logo

WeChat worm could pwn a friend before they even answered the call

ID: c1350cab-e6af-5fa0-875e-2dd3b94bb13c

STIX ID: report--c1350cab-e6af-5fa0-875e-2dd3b94bb13c

Feed Name: The Register (Security)

Threat Score
75/100

Date Published: 2026-09-09

Date Updated: 2026-09-10

...
...

Researchers at Calif disclosed a zero-click VoIP memory corruption vulnerability in WeChat, called "WeWorm," that enabled remote code execution and an automated worm to spread between friends via calls on iOS and Android without the recipient answering; Tencent released a patch on August 21 and key technical details remain withheld while the researchers prepare a full presentation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.