
WhatsApp Users Targeted by Sophisticated Spyware Attack
WhatsApp stopped a phishing attack trying to install spyware on user phones. Learn how to spot these dangerous messages.
Source
TechCrunch Security
Original headline: WhatsApp says it caught new spyware attacks linked to NSO Group in violation of court order
Plain-English summary by GetCyberRight. Read the full report at the source above.
WhatsApp recently blocked a phishing campaign that was attempting to install spyware on users' phones. The attack was linked to NSO Group, a company that makes surveillance software. WhatsApp caught the attack and disrupted it, protecting users from having their private messages, photos, and other phone data stolen. This type of spyware can secretly record calls, read messages, and access your camera and microphone.
This attack targeted WhatsApp users through phishing messages. If you received any suspicious messages on WhatsApp asking you to click links, download files, or verify your account, you could have been targeted. The spyware typically tricks people into clicking something that looks legitimate but actually installs malicious software. WhatsApp has over 2 billion users worldwide, so attacks like this can reach many people.
Stay one step ahead of scammers
Weekly cybersecurity briefings for families. No spam, just the threats that matter and what to do about them.
Here is what to do right now to protect yourself. First, delete any suspicious messages you received on WhatsApp, especially those with unexpected links or asking you to download anything. Second, never click on links in WhatsApp messages unless you are absolutely certain they are from someone you know and were expecting. Third, update your WhatsApp app to the latest version through your phone's official app store. Fourth, review your phone settings and remove any apps you do not recognize or did not intentionally install. To stay protected going forward, treat WhatsApp messages with the same caution as emails and text messages. Legitimate companies will never ask you to click links to verify your account through messaging apps. Be especially suspicious of messages that create urgency, like claiming your account will be closed. If someone you know sends you an unexpected link, message them separately to confirm they actually sent it. Their account may have been compromised. Keep your phone's operating system and all apps updated, as updates often include security fixes.
Curated from trusted cybersecurity sources by GetCyberRight
Source: TechCrunch SecurityStay ahead of cyber threats
Get our free weekly digest. Real threats, plain language, what to do about them. No spam, ever.
More articles

Microsoft Pulls 73 Code Libraries After Hackers Plant Password Stealers
Microsoft removed dozens of its own code repositories after attackers secretly injected malware designed to steal passwords and personal information.
3 min read
Microsoft's Own Code Repositories Hacked: What Families Need to Know
Attackers injected password-stealing malware into 73 Microsoft GitHub repositories, highlighting new risks in how software reaches your devices.
3 min readMicrosoft's GitHub Accounts Hacked: What Families Need to Know
Hackers compromised 73 official Microsoft repositories on GitHub to spread password-stealing malware. Here's what happened and how to protect yourself.
4 min read
Encrypted chats expose Kosovar organised crime network behind EUR 80 million criminal empire
Messages exchanged on the encrypted communication platform SKY ECC have exposed a Kosovar-based organised crime network in large-scale drug trafficking, the use of fraudulent IDs, illegal possession o
1 min read