WHATSAPP August 1, 2024 at 11:04 am
According to researchers, WhatsApp has a security flaw that can be easily exploited. We’ll tell you what you should avoid doing in the messenger.
The WhatsApp client for Windows PCs has a security vulnerability. (Source: rafapress/depositphotos.com)
- A security vulnerability was found in WhatsApp for Windows.
- Malicious PHP and Python scripts can be executed directly from the messenger. WhatsApp actually blocks the execution of files on the PC.
- It is recommended not to execute the files directly, but to save them and scan them for viruses.
With WhatsApp for Windows, Meta has been offering an app for using the messenger on computers with Windows 10 and Windows 11 for some time. Researchers have now identified a security vulnerability in this app that can be easily exploited. This affects the sending of files via the messenger.
If you receive a file with the extension .EXE, .COM, .SCR, .BAT, .DLL, .HTA or a VBS or Perl script via WhatsApp, WhatsApp for Windows blocks the direct execution of the file and only allows you to save it. During this time, it is usually checked by your system’s virus scanner for potential threats. As the English-language online magazine BleepingComputer However, as reported by citing its own research and several security researchers, the messenger does not block Python scripts or PHP files.
Windows client does not block PHP and Python scripts
These can be executed directly from the messenger. Attackers can therefore use WhatsApp to spread malicious code. However, in order for this to be executed when the file is opened, a developer environment must be installed on the respective computer. According to BleepingComputer, this is particularly dangerous for developers who use WhatsApp for Windows.
You can easily protect yourself by not running any files directly via WhatsApp, but rather saving them on your computer first and checking them with a good virus scanner before running them. According to BleepingComputer, Meta is not currently planning to block the file formats mentioned, but simply advises against running files directly.
Messenger advises against direct execution
To use WhatsApp on your PC, you can use WhatsApp for Windows or the web client WhatsApp Web. It is currently unclear whether the security vulnerability also affects this.
- » Tipp: The best VPN providers for more security and data protection
- » Buy a balcony power plant: Comparison of the best solar systems
Don’t miss anything with the NETZWELT newsletter
Every Friday: The most informative and entertaining summary from the world of technology!