A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections. (provider: Named Pipes Provider, error: 40 - Could not open a connection to SQL Server) 'The greatest cricketer' - Shane Warne farewelled on emotional night, Sports : Today Indya

Latest News

Just a GIF: That’s all it took to hack your WhatsApp messages, files
Friday, October 4, 2019 IST
Just a GIF: That’s all it took to hack your WhatsApp messages, files

WhatsApp users may have been targeted by hackers through malicious GIFs. This bug let hackers gain access to user’s data on the app.

 
 

WhatsApp was recently affected with a double-free bug that allowed hackers to gain access to user data through malicious GIFs. WhatsApp has since patched the bug with the latest version of the app.
 
This bug was discovered by information security enthusiast ‘Awakened’ who posted the details on GitHub. According to the post, hackers could get inside someone’s phone by sending malicious GIF files to the user. The GIF file should however be sent as a document and not as a media file for the bug to work. Once the corrupted GIF is received, the bug is triggered through WhatsApp’s Gallery folder.
 
The researcher notes that just opening the WhatsApp Gallery to send images or videos is enough to trigger the bug. Even if the user doesn’t send any file the bug will still be activated giving hackers remote access. WhatsApp’s Gallery folder shows a preview of images, videos and GIFs received on the app. Since the media file including the malicious GIF is already downloaded and previewed, the bug will be triggered.
 
The researcher further explains that this bug works well on phones running Android 8.1 and Android 9 versions. In Android versions below Android 8.0 the bug can still work but it fails to register as the app will simply crash before completion of the hack.
 
Facebook after being informed of the hack fixed the bug in WhatsApp version 2.19.230. It even responded to the discovery through a statement to The Next Web - “The key point that the [vulnerability disclosure] makes is that this issue affects the user on the sender side, meaning the issue could in theory occur when the user takes action to send a GIF. The issue would impact their own device.” a WhatsApp person told TNW. “It was reported and quickly addressed last month. We have no reason to believe this affected any users though of course we are always working to provide the latest security features to our users.”
 
The researcher then replied saying that WhatsApp’s claim isn’t correct and even shared a demo of how the bug can be triggered.

 
 

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
Pocophone F1 to be the fastest handset in its class, Snapdragon 845 confirmed

Two days ago Xiaomi teased the arrival of its new

Recently posted . 22K views . 4 min read
 

 Article
The Top 5 Best USB/PD Phone Charger in India 2023

View Top 5 Mobile Chargers in India as on 08 Feb 2023. This rundown is compiled according t...

Recently posted . 6K views . 6 min read
 

 Article
Asus TUF Gaming FX505DY, TUF Gaming FX705DY Laptops Launched in India With AMD CPU and GPU

HIGHLIGHTS   • Both laptops use the AMD Ryzen 5 3350H CPU and Radeon RX 560 GPU • The...

Recently posted . 5K views . 2 min read
 

 Article
How to make you car as silent as a Rolls Royce inside

Rolls Royce cars are extremely luxurious. While there are many expensive pieces of equipment in Rolls Royce cars, their most relaxing feature is the silence that ...

Recently posted . 4K views . 2 min read
 

 
 

More in Electronics & Gadgets

 Article
Watch: "Flexible Dhoni", BCCI Applauds MS Dhoni's Acrobatic Move During 2nd T20I

MS Dhoni displayed his acrobatic move during the 11th over of second Twenty20 International (T20I) against Australia.

Recently posted. 935 views . 0 min read
 

 Article
OFFICIAL: Barcelona sign Malcom from Bordeaux

The Brazilian will sign a five-year deal  

Recently posted. 900 views . 0 min read
 

 Article
New Zealand debutant Colin de Grandhomme breaks record, knocks out Pakistan

There is something about moustaches in take a look at cricket that brings out something special in cricketers. in the 2013/14 Ashes, Mitchell Johnson&rsquo...

Recently posted. 797 views . 13 min read
 

 Video
First Look 2018 Honda CR-V



Recently posted . 1K views
 

 Article
Pakistan Cricket Board in talks with Lanka, Bangladesh to replace India series

Pakistan Cricket Board are in talks with Sri Lanka and Bangladesh for a potential bilateral series in the slot reserved for the series against the Indian c...

Recently posted. 849 views . 17 min read
 

 Article
Pakistan skipper Sarfraz Ahmed issues apology after alleged racial taunt results in outcry

Pakistan skipper Sarfraz Ahmed was caught on the stump mic making an alleged racist taunt directed at South Africa's Andile Phehlukwayo.

Recently posted. 1K views . 1 min read
 

 
 
 

   Prashnavali

  Thought of the Day

“Success is falling nine times and getting up ten.”
Anonymous

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top