By using this site, you agree privacy policies
Accept
Geek RoomGeek RoomGeek Room
  • Home
  • Tech
    TechShow More
    Split Technology Park welcomes first tenants: 26 MPSs and 6 startups
    October 31, 2024
    INNVEST Summit 2024: A premier event for innovation and economic competitiveness in the Western Balkans
    October 31, 2024
    Diaspora 4 Innovation: Kick-off event launches a new era for Albanian higher education
    October 31, 2024
    AI for good: Generative AI – Tirana chapter empowers Albanian Youth in tech innovation
    October 29, 2024
    Business Angel Summit 2024: Pioneering Investment and Startup Growth in Sarajevo
    October 29, 2024
  • Mobile
    MobileShow More
    Xiaomi 15 and 15 Pro set to launch on October 29: Official renders released
    October 24, 2024
    Dangerous virus infects millions of mobile phones through popular apps
    October 3, 2024
    The new iPhone 16 arrives in Croatia with a steep price tag
    September 26, 2024
    Beware of these phone numbers: Block them immediately to avoid scams
    September 11, 2024
    Beyond the brand: What really matters when buying a mobile phone
    September 5, 2024
  • Apps
    AppsShow More
    Shoppable widget by EmbedSocial: Revolutionizing E-commerce with authentic shopper content
    October 31, 2024
    Intel prevails in long-running legal battle against €1 billion EU fine
    October 31, 2024
    New definition of open source artificial intelligence released by OSI
    October 29, 2024
    CaSys introduces “Pay by Link” payment service for SMEs in Macedonia
    October 24, 2024
    Kickstarter surpasses $8 billion in donations across all projects
    October 17, 2024
  • Science
    ScienceShow More
    Sofia Tech Park: A thriving innovation hub for Southeast Europe
    October 29, 2024
    Breakthrough in prostate cancer treatment: Croatian scientists develop Vini, a tool to predict effective drug combinations
    October 24, 2024
    Digital Realty partners with Ecolab to pilot AI-powered water conservation solution
    October 24, 2024
    Sofia Tech Park to host the Southeast European Innovators Challenge Conference
    October 11, 2024
    ACG accelerates European growth with major expansion in Croatia
    October 9, 2024
  • Gaming
    GamingShow More
    “Windblown” – The new game from the creators of Dead Cells
    October 24, 2024
    Kraken Empire’s Journey and the creative brilliance of Toy Tactics
    October 21, 2024
    Serbian game studio Tricoman set to make a mark with their new RPG ‘Godforged’ on Steam
    October 16, 2024
    Release the demon with Kill Knight: A phenomenal combat experience with untapped potential
    October 14, 2024
    Nordeus launches new football game “Top Goal: Football Champion” in Serbia
    October 9, 2024
  • Cars
    CarsShow More
    Serbia signs strategic agreement with Hyundai Engineering for 1 GW of Solar Power
    October 16, 2024
    Stara Zagora: Poised to lead Bulgaria’s automotive revolution
    October 15, 2024
    Dacia unveils new Bigster: The flagship model for the C-SUV segment
    October 9, 2024
    Kineton Albania: Pioneering innovation in the automotive industry
    October 8, 2024
    Albania’s vehicle numbers surge in 2024: 73% of registered cars are over 15 years old
    August 20, 2024
  • Entertainment
    EntertainmentShow More
    Where are Generation Z’s famous tech entrepreneurs?
    October 29, 2024
    AllWeb offers special discounts for startups: A unique opportunity for networking and growth
    October 23, 2024
    Montenegro census reveals no ethnic majority, Montenegrins and Serbs nearly equal
    October 16, 2024
    “Primordial Passion” is the first luxury Albanian watch valued at €1.4 million by Argjendari Pirro
    October 15, 2024
    Albania takes the stage at BIG event Paris: Culture and innovation as economic drivers
    October 12, 2024
Search
Reading: This secret WhatsApp vulnerability lets governments see who you message
Notification Show More
Aa
Geek RoomGeek Room
Aa
  • Tech
  • Mobile
  • Apps
  • Science
  • Gaming
  • Cars
  • Entertainment
Search
  • Home
  • Tech
  • Mobile
  • Apps
  • Science
  • Gaming
  • Cars
  • Entertainment
Geek Room > Blog > Apps > This secret WhatsApp vulnerability lets governments see who you message
Apps

This secret WhatsApp vulnerability lets governments see who you message

Last updated: 2024/05/23 at 8:03 PM
Share
5 Min Read

Menlo Park, CA – WhatsApp’s security team issued an internal warning in March, alerting colleagues about potential vulnerabilities to government surveillance despite the app’s powerful encryption. The warning, detailed in a threat assessment obtained by The Intercept, revealed that while the contents of messages among WhatsApp’s 2 billion users remain secure, governments are potentially bypassing encryption through traffic analysis. This technique allows them to determine which users are communicating, the membership of private groups, and possibly even the locations of users.

The threat assessment underscores the danger of traffic analysis, a network-monitoring technique that can reveal communication patterns by observing internet traffic on a large scale. The document highlights that WhatsApp is not the only messaging platform vulnerable to such surveillance. Still, it urges Meta, WhatsApp’s parent company, to decide whether to prioritize the app’s functionality or the safety of its most at-risk users.

“WhatsApp should mitigate the ongoing exploitation of traffic analysis vulnerabilities that make it possible for nation states to determine who is talking to who,” the assessment urged. “Our at-risk users need robust and viable protections against traffic analysis.”

The warning gained particular attention against the backdrop of the ongoing war on Gaza, raising concerns that Israel might be exploiting this vulnerability to monitor Palestinians. Four WhatsApp employees speculated that Israel’s use of digital surveillance could be influencing targeting decisions in Gaza, as part of a broader surveillance program.

Meta spokesperson Christina LoNigro emphasized that WhatsApp has no backdoors and no evidence of vulnerabilities in its encryption. LoNigro described the document’s findings as “theoretical” and not unique to WhatsApp. However, she did not respond when asked if the company had investigated whether Israel was exploiting this vulnerability.

The assessment illustrates how governments can use their access to internet infrastructure to monitor encrypted communications, similar to observing a mail carrier delivering a sealed envelope. This surveillance can reveal powerful inferences about who is conversing, even if the content of the conversations remains secure. The document notes that even if WhatsApp’s encryption is unbreakable, ongoing “collect and correlate” attacks can still undermine user privacy.

The WhatsApp threat assessment does not cite specific instances of state actors using this method but refers to reports from The New York Times and Amnesty International about how countries spy on dissidents using similar techniques. Metadata, which includes information about the who, when, and where of conversations, holds immense value for intelligence, military, and police agencies worldwide. Former NSA chief Michael Hayden famously quipped, “We kill people based on metadata.”

The discussion around these vulnerabilities intensified following an exposé by +972 Magazine and Local Call, revealing that Israel’s army uses a software system called Lavender to algorithmically assign ratings to Palestinians in Gaza, potentially marking them for assassination. The system considers a multitude of personal characteristics and digital behaviours, including WhatsApp usage.

The report indicates that WhatsApp usage is among the many personal characteristics the Israeli military uses to determine targets. This raised concerns among Meta employees about the possibility of WhatsApp data feeding into Israel’s surveillance and targeting systems.

Meta spokesperson Andy Stone denied any specific targeting of employee discussions about the war and emphasized the company’s general workplace conduct rules. Nevertheless, concerned employees have organized under the campaign Metamates 4 Ceasefire, demanding transparency and an end to internal censorship.

The internal assessment highlights the difficulty of protecting users against traffic analysis without compromising the app’s performance. Adding delays to messages or transmitting decoy data could help, but such measures may affect user experience and increase data usage.

To WhatsApp’s security personnel, the solution lies in a unified effort within the company to build protections for at-risk users. The assessment suggests adopting a hardened security mode similar to Apple’s “Lockdown Mode” for iOS, though this could inadvertently highlight users as targets.

Meta’s ongoing efforts to address these vulnerabilities reflect the complex balance between privacy and functionality in messaging apps. As governments continue to exploit digital surveillance techniques, the stakes remain high for protecting user data and maintaining trust in encrypted communication platforms.

You Might Also Like

Split Technology Park welcomes first tenants: 26 MPSs and 6 startups

INNVEST Summit 2024: A premier event for innovation and economic competitiveness in the Western Balkans

Shoppable widget by EmbedSocial: Revolutionizing E-commerce with authentic shopper content

Intel prevails in long-running legal battle against €1 billion EU fine

Diaspora 4 Innovation: Kick-off event launches a new era for Albanian higher education

Share This Article
Facebook Whatsapp Whatsapp Copy Link
Previous Article Meta’s Ray-Ban glasses will post Instagram stories for you
Next Article RCC launches Balkathon 5.0, the fifth edition of digital competition in Western Balkans

Social networks

Instagram Follow

Latest news

Split Technology Park welcomes first tenants: 26 MPSs and 6 startups
Tech October 31, 2024
INNVEST Summit 2024: A premier event for innovation and economic competitiveness in the Western Balkans
Tech October 31, 2024
Shoppable widget by EmbedSocial: Revolutionizing E-commerce with authentic shopper content
Apps October 31, 2024
Intel prevails in long-running legal battle against €1 billion EU fine
Apps October 31, 2024

Related articles

Tech

Split Technology Park welcomes first tenants: 26 MPSs and 6 startups

October 31, 2024
Tech

INNVEST Summit 2024: A premier event for innovation and economic competitiveness in the Western Balkans

October 31, 2024
Apps

Shoppable widget by EmbedSocial: Revolutionizing E-commerce with authentic shopper content

October 31, 2024
Apps

Intel prevails in long-running legal battle against €1 billion EU fine

October 31, 2024

About us

Geek Room is dedicated to technology and its enthusiasts through real-time information and videos about the latest innovations. Connect with our staff via email at: [email protected]
For cooperation opportunities, write to us at: [email protected]

Find us:

© 2023 Geekroom All Rights Reserved. Developed by MIMS
adbanner
AdBlock Detected
Our site is an advertising supported site. Please whitelist to support our site.
Okay, I'll Whitelist
Welcome Back!

Sign in to your account

Lost your password?