Help Net Security·2 min read

click" WeChat worm could hijack accounts and spread via a single call

Z
Zeljka Zorz
click" WeChat worm could hijack accounts and spread via a single call
Dive DeeperCreate a free account to unlock

“Zero-click” WeChat worm could hijack accounts and spread via a single call Researchers with security company Calif have discovered, weaponized, and privately reported to Tencent a critical vulnerability that allowed them to create “WeWorm”, a worm that spreads via WeChat calls without any user interaction.

During its rampage, the WeWorm compromises the WeChat account of each user, and uses the saved contacts to propagate itself further, potentially reaching millions of devices within hours.

The worm can hop from smartphone to smartphone, regardless of whether they are running iOS or Android, as shown in this demo :

“Simply by calling a victim, WeWorm can hijack their account and call their friends,” the researchers explained.

Continue reading on Headlinne

Create a free account to read the full article.

Read full article →

Get smarter about the news

Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.

Create free account

Already have an account? Sign in