Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
WhatsApp Flaw Exposes Android Photos via Video Call

WhatsApp Flaw Exposes Android Photos via Video Call

Posted on September 2, 2026 By CWS

A recently discovered flaw in WhatsApp for Android has sparked privacy concerns, as it permits unauthorized access to the phone’s photo gallery through a video call. This vulnerability, revealed by security researcher Jose Rodriguez, is causing alarm due to its ease of exploitation without any technical skill.

Discovery and Reporting

Security expert Jose Rodriguez, known for past discoveries of lock screen bypasses, identified the issue and promptly reported it to Meta and Google. Despite this, a patch has yet to be released, leaving many devices vulnerable. The exploit requires physical access to a locked Android phone but no specialized tools or hacking expertise.

To activate the bug, an individual needs to answer an incoming WhatsApp video call on the locked device. Once the call connects, the effects icon can be tapped, leading to a menu with various tabs. By navigating to the backgrounds tab and selecting “Create with Meta AI,” followed by “Edit photo,” the phone’s entire photo gallery becomes accessible without requiring authentication.

Potential for Misuse

This vulnerability could be particularly dangerous as a tool for stalkerware. It allows anyone with access to the phone, such as a partner or acquaintance, to view private images without the owner’s knowledge. The exploit is stealthy, leaving no indication that the photos were accessed.

Devices like the Google Pixel 6 Pro and Oppo K13 are susceptible, while others like the Samsung Galaxy S25 Ultra are protected by additional authentication measures. The variance in susceptibility suggests the flaw arises from manufacturer-specific lock screen customization rather than core Android issues. Apple’s iPhones remain unaffected due to their use of CallKit, which blocks the exploit.

Mitigation and Recommendations

To mitigate the risk, users can alter WhatsApp’s permission settings to limit its access to photos and videos. By setting permissions to “Allow limited access,” the app can only access a pre-selected set of images, closing the loophole temporarily.

With over two billion users, WhatsApp’s widespread adoption highlights ongoing security challenges where convenience features unintentionally compromise device security. Users should modify their settings promptly and remain vigilant for official updates from Meta or Google to address this issue.

In light of these concerns, it’s imperative for WhatsApp users to take immediate action to secure their devices and protect their privacy from potential exploits.

Cyber Security News Tags:Android, Cybersecurity, Google, Meta, photo gallery, Privacy, Security, video call, Vulnerability, WhatsApp

Post navigation

Previous Post: Authorities Dismantle Sality Botnet, Halting Malware Spread

Related Posts

Hackers Extensively Abuses Visual Studio Code to Execute Malicious Payloads on Victim System Hackers Extensively Abuses Visual Studio Code to Execute Malicious Payloads on Victim System Cyber Security News
Malware Disguised as Teams and Zoom Apps Targets Enterprises Malware Disguised as Teams and Zoom Apps Targets Enterprises Cyber Security News
Microsoft 365 Copilot Vulnerability Sparks Phishing Risks Microsoft 365 Copilot Vulnerability Sparks Phishing Risks Cyber Security News
SEO Campaign Disguises Apps to Spread AsyncRAT SEO Campaign Disguises Apps to Spread AsyncRAT Cyber Security News
New Phising Attack Targeting Travellers from Hotel’s Compromised Booking.com Account New Phising Attack Targeting Travellers from Hotel’s Compromised Booking.com Account Cyber Security News
Pure Crypter Employs Multiple Evasion Techniques To Bypass Windows 11 24H2 Security Features Pure Crypter Employs Multiple Evasion Techniques To Bypass Windows 11 24H2 Security Features Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • WhatsApp Flaw Exposes Android Photos via Video Call
  • Authorities Dismantle Sality Botnet, Halting Malware Spread
  • GitSpawn Vulnerabilities Risk AI Coding Agents
  • OpenLeash Enhances AI Security with Human Oversight
  • Google and Rivals Launch Advanced Cybersecurity AI Models

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • WhatsApp Flaw Exposes Android Photos via Video Call
  • Authorities Dismantle Sality Botnet, Halting Malware Spread
  • GitSpawn Vulnerabilities Risk AI Coding Agents
  • OpenLeash Enhances AI Security with Human Oversight
  • Google and Rivals Launch Advanced Cybersecurity AI Models

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark