Massive breach at WhatsApp puts 1.5 bn users at risk

Agencies
May 14, 2019

San Francisco, May 14: Facebook's WhatsApp urged users to upgrade to the latest version of its popular messaging app after reporting that users might be vulnerable to having malicious spyware installed on phones without their knowledge.

WhatsApp, one of the most popular messaging tools, is used by 1.5 billion people monthly and it has touted its high level of security and privacy, with messages on its platform being encrypted end to end.

"WhatsApp encourages people to upgrade to the latest version of our app, as well as keep their mobile operating system up to date, to protect against potential targeted exploits designed to compromise information stored on mobile devices," a spokesman said.

"We are constantly working alongside industry partners to provide the latest security enhancements to help protect our users," he said. WhatsApp did not elaborate further.

WhatsApp informed its lead regulator in the European Union, Ireland's Data Protection Commission (DPC), of a "serious security vulnerability" on its platform.

"The DPC understands that the vulnerability may have enabled a malicious actor to install unauthorised software and gain access to personal data on devices which have WhatsApp installed," the regulator said in a statement.

"WhatsApp are still investigating as to whether any WhatsApp EU user data has been affected as a result of this incident," the DPC said, adding that WhatsApp informed it of the incident late on Monday.

Earlier, the Financial Times (FT) reported that a vulnerability in WhatsApp allowed attackers to inject spyware on phones by ringing up targets using the app's phone call function.

It said the spyware was developed by Israeli cyber surveillance company NSO Group and affects both Android and iPhones. The FT said WhatsApp could not yet give an estimate for how many phones were targeted.

The FT reported that teams of engineers had worked around the clock in San Francisco and London to close the vulnerability and it began rolling out a fix to its servers on Friday last week and issued a patch for customers on Monday.

Asked about the report, NSO said its technology is licensed to authorised government agencies "for the sole purpose of fighting crime and terror," and that it does not operate the system itself while having a rigorous licensing and vetting process.

"We investigate any credible allegations of misuse and if necessary, we take action, including shutting down the system. Under no circumstances would NSO be involved in the operating or identifying of targets of its technology, which is solely operated by intelligence and law enforcement agencies," the company said.

WhatsApp disclosed the issue to the US Department of Justice last week, the FT said.

Social media giant Facebook bought WhatsApp in 2014 for $19 billion.

Facebook co-founder Chris Hughes last week wrote in The New York Times that fellow co-founder Mark Zuckerberg had far too much influence by controlling Facebook, Instagram and WhatsApp, three core communications platforms, and called for the company to be broken up.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 5,2024

hdknikhil.jpg

Bengaluru: In a major legal twist, an FIR has been filed against Union Minister H.D. Kumaraswamy, his son Nikhil Kumaraswamy, and their close associate Suresh Babu. The trio is accused of threatening a senior IPS officer and making false allegations against him. The FIR, registered by the Sanjaynagar police, follows a complaint by Additional Director General of Police (ADGP) M. Chandrasekhar, who heads the Special Investigation Team (SIT) under the Karnataka Lokayukta.

Allegations Against Kumaraswamy
The crux of the case revolves around ADGP Chandrasekhar's investigation into Kumaraswamy's alleged illegal approval of a mining lease to Sri Sai Venkateshwara Minerals (SSVM). Kumaraswamy, currently serving as Union Minister for Steel and Heavy Industries, has been accused of bypassing legal procedures in favor of SSVM, prompting Chandrasekhar to seek the Karnataka Governor's approval to pursue legal action.

In response, Chandrasekhar claims that Kumaraswamy lashed out publicly. On September 28 and 29, the former Karnataka Chief Minister held press conferences, accusing the officer of bribery, misuse of medical records, and personal misconduct. According to the ADGP, Kumaraswamy also issued a threat of transferring him to another cadre outside Karnataka.

Nikhil and Aide Suresh Babu Involved
Kumaraswamy’s son Nikhil Kumaraswamy is also implicated in the controversy. On September 29, Nikhil allegedly echoed his father’s accusations against Chandrasekhar. The third individual named in the FIR, Suresh Babu, a close aide to Kumaraswamy, is accused of escalating the issue by writing a letter to the Karnataka Chief Secretary. This letter, containing further allegations, was made public on social media, adding to the pressure on the senior officer.

Legal Action and Charges
Though Chandrasekhar's complaint was filed in October, formal legal proceedings began on November 4 after securing approval from the 42nd Additional Chief Metropolitan Magistrate (ACMM). The charges include Section 224 (threat of injury to a public servant) of the Bharatiya Nyaya Sanhita (BNS). A police source familiar with the case confirmed the charges.

ADGP Chandrasekhar's Response
In a strong rebuttal, ADGP Chandrasekhar addressed his team and the media, branding Kumaraswamy as an accused person trying to intimidate the SIT. He emphasized that these attacks were intended to undermine his officers' morale and interfere with the investigation.

“An accused, no matter how powerful, remains an accused. This attempt to instill fear in the minds of officers is meant to hinder justice," Chandrasekhar said in a written statement. Referring to Kumaraswamy, he added, "This accused, who is currently out on bail, has resorted to such tactics to shake our resolve."

Quoting Shaw to Drive the Point Home
In a dramatic conclusion, Chandrasekhar cited playwright George Bernard Shaw, saying, “Never wrestle with pigs. You both get dirty, and the pig likes it,” signaling his intent to remain unshaken in the face of public accusations and personal threats.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 7,2024

lebanon.jpg

The Israeli regime has killed at least 40 people during new airstrikes against eastern Lebanese areas, besides targeting the country’s capital Beirut with fresh acts of aggression.

Lebanon’s health ministry announced the fatalities on Wednesday, saying 53 other people had also been wounded during the aerial attacks that targeted the country’s Bekaa Valley, including the city of Baalbek.

In early Thursday, the regime was also reported to have attacked Beirut’s southern suburbs, including a site adjacent to Rafiq Hariri International Airport.

The attacks came after the regime issued short-notice evacuation orders apparently directed at the residents of the areas, claiming that the areas contained facilities belonging to Lebanon’s Hezbollah resistance movement.

Tel Aviv has been using similar claims on countless occasions since last October, when it markedly intensified its deadly acts of aggression against Lebanon, in order to try to justify the escalation. Hezbollah has, however, invariably refuted the claims.

Also on Wednesday, the United Nations warned in its most recent flash report on the humanitarian crisis caused by the Israeli atrocities targeting Lebanon that the aggression had “reached a critical point.”

The attacks have claimed the lives of more than 3,000 people, which was “58 percent more than the 1,900 fatalities” that were caused by the regime’s 2006 war against Lebanon, the report said.

“Additionally, an estimated 1.3 million people have been displaced, both within Lebanon and into neighboring countries, 33 percent more than the number of people displaced in 2006,” it added.

Women comprised the majority of those who had been rendered homeless within Lebanon as a result of the Israeli attacks, the report noted.

It also regretted that the Israeli attacks had featured 78 assaults on healthcare facilities across the country that had claimed the lives of 130 health workers and injured 111 others.

In response to the aggression, Hezbollah has been staging hundreds of retaliatory strikes against the occupied Palestinian territories and the Israeli forces trying to advance on southern Lebanese areas.

The movement has vowed to sustain its strikes until the regime ends the escalation.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
November 11,2024

Udupi, Nov 11: A traveller reportedly lost ₹4.1 lakh after attempting to book a cab online in Udupi. 

At around 1:30 PM on November 7, the man from West Bengal searched for car rentals on Google and selected a website named "Shakti Car Rentals." Shortly after, he was contacted by someone claiming to be "Rohit Sharma," who directed him to pay a registration fee of ₹150 on the site.

After unsuccessful payment attempts via both his Canara Bank debit card and SBI credit card (without receiving an OTP), "Rohit Sharma" instructed him to pay the driver directly. But at 1:47 PM, he received messages showing deductions of ₹3.3 lakh from his SBI credit card and ₹80,056 from his Canara Bank debit card, totaling ₹4.1 lakh.

The complainant alleges fraud through a deceptive link disguised as a booking token fee. A case has been registered at Udupi Town Police Station.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.