logo

Should We Chat, Too? FAQ

ID: f8973e47-c4ff-55c6-ae36-dd1bbcf7905e

STIX ID: report--f8973e47-c4ff-55c6-ae36-dd1bbcf7905e

Feed Name: The Citizen Lab

Threat Score
15/100

Date Published: 2024-10-15

Date Updated: 2026-04-19

Author: Mona Wang

...
...

This research reverse-engineers WeChat’s network encryption, revealing an inner Business-layer Encryption wrapped by an outer proprietary MMTLS layer; it identifies minor security issues (including a metadata leak exposing user account IDs at the Business-layer) but finds that MMTLS prevents practical exploitation and that overall network confidentiality remains intact, while noting WeChat is not end-to-end encrypted and servers can read message contents.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.