Hackers can use a WhatsApp flaw in the way it handles video to take control of your phone

Subscribers:
4,200
Published on ● Video Link: https://www.youtube.com/watch?v=HJewAqkNEJ8



Duration: 3:17
7 views
0


Reported today on TechSpot

For the full article visit: http://bit.ly/35joElj

Hackers can use a WhatsApp flaw in the way it handles video to take control of your phone

Facebook fixed the issue in the latest app update

A hot potato: As Facebook is working to unify the backend of social and messaging platforms it owns, a new flaw shows the company still has a lot of work left to do on the security front. After the Facebook app was hit by a bug that opens the camera in the background, the company quietly fixed another one present in WhatsApp that could prove even more dangerous.

Facebook has disclosed a vulnerability in WhatsApp that allowed an attacker to take complete control over your smartphone by creating a special MP4 file and sending it to you. Because of the way it is coded, playing the file would force the app to write more data to a buffer than it's allowed, causing a buffer overflow. In turn, that makes it possible for attackers to corrupt the data in your phone's RAM to steal chat messages or remotely access files stored on the device.

The flaw was quietly patched by Facebook in a recent update, so it's worth keeping in mind that you shouldn't open any video file you've received until you make sure you're running the latest version. The issue affects iPhones running WhatsApp versions before 2.19.100, Android versions prior to 2.19.174, and even Windows Phone versions before and including 2.18.368 -- which isn't going to be patched for the estimated 10 million people who are still using the platform.

A Facebook spokesperson said in a statement that "WhatsApp cares deeply about the privacy of our users and we're constantly working to enhance the security of our service. We make public reports on potential issues we have fixed consistent with industry best practices." The




Other Videos By Colin Boyd SEO


2019-11-19Sundance Institute’s Co//ab offers online education and feedback for filmmakers
2019-11-19Verizon finally reveals actual 5G coverage maps
2019-11-19Apple preparing to build the ‘next generation of media apps for Windows’
2019-11-19Amazon lets police ask for Ring videos that are more than a month old
2019-11-19Apple’s 16-inch MacBook Pro has a mysterious new ‘lid angle sensor’
2019-11-19Bird is bribing riders to wear helmets with ride credits
2019-11-19Scooter maker Superpedestrian raises $20 million as it gears up to launch
2019-11-19Bing is Now Utilizing BERT at a Larger Scale Than Google via @MattGSouthern
2019-11-19Is this Niantic’s next game?
2019-11-19In the ghost kitchen race, GV-backed Kitchen United aims to kill with kindness; here’s its playbook
2019-11-19Hackers can use a WhatsApp flaw in the way it handles video to take control of your phone
2019-11-19Uber is at fault for fatal self-driving crash, but it’s not alone
2019-11-19The Morning Show’s executive producers felt like early reviews were an ‘attack on Apple’
2019-11-19Slack stock falls after Microsoft boasts 20 million Teams users
2019-11-19Luna is a new kind of space company helping biotech find its footing in microgravity
2019-11-19Facebook’s latest experiment is a meme creation app, Whale
2019-11-19Karma’s new electric hinge-winged hypercar concept goes 0 to 60 mph in 1.9 seconds
2019-11-19Karma Automotive unveils its faster next act, the Revero GTS
2019-11-19Build trust with remote users to get qualitative feedback
2019-11-19Evan Spiegel: Snapchat fact-checks all political ads
2019-11-19The world's largest chip finds a home inside the world's fastest AI computer