Saturday, 22 February 2025
25.8 C
Singapore
25 C
Thailand
23.1 C
Indonesia
26.2 C
Philippines

WhatsApp for Windows security flaw leaves user safety in their own hands

Discover how a security flaw in WhatsApp for Windows impacts users and what you can do to stay safe.

The Windows client for the widely used instant messaging platform WhatsApp had a notable security flaw. However, Meta, the owner of WhatsApp, doesnโ€™t see it as their responsibility to fix it. Instead, they believe it’s up to you to be cautious and avoid getting infected. The good news is that the risk of this flaw affecting you is quite low, so you should be safe.

A security flaw was discovered

Security researcher Saumyajeet Das examined WhatsApp for Windows to identify which file types the client can run natively. Most risky file types, such as .EXE, .COM, .SCR., or .BAT were blocked and can only be run if first saved to the computerโ€™s hard drive. However, there are a few that the client runs directly – .PYZ (Python ZIP app), .PYZW (PyInstaller programme), and .EVTX (Windows event Log file).

This means that if you click โ€œOpenโ€ on any of these files in WhatsApp, they will execute immediately, including any malicious code. But there’s a catchโ€”for this to happen, you need to install Python on your computer, which few people do.

Limited impact

According to BleepingComputer, the requirement to have Python installed limits the targets for software developers, researchers, and power users. Das reported the issue to Meta in early June 2024 and received a response a month and a half later. Meta acknowledged the problem but indicated it had been reported before and stated they wouldnโ€™t address it.

In a statement to BleepingComputer, Meta explained that itโ€™s the userโ€™s responsibility to avoid opening malicious files. “We’ve read what the researcher has proposed and appreciate their submission. Malware can take many forms, including through downloadable files meant to trick a user,โ€ the statement reads. “It’s why we warn users to never click on or open a file from somebody they don’t know, regardless of how they received itโ€”whether over WhatsApp or any other app.”

User responsibility

Meta’s stance is clear: users must stay vigilant and avoid opening files from unknown sources. This advice is essential for maintaining digital safety on WhatsApp and across all platforms and applications. Always be cautious with the files you download and open, and ensure you have the necessary security measures to protect your system.

The flaw in WhatsApp for Windows serves as a reminder of the importance of digital hygiene and being aware of the files you interact with online. While Meta might not fix this issue, staying informed and cautious can help you avoid potential threats and secure your computer.

Hot this week

JBL’s Tour Pro 3 earbuds introduce a more prominent display and more features

JBL's new Tour Pro 3 earbuds offer a larger display, improved sound, and longer battery life. Find out more about these high-end wireless earbuds.

Apple’s first foldable iPhone might not look like a Galaxy Z Fold

Appleโ€™s foldable iPhone may not resemble Samsungโ€™s Z Fold. A wider design and later launch are expected.

Humane’s AI Pin discontinued as HP acquires startup for US$116M

HP has acquired Humane for US$116M, ending AI Pin sales. Customers must back up data before devices stop working on February 28, 2025.

Malaysia benefits as global chip supply shifts

Malaysiaโ€™s semiconductor industry benefits from US-China trade tensions, attracting investment due to its neutrality and strong government support.

Apple may introduce reverse wireless charging on iPhone 17 Pro

Apple may introduce reverse wireless charging in the iPhone 17 Pro, allowing users to power AirPods and Apple Watch without extra cables.

DJIโ€™s RS 4 Mini stabiliser now features advanced subject tracking

DJIโ€™s RS 4 Mini stabiliser introduces subject tracking, improved battery life, and better handling, making it an excellent tool for content creators.

American Airlines introduces AirTag location sharing for lost luggage

American Airlines now supports Appleโ€™s AirTag location sharing, making it easier for passengers to track and recover lost luggage.

Google may launch YouTube Premium Lite in more countries

Google may launch YouTube Premium Lite in the US, Australia, Germany, and Thailand, offering a cheaper plan with fewer ads. Pricing is yet to be confirmed.

Nvidia introduces priority access for RTX 5080 and 5090 Founders Edition GPUs

Nvidia introduces Verified Priority Access for RTX 5090 and 5080 FE GPUs, letting gamers apply for an invite to buy one card per person.

Related Articles