HomeTechnologyNew WhatsApp flaw allows hackers to bypass authorisation and steal personal data, warns government: Tips to secure your account

New WhatsApp flaw allows hackers to bypass authorisation and steal personal data, warns government: Tips to secure your account

India’s cybersecurity watchdog, CERT-In, has issued a high-severity warning about a newly discovered authorization bypass vulnerability in WhatsApp. The flaw, tracked as CVE-2025-55177.

September 01, 2025 / 18:12 IST
Story continues below Advertisement
whatsapp
whatsapp

India’s cybersecurity watchdog, CERT-In, has issued a high-severity warning about a newly discovered authorization bypass vulnerability in WhatsApp. The flaw, tracked as CVE-2025-55177, affects certain versions of WhatsApp for iOS, WhatsApp Business for iOS, and WhatsApp for Mac, and could potentially allow attackers to gain unauthorized access to sensitive user data.

What’s the risk?

Story continues below Advertisement

According to CERT-In’s advisory (CIVN-2025-0200), the vulnerability stems from improper authorization handling in linked device synchronization messages. By exploiting this flaw, hackers could trick WhatsApp into processing malicious content from arbitrary URLs on the victim’s device.

This could lead to exposure of personal chats, media, and sensitive user information. In some cases, the vulnerability has been observed alongside an Apple OS-level flaw (CVE-2025-43300), suggesting that it may have been leveraged in targeted cyberattacks.