Skip to main content

WhatsApp and Telegram users are still vunerable to Cyber attacks.

WhatsApp and Telegram users are still vunerable to Cyber attacks.






All those users who are using the web versions of WhatsApp and Telegram are at the risk of being cyber attacked. Yes, you have read it right! A vulnerability which hasn’t been patched yet could allow hackers to gain control over accounts and access personal data using a malware-laced image.

Moreover, this security flaw can make hackers gain control of personal data such as contacts, shared files, as well as private messages.
Ironically, the exploit which can expose the personal info of users, utilizes the same encryption which is meant to protect user messages from espionage.

Technically speaking, WhatsApp and Telegram use an end-to-end encryption, designed to make sure only senders and recipients are entitled to view the content in the messages.

The negative side of this process is that it prevents the application in checking for malicious codes on the message contents. So, users who send malicious content in messages can easily creep into the security checks and disrupt the work functions of a smartphone or tablet.

It’s like laying a booby trap by sharing an infected file- say a meme image, with a malicious code and succeeding in the activity.

Comments

Popular posts from this blog

10 Important Cybersecurity Practices for your Business

  10 Important Cybersecurity Practices for your Business 1. EDUCATION  It’s much easier to prevent a hack than it is to recover from a hack. Once your company’s sensitive data is stolen through a ransomware attack, recovering it is often a long and arduous process. Teaching employees about basic security, personal cybersecurity, and the prevalence of cyber threats goes a long way in stopping ransomware attacks before they can really do damage. Your employees should understand that they might be targets of malicious actors, eager to exploit any entry they can find in your company. The average cost of a cyberattack is 3.86 million and the cumulative total for global cybercrime is expected to cost $6 trillion. If you don’t pay to train your employees about cybersecurity best practices eventually you may end up paying more in the long run. High quality and free trainings for your employees are available from several government resources including Department of Homeland Security. 2. BETTER

What is Zero Trust?

  Zero trust  is a security model based on the principle of maintaining strict access controls and not trusting anyone by default, even those already inside the network perimeter. Zero Trust  is a security concept that requires all users, even those inside the organization’s enterprise network, to be authenticated, authorized, and continuously validating security configuration and posture, before being granted or keeping access to applications and data. This approach leverages advanced technologies such as multifactor authentication, identity and access management (IAM), and next-generation endpoint security technology to verify the user’s identity and maintain system security. Zero Trust is a significant departure from traditional network security , which followed the “trust but verify” method. The traditional approach automatically trusted users and endpoints within the organization’s perimeters, putting the organization at risk from malicious internal actors and allowing unauthorize

Nearly 500,000 workers are needed in cybersecurity roles around the country

The push to work from home during the coronavirus pandemic is straining cybersecurity professionals around the country tasked with ensuring workers are able to not only work efficiently from remote locations — but to do so safely. This rapid shift is a tall order for an industry that was already in need of skilled professionals long before the pandemic took hold.  Cybersecurity workers were taken off some or all of their typical security duties to assist with other IT-related tasks, including equipping mobile workforces, according to an April survey from global nonprofit (ISC)2, the largest association of certified cybersecurity professionals. The survey of 256 cyber pros found nearly half were re-tasked and that a quarter said cybersecurity incidents increased since the transition to remote work, with some seeing as many as double the number of incidents. Separate data from another nonprofit cybersecurity group, the Information Systems Security Association, found a 63% increase in cyb