Never miss a story

Get subscribed to our newsletter


×
FILE - The WhatsApp app logo is seen on a smartphone in this picture illustration. VOA

WhatsApp on Monday said no user data was affected owing to a new bug where a specially-crafted malicious MP4 file may have used the vulnerability to trigger the remote code execution (RCE) and denial of service (DoS) cyber attack when downloaded by a user on both Android and iOS devices.

Reports on Sunday claimed that hackers can use the WhatsApp vulnerability to deploy the malware on the user’s device to steal sensitive files and snoop on them — the way an Israeli software Pegasus developed by cyber intelligence company NSO Group did by exploiting the video calling system in the Facebook-owned to snoop on 1,400 selected users globally and in India, including human rights activists and journalists.


“WhatsApp is constantly working to improve the security of our service. We make public, reports on potential issues we have fixed consistent with industry-best practices. In this instance, there is no reason to believe users were impacted,” a company spokesperson said in a statement shared with IANS.

The micro-blogging platform has already issued a security update on this bug.

Facebook had earlier issued an advisory, saying “a stack-based buffer overflow could be triggered in WhatsApp by sending a specially-crafted MP4 file to a WhatsApp user.”

“The issue was present in parsing the elementary stream metadata of an MP4 file and could result in a DoS or RCE.”


Security experts have warned that blaming Whatsapp for the spyware would not be right. Pixabay

The vulnerability is classified as “critical” severity that affected an unknown code block of the component MP4 File Handler in WhatsApp.

The Pegasus-NSO Group issue snowballed into a political one, with the Indian government directing WhatsApp to submit a reply over the matter.

The government also denied either purchasing or planning to purchase the infamous software in question.

Also Read: Social Media Giant Facebook Still a Fertile Ground for Promoting Anti-vaccine Posts

The new vulnerability is found in Android versions prior to 2.19.274; iOS versions prior to 2.19.100; Enterprise Client versions prior to 2.25.3; Business for Android versions prior to 2.19.104; Business for iOS versions prior to 2.19.100; and Windows Phone versions before and including 2.18.368.

The RCE vulnerability may allow hackers to perform the attack remotely without any sort of authentication. (IANS)


Popular

Wikimedia Commons

Amitabh Bachchan, during his speech to the crowd of over 80,000 people at the Reliance Industries' annual event, said that the legacy left by Dhirubhai has had a positive impact on millions of people's lives worldwide.

Amitabh Bachchan is adored by the public for his unforgettable on-screen performances as well as his magnetic demeanour. Not only do fans love Amitabh Bachchan's outstanding performance, but the actor's heartwarming words are also highly regarded. A much moved Amitabh Bachchan, during his speech to the crowd of over 80,000 people at the Reliance Industries' annual event, said that the legacy left by Dhirubhai has had a positive impact on millions of people's lives worldwide.

When Bollywood superstar Amitabh Bachchan became bankrupt in the late 1990s, Dhirubhai Ambani stepped forward to give him financial assistance. In his speech, Bachchan remembered that Dhirubhai had sent Anil Ambani to offer him financial assistance during the crisis, which he had respectfully declined. Lenders began knocking on his door, losses mounted, and his bank account dwindled to nothing. He said, "Dhirubhai's money might have gotten me out of the problem quickly. However, I respectfully declined his offer and gradually began to find work again, which let me pay off my debt."

Keep Reading Show less
Photo by Xavier Mouton Photographie on Unsplash

Irrespective of the age of your child, it is vital for parents to offer that extra support and assistance following an unsettling event.

In comparison to adults, children are prone to getting traumatized by troubling events easily, and this makes it important for parents to help their children when the times are tough. It could be a brutal accident, an unprecedented pandemic, a violent crime, or other disasters but with the right parental support, children have a higher chance of coming out stronger from an awful situation.

Anuja Kapur, Psychologist shares few tips wherein you can assist your child when tough times comes calling:

Every child responds differently to disturbing events:
What children feel about a current disaster in their life and how they react to it can come and go in waves. Children can act moody and withdrawn at times, struck with sorrow and fear at other times. There's no absolute "right" or "wrong" way to feel after a traumatic event so make sure not to dictate what your child or how your child should feel and react to the event.

a boy crying tears for his loss Children can act moody and withdrawn at times, struck with sorrow and fear at other times. | Photo by Kat J on Unsplash

Keep Reading Show less
Photo by Andreas Haslinger on Unsplash

European consumers will be able to use a single charger for all their portable electronics - an important step to increase convenience and reduce waste.

The European Commission, the executive arm of the European Union (EU), has announced plans for smartphone and other electronics manufacturers to fit a common USB-C charging port on their devices in an effort to reduce waste. In addition to phones, the rules will apply to other devices like tablets, headphones, portable speakers, videogame consoles, and cameras, reports The Verge. The decision will have a huge impact on Apple, as the company still uses its own Lightning connector to charge iPhones. The proposals only cover devices using wired, not wireless and a USB-C port is only mandatory for devices that charge using a cable.

Different charging cables "Chargers power all our most essential electronic devices | Photo by Solen Feyissa on Unsplash

Keep reading... Show less