logo

WhatsApp's 'View Once' could be 'View Whenever' due to a flaw

ID: f2871996-947f-58e7-8883-886c9f0ddeef

STIX ID: report--f2871996-947f-58e7-8883-886c9f0ddeef

Feed Name: The Register (Security)

Threat Score
65/100

Date Published: 2024-09-09

Date Updated: 2026-04-26

Author: Iain Thomson

...
...

Zengo security researchers discovered that WhatsApp's "View Once" media protection can be bypassed because the servers provide the same media as regular messages with only a flag indicating "view once"; attackers or third-party apps can clear that flag to save or forward the media. Proof-of-concept modified Android clients and a Chrome extension were found on GitHub, a demo video exists, and the issue has been reported to Meta who are preparing a fix.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.