Engineers warned #Meta that nations can monitor chats; staff fear usrael is using this trick to pick assassination targets in Gaza.
https://archive.ph/o1ld8
#fb #Facebook #WhatsApp #why
https://archive.ph/o1ld8
#fb #Facebook #WhatsApp #why
archive.ph
WhatsApp Vulnerability Lets Governments See Who You Message
archived 23 May 2024 18:05:54 UTC
🔴 Using #WhatsApp helps the israeli army pick targets in Gaza
In April 2024, +972 Magazine journalist Yuval Abraham revealed the existence of Lavender AI: a system that automatically picks bombing targets. Lavender collects information on most of the 2.3 million residents of Gaza through a system of mass surveillance, then assesses the likelihood that each particular person is active in Hamas or PIJ, giving almost every single person in Gaza a rating from 1 to 100.
The article said that the current commander of #Unit8200 wrote in a guide book for Lavender AI that the features being used to select targets include “being in a WhatsApp group with a known militant, changing cell phone every few months, and changing addresses frequently.”
“The sources told +972 and Local Call that, during the first weeks of the war, the army almost completely relied on Lavender.” Israel has deployed additional automated systems, e.g., ‘Where's Daddy’ signals when a target has entered his family home.
Last week, The Intercept wrote that many WhatsApp employees fear that Israel has been using a vulnerability based on traffic analysis. According to their assessment: “[Deep Packet] Inspection and analysis of network traffic is completely invisible to us, yet it reveals the connections between our users: who is in a group together, who is messaging who, and (hardest to hide) who is calling who”... [A typical threat is due to peer-to-peer calls between users, which can be disabled on Telegram since many years ago but on WhatsApp only since Nov 8, 2023 !]
And worse ⬇
#why
In April 2024, +972 Magazine journalist Yuval Abraham revealed the existence of Lavender AI: a system that automatically picks bombing targets. Lavender collects information on most of the 2.3 million residents of Gaza through a system of mass surveillance, then assesses the likelihood that each particular person is active in Hamas or PIJ, giving almost every single person in Gaza a rating from 1 to 100.
The article said that the current commander of #Unit8200 wrote in a guide book for Lavender AI that the features being used to select targets include “being in a WhatsApp group with a known militant, changing cell phone every few months, and changing addresses frequently.”
“The sources told +972 and Local Call that, during the first weeks of the war, the army almost completely relied on Lavender.” Israel has deployed additional automated systems, e.g., ‘Where's Daddy’ signals when a target has entered his family home.
Last week, The Intercept wrote that many WhatsApp employees fear that Israel has been using a vulnerability based on traffic analysis. According to their assessment: “[Deep Packet] Inspection and analysis of network traffic is completely invisible to us, yet it reveals the connections between our users: who is in a group together, who is messaging who, and (hardest to hide) who is calling who”... [A typical threat is due to peer-to-peer calls between users, which can be disabled on Telegram since many years ago but on WhatsApp only since Nov 8, 2023 !]
And worse ⬇
#why
⋯ It is possible that WhatsApp's parent company is collaborating with Israel to help it fight ‘terrorism’.
In his blog, Paul Biggar, founder of Tech For Palestine, asks “whether [the Israeli forces] get this information from Meta” directly? “Why has Meta not released their transparency report for the 2nd half of 2023? [...] Will Meta immediately rescind access to any WhatsApp information from the Israeli government, army, and law enforcement?”
He recalls that Meta's “Chief Information Security Officer, Guy Rosen, is their most senior policy decision maker. He is Israeli, lives in Tel Aviv, and was in Unit 8200. Unit 8200 is the Israeli NSA and is the department that built and runs Lavender. Insiders tell me that Rosen is the person most associated with the anti-‘anti-zionism’ policies, and is also responsible for the suppression of Palestinian content.”
Mark Zuckerberg, Meta founder and CEO, has been a “significant supporter of Israel's propaganda”. For example, he donated $125k to ZAKA - one of the groups that created Oct 7 false atrocity propaganda.
On a separate note, WhatsApp's servers store user metadata: social graphs and connection data, this could be tapped by U.S. intelligence under the FISA/PRISM programs, and part of it shared with Israel.
@FaithFrontline
#why #WhatsApp #meta #Facebook #fb #bds
In his blog, Paul Biggar, founder of Tech For Palestine, asks “whether [the Israeli forces] get this information from Meta” directly? “Why has Meta not released their transparency report for the 2nd half of 2023? [...] Will Meta immediately rescind access to any WhatsApp information from the Israeli government, army, and law enforcement?”
He recalls that Meta's “Chief Information Security Officer, Guy Rosen, is their most senior policy decision maker. He is Israeli, lives in Tel Aviv, and was in Unit 8200. Unit 8200 is the Israeli NSA and is the department that built and runs Lavender. Insiders tell me that Rosen is the person most associated with the anti-‘anti-zionism’ policies, and is also responsible for the suppression of Palestinian content.”
Mark Zuckerberg, Meta founder and CEO, has been a “significant supporter of Israel's propaganda”. For example, he donated $125k to ZAKA - one of the groups that created Oct 7 false atrocity propaganda.
On a separate note, WhatsApp's servers store user metadata: social graphs and connection data, this could be tapped by U.S. intelligence under the FISA/PRISM programs, and part of it shared with Israel.
@FaithFrontline
#why #WhatsApp #meta #Facebook #fb #bds
This media is not supported in your browser
VIEW IN TELEGRAM
#Venezuela government mafia spokesperson #Maduro deletes #WhatsApp on live TV, keeps all the other Facebook and Gapps spyware. Minions clap
#idiocracy
#idiocracy
WhatsApp - a tool for israel to track Palestinians?
Ismail Haniyeh's son: My father used WhatsApp a lot, we even had a family group, so tracking him down was not difficult.
israel reportedly installed a malware on Haniyeh phone by WhatsApp before his assassination.
Article:
Hamas leader Ismail Haniyeh was killed after israeli terrorists installed spyware on his cell phone through a WhatsApp message to track his whereabouts that was used to launch a missile strike, Lebanese journalist Elia Manier has claimed.
Numerous reports have repeatedly suggested that the use of WhatsApp messenger to detect Palestinians has been a common practice for the israeli terrorists.
▪️The Palestinian digital rights group Sada Social earlier demanded a probe into the Israel Occupation Forces' (IOF) alleged use of #WhatsApp user data to target Hamas “suspects” in the Gaza Strip with the help of the Israeli AI-aided system, #Lavender. Both Meta (the owners of the popular messaging service) and the #IOF deny the allegations.
Ismail Haniyeh's son: My father used WhatsApp a lot, we even had a family group, so tracking him down was not difficult.
israel reportedly installed a malware on Haniyeh phone by WhatsApp before his assassination.
Article:
Hamas leader Ismail Haniyeh was killed after israeli terrorists installed spyware on his cell phone through a WhatsApp message to track his whereabouts that was used to launch a missile strike, Lebanese journalist Elia Manier has claimed.
Numerous reports have repeatedly suggested that the use of WhatsApp messenger to detect Palestinians has been a common practice for the israeli terrorists.
▪️The Palestinian digital rights group Sada Social earlier demanded a probe into the Israel Occupation Forces' (IOF) alleged use of #WhatsApp user data to target Hamas “suspects” in the Gaza Strip with the help of the Israeli AI-aided system, #Lavender. Both Meta (the owners of the popular messaging service) and the #IOF deny the allegations.
#Pegasus spyware maker #NSO Group is liable for attacks on 1,400 #WhatsApp users.
https://www.theverge.com/2024/12/20/24326342/meta-whatsapp-nso-group-pegasus-spyware-hack-liable
https://www.theverge.com/2024/12/20/24326342/meta-whatsapp-nso-group-pegasus-spyware-hack-liable
The Verge
Pegasus spyware maker NSO Group is liable for attacks on 1,400 WhatsApp users
A trial will move forward to determine damages.
Forwarded from Pegasus NSO & other spyware
Catching Pegasus: Mercenary Spyware and the Liability of the NSO Group - CounterPunch
"
#Pegasus #NSO #Spyware #WhatsApp #US
"
On December 20, the most significant legal decision to date regarding NSO’s conduct was handed down by Senior District Judge Phyllis J. Hamilton of the US District Court for the Northern District of California. Her judgment concerned WhatsApp’s legal suit filed in 2019 against the NSO Group, alleging that Pegasus had been installed on approximately 1,400 mobile phones and devices owned by journalists, activists and diplomats to conduct surveillance upon them. In so doing, WhatsApp alleged that NSO had breached both the federal Computer Fraud and Abuse Act and California’s Comprehensive Computer Data Access and Fraud Act. After five years, the case took an interesting turn with a move by WhatsApp to seek partial summary judgment."
#Pegasus #NSO #Spyware #WhatsApp #US
Analysis of #Paragon’s Graphite #Spyware Operations misusing #WhatsApp Zero-Click #exploit
https://citizenlab.ca/2025/03/a-first-look-at-paragons-proliferating-spyware-operations/
https://t.me/androidMalware
https://citizenlab.ca/2025/03/a-first-look-at-paragons-proliferating-spyware-operations/
https://t.me/androidMalware
■■■■□ Seven things we learned from #WhatsApp vs. #NSO Group #pegasus spyware lawsuit.
https://techcrunch.com/2025/05/13/seven-things-we-learned-from-whatsapp-vs-nso-group-spyware-lawsuit/
https://techcrunch.com/2025/05/13/seven-things-we-learned-from-whatsapp-vs-nso-group-spyware-lawsuit/
TechCrunch
Eight things we learned from WhatsApp vs. NSO Group spyware lawsuit | TechCrunch
The landmark trial between WhatsApp and NSO Group unearthed several new revelations.
Protect Yourself From #Meta’s Latest Attack on Privacy
https://www.eff.org/deeplinks/2025/06/protect-yourself-metas-latest-attack-privacy
#fb #Facebook #Instagram #Whatsapp #why
https://www.eff.org/deeplinks/2025/06/protect-yourself-metas-latest-attack-privacy
#fb #Facebook #Instagram #Whatsapp #why
Electronic Frontier Foundation
Protect Yourself From Meta’s Latest Attack on Privacy
The best way to stop this cycle of invasive tracking techniques and patchwork fixes is to ban online behavioral advertising. This would end the practice of targeting ads based on your online
Samsung fixes #Android #0day that may have been used to spy on #WhatsApp messages
A similar vuln on Apple devices was used against 'specific targeted users' Samsung has fixed a critical flaw that affects its Android devices - but not before attackers found and exploited the bug, which could allow remote code execution on affected devices.…
https://www.theregister.com/2025/09/12/samsung_fixes_android_0day/
A similar vuln on Apple devices was used against 'specific targeted users' Samsung has fixed a critical flaw that affects its Android devices - but not before attackers found and exploited the bug, which could allow remote code execution on affected devices.…
https://www.theregister.com/2025/09/12/samsung_fixes_android_0day/
The Register
Samsung fixes Android 0-day that may have been used to spy on WhatsApp messages
: A similar vuln on Apple devices was used against 'specific targeted users'
Media is too big
VIEW IN TELEGRAM
⚡️WhatsApp Head of Security Fired After Raising Privacy Concerns
The former Head of Security for WhatsApp, Attaullah Baig, has filed a retaliation lawsuit against Meta for firing him after he tried to improve security at WhatsApp.
Baig discovered through red-teaming that 1,500 engineers at Meta had production access to WhatsApp user data, including address books and contact information of friends. Even as Head of Security, he was blocked from logging access to data, creating an inventory of what was stored, or mapping the infrastructure.
When he warned leadership that WhatsApp may be in violation of its FTC order, he was met with retaliation until he was forced out. Inside WhatsApp, leadership downplayed issues and dismissed privacy concerns.
Once again, we see that user growth and profits came first—while protecting people’s privacy never seemed to matter.
🪧 Read the full article on Substack
📲 Get privacy gear
—
🫶 @takebackourtech
📩 WEBSITE & NEWSLETTER | 🎥 VIDEOS| XMPP | SUBSTACK
#WhatsApp #why #meta
The former Head of Security for WhatsApp, Attaullah Baig, has filed a retaliation lawsuit against Meta for firing him after he tried to improve security at WhatsApp.
Baig discovered through red-teaming that 1,500 engineers at Meta had production access to WhatsApp user data, including address books and contact information of friends. Even as Head of Security, he was blocked from logging access to data, creating an inventory of what was stored, or mapping the infrastructure.
When he warned leadership that WhatsApp may be in violation of its FTC order, he was met with retaliation until he was forced out. Inside WhatsApp, leadership downplayed issues and dismissed privacy concerns.
Once again, we see that user growth and profits came first—while protecting people’s privacy never seemed to matter.
🪧 Read the full article on Substack
📲 Get privacy gear
—
🫶 @takebackourtech
📩 WEBSITE & NEWSLETTER | 🎥 VIDEOS| XMPP | SUBSTACK
#WhatsApp #why #meta
📱 Critical zero-click vulnerability (CVE-2025-55177) within #WhatsApp has been leveraged in targeted #spyware operations, in conjunction with an #Apple Imagel0 flaw (CVE-2025-43300).
The attack sequence involved:
🚫Attacker-controlled delivery
🚫Malicious DNG/remote image (Imagel0) parsing vulnerability (OOB write)
➿ Remote code execution
https://techcrunch.com/2025/08/29/whatsapp-fixes-zero-click-bug-used-to-hack-apple-users-with-spyware/
https://blog.quarkslab.com/patch-analysis-of-Apple-iOS-CVE-2025-43300.html
#iphone #ios
This combination enabled malicious actors to disseminate exploits via WhatsApp, resulting in potential data exfiltration from the user's Apple device.
The attack sequence involved:
🚫Attacker-controlled delivery
🚫Malicious DNG/remote image (Imagel0) parsing vulnerability (OOB write)
➿ Remote code execution
All occurring without user engagement.
https://techcrunch.com/2025/08/29/whatsapp-fixes-zero-click-bug-used-to-hack-apple-users-with-spyware/
https://blog.quarkslab.com/patch-analysis-of-Apple-iOS-CVE-2025-43300.html
#iphone #ios
TechCrunch
WhatsApp fixes 'zero-click' bug used to hack Apple users with spyware | TechCrunch
A spyware vendor was behind a recent campaign that abused a vulnerability in WhatsApp to deliver an exploit capable of hacking into iPhones and Macs.