Have you ever thought about losing your Whatsapp account permanently? A simple system failure allows the attacker to take users down even from a distance and without any contact with the victim. The information is from Tech Tudo.
Read Also
- They reveal that Facebook did not act to stop campaigns dedicated to manipulating elections around the world Sep 18, 2020
- Hamilton promises a “gift” to the spectators of Spa | FormulaPassion.it Sep 6, 2021
- Toulon: “I lived in hiding”, five years in prison required against a divorced mother on the run with her daughter Nov 24, 2022
- Miriam Leone, getting married: the details Sep 14, 2021
- Russia gains ground in Donbas but runs out of tanks and at home goes through a minefield May 29, 2022
- Manufacturers agree on the future European combat aircraft Nov 18, 2022
- Is Star in the Star plagiarism? The Rai Supervision intervenes Sep 4, 2021
For this to happen, the hacker simply needs to have the user’s mobile number and inform the application that the account has been stolen. After carrying out some processes, he is able, in a digital way, to have the account deleted.
The vulnerability was reported last Saturday (10), by cybersecurity researchers Luis Márquez Carpintero and Ernesto Canales Pereña. For them, the first serious vulnerability of the app is the possibility to log in with any phone number, even if the user is not the owner of the line.
Because of these and other security breaches, a person may not be able to re-establish their account after it has been stolen. Even with another device, the phone number would not work in the application and it would be necessary to create a new account, this time with a different number.
WhatsApp sent a note to Tech Tudo, in which it reports that the practical practice addressed by the two researchers violates the terms of use of the application. In addition, the note also points out that the registration of the email requested during the activation of the two-step verification is essential for the real owner of the account to be identified by the company before the block.
Despite the note, the app did not disclose whether it intends to make changes to remedy the security breach.
.
