Threat Actors Allegedly Selling WhatsApp Crash Exploit on Hacking Forums
A recent discovery on underground hacking forums reveals a new exploit targeting WhatsApp, the popular messaging application.
A recent discovery on underground hacking forums reveals a new exploit targeting WhatsApp, the popular messaging application.
Threat intelligence platforms identified a threat actor allegedly offering a script designed to crash the application on multiple operating systems.
This development underscores the efforts of malicious actors to exploit vulnerabilities in widely used communication platforms.
The threat actor is reportedly selling the exploit for $30, making it accessible to a wide range of potential buyers.
A malicious script is currently being advertised for sale on a dark web hacking forum , according to information from the Dark Web Informer.
The advertisement claims that the script can significantly disrupt the normal functioning of WhatsApp on various devices .
The exploit reportedly targets major mobile operating systems. The seller alleges that the script can crash the WhatsApp application on Android devices.
For iOS users , the exploit is claimed to not only crash the application but also freeze group chats, making that feature unusable.
A recent discovery on underground hacking forums reveals a new exploit targeting WhatsApp, the popular messaging application.
This cross-platform capability increases the exploit's potential impact, affecting a large portion of WhatsApp's user base.
Besides crashing the application, the advertisement lists other disruptive features included in the $30 package.
The script allegedly includes capabilities for call and video call bombing , overwhelming a target user with a rapid succession of incoming calls.
Additionally, the exploit is said to feature spam capabilities, although details of this function were not fully disclosed in the advertisement.
The exploit requires minimal setup, lowering the barrier for potential attackers, according to a post on X by Dark Web Informer .
The seller claims the script can be executed via Termux, a terminal emulator and Linux environment app for Android .
This allows the attack to be launched from a mobile device without a Virtual Private Server or complex infrastructure.
The attacker only needs a virtual phone number to run the script, adding anonymity to the activity.
While the technical details of the vulnerability remain unclear, the availability of such a tool is concerning.
Users are advised to keep their WhatsApp applications updated to the latest version, as developers release patches to address security flaws and improve stability.
Security teams will continue to monitor these forums to analyze threats and provide warnings to the user community.
Based on reporting by Cyber Security News.
