【This Isn't the Twilight Saga: Breaking Dawn 2 XXX Parody】
If you're sending a "View Once" message,This Isn't the Twilight Saga: Breaking Dawn 2 XXX Parody photo, or video through WhatsApp, don't be so sure that the receiver can't view it again.
Security researchers with crypto wallet ZenGo recently discovered a bug that allowed WhatsApp users to view "View Once" messages as many times as they liked.
SEE ALSO: Meta updates WhatsApp and Messenger third-party chats in EuropeIn response, WhatsApp patched the issue. But, ZenGo researchers then discovered another exploit in WhatsApp's temporary fix that once again allowed them to access these messages that had supposedly disappeared.
You May Also Like
WhatsApp View Once exploit
WhatsApp launched its View Once feature in 2021. View Once allows users to send texts, photos, and videos that disappear after the recipient initially accesses them.
Furthermore, to ensure the ephemeral nature of these messages, WhatsApp disables screenshots from being used in the app on View Once messages through iOS and Android. In addition, WhatsApp limits View Once messages to the mobile apps only.
However, in a post last week, ZenGo Security Research Manager Tal Be'ery detailed an exploit that allowed his team to access View Once messages over and over again.
Basically, as Be'ery explains, the View Once messages are only restricted from view in the mobile apps after being viewed. The media continues to exist on WhatsApp's servers. If a user can find the URL for the media file, they can access the message or media file that was supposed to have disappeared.
Be’ery went through the official channels with WhatsApp's parent company Meta and reported the exploit through their bug bounty program on August 26. It was too late though. Be'ery soon found that the bug was already in the wild, as a Chrome extension popped up allowing users to access their already-viewed View Once messages through WhatsApp's web app. ZenGo went public with the exploit and published their report last week on Sept. 9.
Meta's fix and exploit #2
It appears the issue has been taken seriously by Meta, at least after Be’ery went public with the exploit. Meta appears to have released a fix for the WhasApp View Once bug on Sept. 12.
According to a new reportby Be'ery, Meta's patch "changes the way View Once media messages are saved to the application’s databases and redact some of the information that enables the media viewing."
The fix appears to have broken the previously mentioned "View Once Photos Bypass" Chrome extension as well.
Related Stories
- Massive authentication vulnerability risks compromising much of the internet
- CrowdStrike on outage: 'Bad actors will try to exploit events like this'
- OpenAI was hacked last year, according to new report. It didn't tell the public for this reason.
This Tweet is currently unavailable. It might be loading or has been removed.
But, the fix is "still not enough," according to Be'ery and can be exploited with a workaround. In fact, as Be'ery discovered, the creator of the View Once bypass Chrome extension published an update saying that they've already discovered a new exploit in order to once again access View Once media.
Be'ery also publisheda video showing how View Once messages are still accessible.
Meta told Mashable that it's taking multiple steps to deal with the View Once issue. The initial fix was meant to be temporary as Meta restructures how View Once works in WhatsApp on the web.
"As we said before, we are in the process of rolling out multiple updates to View Once on web," a WhatsApp spokesperson told Mashable. "Those additional updates are forthcoming."
UPDATE: Sep. 18, 2024, 2:04 p.m. EDT This piece has been updated with a statement and additional information from Meta.
Topics Cybersecurity Social Media WhatsApp Meta
Search
Categories
Latest Posts
Today's Hurdle hints and answers for May 12, 2025
2025-06-26 04:21So the App Store is basically Yelp now
2025-06-26 03:56Little brother can't help but echo his sister's frustrations
2025-06-26 03:45How to Squeeze the Most Out of Your iPhone's Battery
2025-06-26 03:22Popular Posts
The fat bears are already extremely fat
2025-06-26 04:59Facebook Stories?! Snapchat's main feature is copied again
2025-06-26 03:52Watch how an old Venus spacecraft tumbled before crashing to Earth
2025-06-26 02:15Featured Posts
The Anatomy of Liberal Melancholy
2025-06-26 04:52WikiLeaks wants any climate change data that Trump is ignoring
2025-06-26 03:09Match launches new location
2025-06-26 03:08Contingent No More
2025-06-26 02:35Popular Articles
Samsung Unpacked stream is set for May 12, 2025
2025-06-26 04:56How to mute on Twitter
2025-06-26 04:55Big-League Bluster
2025-06-26 03:17Newsletter
Subscribe to our newsletter for the latest updates.
Comments (665)
Mark Information Network
Best Max streaming deal: Save 20% on annual subscriptions
2025-06-26 04:58Elite Information Network
Solange bought 250 books for fans because she is an angel
2025-06-26 04:38Warmth Information Network
Match launches new location
2025-06-26 03:37Miracle Information Network
9 quick 'Resident Evil 7' Do's and Don'ts to help you survive
2025-06-26 03:11Creation Information Network
Best robot vacuum deal: Get the Roborock Q5 Max for 53% off at Amazon
2025-06-26 02:31