Critical security flaw found in #WhatsApp desktop platform allowing cybercriminals read from the file system access
Thursday, 06 February, 2020, 14:55
Back in 2017, while I was traveling in Peru, I found a security flaw that Check Point published a few months later. That flaw was simple. In the words of Check Point’s researchers in this article published in 2018, it allowed an attacker to “alter the text of someone else’s reply, essentially putting words in their mouth.”
It was cool, but back then I couldn’t come up with any idea of further exploiting the flaw or finding related flaws. So except for trolling my friends a couple of times in our group chat, I kind of let it go.
A year later, I decided to continue my research. I really wanted to find a major security flaw in a well-known and widely used service, and I felt like WhatsApp was a good start. So I gave it a go since I already had some clue of existing security flaws in WhatsApp mobile and web applications.
#Microsoft pulls Windows 10 KB4524244, confirms critical issues15219.02.2020, 16:25
Critical security flaw found in #WhatsApp desktop platform allowing cybercriminals read from the file system access29806.02.2020, 14:55
The Microsoft Surface Pro 8 could be solar powered53315.01.2020, 23:35
WhatsApp will stop working on millions of smartphones worldwide in 202092010.12.2019, 19:10