share_log

Android WhatsApp Users Can Exhale: A Major Bug That Exposed Data May Finally Be Fixed

Android WhatsApp Users Can Exhale: A Major Bug That Exposed Data May Finally Be Fixed

Android WhatsApp用户可以呼出:一個暴露數據的重大漏洞可能最終被修復
Benzinga Real-time News ·  2022/09/27 12:42
  • Meta Platforms, Inc (NASDAQ:META) elaborated on a "critical"-rated security vulnerability affecting its Android app that could allow attackers to remotely plant malware on a victim's smartphone during a video call.
  • WhatsApp described the bug as an integer overflow bug.
  • It happens when an app tries to perform a computational process but has no space in its allotted memory, causing the data to spill out and overwrite other parts of the system's memory with potentially malicious code, TechCrunch reports.
  • Malwarebytes' determined that the bug is present in a WhatsApp app component called "Video Call Handler," which, if triggered, would allow an attacker to take complete control of a victim's app.
  • The critical-rated memory vulnerability is similar to a 2019 bug, which WhatsApp blamed on Israeli spyware maker NSO Group in 2019.
  • Recently, WhatsApp also disclosed another vulnerability, which could allow hackers to run malicious code on a victim's Apple Inc (NASDAQ:AAPL) iOS device after sending a malicious video file.
  • In August, Facebook resolved a glitch under which users faced bizarre posts on their feed. Users complained about seeing random posts and activity tickers to celebrities' pages from strangers on their timelines.
  • Price Action: META shares traded lower by 0.52% at $135.66 on the last check Tuesday.
  • Photo Via Company
  • Meta平臺,Inc.納斯達克(Sequoia Capital:META)詳細闡述了一個影響其安卓應用程序的“嚴重”級安全漏洞,該漏洞可能允許攻擊者在視頻通話期間在受害者的智能手機上遠程植入惡意軟件。
  • WhatsApp將該漏洞描述為整數溢出漏洞。
  • 據TechCrunch報道,當應用程序試圖執行計算過程,但分配的內存中沒有空間時,就會發生這種情況,導致數據溢出,並用潛在的惡意代碼覆蓋系統內存的其他部分。
  • Malware Bytes確定該漏洞存在於一個名為“Video Call Handler”的WhatsApp應用程序組件中,如果觸發,將允許攻擊者完全控制受害者的應用程序。
  • 這個嚴重級別的內存漏洞類似於2019年的一個漏洞,WhatsApp將其歸咎於以色列間諜軟件製造商NSO Group在2019年。
  • 最近,WhatsApp還披露了另一個漏洞,該漏洞可能會讓黑客在受害者的蘋果納斯達克(Youku)iOS設備在發送惡意視頻文件後。
  • 今年8月,Facebook解決了一個故障,在這個故障下,用户在他們的feed上面臨着奇怪的帖子。用户抱怨説,在他們的時間線上,看到陌生人隨意發佈和活動標記到名人的頁面上。
  • 價格行動:在週二的最後一次檢查中,Meta股價下跌0.52%,至135.66美元。
  • 照片通過公司
声明:本內容僅用作提供資訊及教育之目的,不構成對任何特定投資或投資策略的推薦或認可。 更多信息
    搶先評論