They discover how to falsify the content and sender of WhatsApp messages
Although the messaging application continues to grow and offer new privacy features as in the last update for Android, the theme of security continues to be its greatest handicap Or at least that is what is discovered after the presentation of two Spanish security experts at the security congress Rooted CON held a couple of days ago. And there is a method to modify the content and the sender of the messages sent.Something that could give more than one headache.
Even after the latest application updates, which seem to have hardened the service barriers with new codes and passwords throughout the process of sending and receiving messages, WhatsApp seems not to have thought of all the possibilities. Thus, although there are now four protections: one from mobile to server, another from server to mobile , and two more codes, it is possible to draw around them and know them to carry out all kinds of misdeeds.
By knowing these protections, a third party is able to intercept the message that leaves the sender's mobile and modify it before it reaches the server . Without knowing the keys, the messaging service would recognize the changes and block the message.However, these researchers have discovered how to make the server believe that it is a message from the sender, even though its content has been modified. Of course, it is a very complex process that requires advanced knowledge in security
What is really striking are the possible consequences of this practice. And it is possible to introduce a hoax into a conversation, make someone believe that they are talking to a person who in reality is not, modify contents of messages”¦ questions that would invalidate this service as evidence in court, for example, since that after this modification process no trace of it remains Not even the servers are capable of detecting it when they are deceived with the correct codes discovered and used when falsifying the content or the sender.Quite serious issues from various points of view, despite the fact that it is not a widespread practice due to its great difficulty. However, it shows that WhatsApp is still not the most secure tool.
The researchers who have discovered this new vulnerability are already well-known in this field of security in Spain It is about Pablo San Emeterio and Jaime Sánchez Security experts who have already discovered other bugs in well-known applications likeSnapchat or Viber Now recheck the security ofWhatsApp is still not the most powerful despite being the most used application. An issue that will not surprise all users but that can have the most varied and malicious applications.
Now we have to wait to see if those responsible for WhatsApp take any action or protect the sending process with new codes and more protectionsSomething that users shouldn't be too scared of, but that puts the spotlight back on this well-known and widespread communication tool.