Researchers Disclose Wechat Zero-Click Call Worm Arabian Post
California-based security firm Calif said its WeWorm demonstration exploited a memory-corruption flaw in WeChat's voice-over-IP stack, allowing a compromised account to call another user and seize control of that account within seconds without the target answering or touching the phone.
The researchers said Tencent, which operates WeChat, had mitigated the exploit for all users by the time the findings were published on September 8. Calif said Android version 8.0.77 and iOS version 8.0.76, issued on August 21, addressed the weakness, while a server-side measure confirmed on August 28 blocked the exploit across the service.
Legal Disclaimer:
MENAFN provides the
information “as is” without warranty of any kind. We do not accept any
responsibility or liability for the accuracy, content, images, videos,
licenses, completeness, legality, or reliability of the information
contained in this article. If you have any complaints or copyright issues
related to this article, kindly contact the provider above.

Comments
No comment