WhatsApp fixed zero-day flaw used to deploy Paragon Graphite spyware
ID: 67e4b1ca-b7d1-5bb5-8bae-92f5c5c04e24
STIX ID: report--67e4b1ca-b7d1-5bb5-8bae-92f5c5c04e24
Feed Name: Security Affairs
Threat Score
WhatsApp mitigated a zero-click, zero-day vulnerability that was exploited to deploy Paragon/Graphite spyware against targeted individuals (primarily journalists and civil society), notifying about 90 likely victims after disrupting the campaign in December 2024. Citizen Lab analysis linked Paragon’s infrastructure and certificates to the spyware and suggested several countries as customers; WhatsApp sent Paragon a cease-and-desist and is pursuing further action.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
