WhatsApp: Fixed security flaw in auto-deleting messages

WhatsApp: flaw in auto-delete messages fixed 25 comments

WhatsApp: Fixed security flaw in auto-delete messages

WhatsApp has closed a security hole that allowed the web version of the messenger to permanently save messages, photos and videos intended for one-time viewing only. Potentially sensitive content could be downloaded and viewed again and again.

Paid browser extensions save photos

The loophole in the browser-based version of WhatsApp was revealed in September this year, after which paid browser extensions were immediately released to operate them and save content. WhatsApp’s Android and apps were not affected by the security breach.

WhatsApp introduced the auto-delete feature for messages and photos in 2021. It is used to ensure that content can only be viewed once and is then automatically deleted. The feature also usually protection against forwarding, copying, screenshots and screen recordings. However, a bug in the web app made it possible to bypass these security measures. Browser extensions and social media guides allowed users to save content that was meant to be ephemeral.

WhatsApp has now closed the gap

The vulnerability was discovered by security researcher Tal Be’ery, who immediately alerted WhatsApp to the problem. WhatsApp has now made improvements with an update and has closed the gap. The contents of a single view can no longer be saved. The update was reportedly rolled out a few weeks ago. Browser extensions no longer work. Security researcher Tal Be’ery also confirms this. At the same time, he commends WhatsApp for its quick response and highlights the importance of public disclosure in such cases to improve data protection.

Web application with limitations

The single view feature is primarily designed for use on the WhatsApp mobile apps for Android and iOS and is not fully available on the web or desktop versions of Messenger. WhatsApp continues to advise users to only share media with trusted contacts and to regularly ensure the app is up to date.

Subjects: Android Instant messaging applications iOS application Communication Vulnerability WhatsApp Source: TechCrunch

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top