Comment on WhatsApp Security VulnerabilityparentComments−NullCharacter11yIt's a little more guileful than that, and it definitely is a flaw with WhatsApp not validating their file types/formats.−sambe11yBut only a little - you could argue the vast majority of e-mail attachments are .doc etc with parsing bugs rather than straight .exe. Contrary to the gushing "using only their phone number" in the article, they admit that gullibility is required.
Comments
It's a little more guileful than that, and it definitely is a flaw with WhatsApp not validating their file types/formats.
But only a little - you could argue the vast majority of e-mail attachments are .doc etc with parsing bugs rather than straight .exe. Contrary to the gushing "using only their phone number" in the article, they admit that gullibility is required.