HT TECH wants to start sending you push notifications. Click allow to subscribe

This WhatsApp bug can crash your group chats, delete history permanently

Security researchers have urged all WhatsApp users to update the app to the latest version. Here’s how this new bug works.

By: INDO ASIAN NEWS SERVICE
Updated on: Aug 20 2022, 18:31 IST
New WhatsApp bug crashes group chat, deletes history forever (HT Photo/WhatsApp)

Security researchers on Tuesday said they have detected a serious vulnerability in WhatsApp that led to group chat crash the moment a destructive message was introduced by the hackers in the chat, leading the entire group chat history being deleted forever.

Urging all users to update WhatsApp to the latest version, security researchers at global cybersecurity firm Check Point identified the flaw that would allow a bad actor to create a malicious group message to crash Facebook-owned WhatsApp on users' devices.

You may be interested in

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
23% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹115,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
21% OFF
Acer Swift Go SFG14 41 NX KG3SI 002 Laptop
  • Pure Silver
  • 8 GB RAM
  • 512 GB SSD
₹58,990₹74,999
Buy now
39% OFF
Acer Aspire 5 A515 57G Laptop
  • Gray
  • 16 GB RAM
  • 512 GB SSD
₹54,949₹89,999
Buy now
22% OFF
Acer Aspire 3 A315 24 NX KDESI 004 Laptop
  • Silver
  • 8 GB RAM
  • 512 GB SSD
₹33,499₹42,999
Buy now
39% OFF
Asus VivoBook 15 X515JA BQ322WS Laptop
  • Transparent Silver
  • 8 GB RAM
  • 512 GB SSD
₹31,490₹51,990
Buy now
34% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,299₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,790₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹14,999
Check details

Since there was no remedy, all members of the group were forced to uninstall and reinstall WhatsApp in order to regain full use. The group chat could not be restored after the crash occurred.

Also read: Looking for a smartphone? To check mobile finder click here.

The bug has now been fixed. The company issued a fix to resolve the issue which is available since WhatsApp version number 2.19.58.

"Because WhatsApp is one of the world's leading communication channels for consumers, businesses and government agencies, the ability to stop people using WhatsApp and delete valuable information from group chats is a powerful weapon for bad actors," said Oded Vanunu, Check Point's Head of Product Vulnerability Research.

"All WhatsApp users should update to the latest version of the app to protect themselves against this possible attack," Vanunu added.

On an average, 65 billion messages are sent on WhatsApp per day by over 1.5 Billion users globally.

"WhatsApp greatly values the work of the technology community to help us maintain strong security for our users globally. Thanks to the responsible submission from Check Point to our bug bounty program, we quickly resolved this issue for all WhatsApp apps in mid September. We have also recently added new controls to prevent people from being added to unwanted groups to avoid communication with untrusted parties all together." - WhatsApp Software Engineer Ehren Kret.

This is how it works.

To create the malicious message that would impact a WhatsApp group, the bad actor would need to be a member of the target group (WhatsApp allows up to 256 users per group).

From there, the bad actor would need to use WhatsApp Web and their web browser's debugging tool to edit specific message parameters and send the edited text to the group.

This edited message would cause a crash loop for group members, denying users access to all WhatsApp functions until they reinstall WhatsApp and delete the group with the malicious message.

Check Point Research disclosed its findings to the WhatsApp bug bounty programme in August this year. WhatsApp acknowledged the findings and developed a fix to resolve the issue which users should manually apply on their devices.

"WhatsApp responded quickly and responsibly to deploy the mitigation against exploitation of this vulnerability," said Vanunu.

The Check Point Research team found the vulnerability by inspecting the communications between WhatsApp and WhatsApp Web, the web version of the app which mirrors all messages sent and received from the user's phone.

This enabled researchers to see the parameters used for WhatsApp communications and manipulate them.

The new research builds on the 'FakesApp' flaws discovered by Check Point Research, which allowed group chat messages to be edited to spread fake news.

WhatsApp has also released a new beta that brings in a number of tweaks, including a fix for a serious bug that caused the last version of WhatsApp beta for Android to crash for many users.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 17 Dec, 17:15 IST

Sale

Mobiles Tablets Laptops
4% OFF
Samsung Galaxy S24 Ultra
  • Titanium Black
  • 12 GB RAM
  • 256 GB Storage
₹129,999₹134,999
Buy now
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
11% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹71,290₹79,900
Buy now
33% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹26,999₹39,999
Buy now
38% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹34,000
Buy now
31% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,999₹28,999
Buy now
18% OFF
Samsung Galaxy Tab S9 5G 256GB
  • Graphite
  • 8 GB RAM
  • 256 GB Storage
₹94,597₹115,197
Buy now
38% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹21,790₹34,990
Buy now
46% OFF
Lenovo Yoga Slim 7 Intel Evo 82A300MBIN Laptop
  • Slate Grey
  • 16 GB RAM
  • 512 GB SSD
₹33,990₹62,890
Buy now
26% OFF
Lenovo Legion Pro 5 16IRX8 82WK00LPIN Laptop
  • Onyx Grey
  • 32 GB RAM
  • 1 TB SSD
₹139,190₹188,890
Buy now
31% OFF
Asus Zenbook 14 Flip OLED UP3404VA KN753WS Laptop
  • Foggy Silver
  • 16 GB RAM
  • 1 TB SSD
₹67,990₹98,990
Buy now