't want to be intercepted, you can hide all data in WhatsApp's privacy settings. Here, the setting for each point must be set to "My contacts". The hacker could then theoretically only intercept data from his contacts.

Recommendations for you

>> The best Amazon deals <

David Wurm

Do that TechnikNews-Ding together with a great team since 2015. Works in the background on the server infrastructure and is also responsible for everything editorial. Is fascinated by current technology and enjoys blogging about everything digital. In his free time he can often be found developing webs, taking photographs or making radio.

David has already written 978 articles and left 383 comments.

Web | Facebook | X (Twitter) | Insta | YouTube
notification settings
notifications about
guest
Your name, which will be shown publicly.
We will not publish your email address.

0 Comments
latest
oldest Best
Inline feedback
View all comments