
Sri Lanka CERT has warned iPhone users in the country about a newly identified zero-click WhatsApp account takeover attack, following complaints from several individuals, including members of the media and business community.
According to Sri Lanka CERT, the attack is reportedly targeting iPhones running vulnerable versions of iOS 16 and could allow attackers to gain access to WhatsApp accounts without requiring any action from the victim.
Victims have reported unauthorized WhatsApp messages requesting money transfers, while suspicious linked devices were not visible in their account settings. Hackers have also reportedly taken control of WhatsApp groups administered by affected users.
A forensic investigation by an Italian security firm indicates that attackers may be exploiting vulnerabilities affecting linked-device synchronization.
The attack is believed to affect devices running iOS versions below 16.7.12 and is considered more sophisticated than conventional QR-code phishing attacks.
Sri Lanka CERT has advised users to immediately update iOS and WhatsApp to their latest versions, enable two-step verification and chat lock features, and independently verify any unusual requests for money through another trusted communication channel.
The warning highlights the growing use of zero-click exploitation techniques by financially motivated cybercriminals and the importance of keeping mobile devices and applications updated. (Newswire)
