HomeVulnerabilityWhatsapp plugs bug permitting RCE with spoofed filenames

Whatsapp plugs bug permitting RCE with spoofed filenames

Whatsapp makes for a well-liked assault vector

Whatsapp has been steadily focused previously for its recognition as an encrypted chatting platform. With over 10 billion downloads on Google Play Retailer alone, the platform makes for a profitable goal for risk actors.

The same security oversight was reported in July 2024 to be affecting the Whatsapp Home windows shopper, permitting execution of arbitrary Python and PHP scripts on susceptible programs with appropriate coding environments put in.

Commenting on the exploitability of “attachments” associated flaws in fashionable software program, Nico Chiaraviglio, chief scientist at Zimperium mentioned, “Attachments stay some of the widespread vectors for delivering malicious content material. Whereas this particular case includes WhatsApp for Home windows, cell platforms should not exempt.

See also  CISOs are struggling to get cybersecurity budgets: Report
- Advertisment -spot_img
RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

- Advertisment -

Most Popular