Tuesday, 4 February 2020

WhatsApp fixed a bug in its desktop app that allowed access to files on your computer


Last month, WhatsApp fixed a bug in its desktop app that allowed attackers to read files from your computer. A post published by security firm PerimeterX last night suggests the bug affected folks who used either WhatsApp’s Mac or Windows app paired with an iPhone. The company’s security researcher, Gal Weizman, found vulnerabilities in WhatsApp’s Content Security Policy (CSP) that could be exploited to send manipulated messages and links using Cross-Site Scripting (XSS). He was able to take advantage of these flaws to send malicious code or read files from a computer’s local file system. That could’ve been quite harmful if someone stored sensitive documents on…

This story continues at The Next Web

Or just read more coverage about: WhatsApp


from The Next Web https://ift.tt/397gEpq

No comments:

Post a Comment