Moneycontrol PRO
Black Friday Sale
Black Friday Sale
HomeTechnologyWhatsApp fixes security flaw used in iPhone, Mac spyware hacks

WhatsApp fixes security flaw used in iPhone, Mac spyware hacks

: WhatsApp has patched a serious vulnerability in its iOS and Mac apps that was exploited in a spyware campaign targeting fewer than 200 people worldwide. The flaw, when chained with a separate Apple bug, allowed hackers to break into devices without any user interaction.

August 30, 2025 / 09:41 IST
WhatsApp

WhatsApp on Friday confirmed it has fixed a critical security flaw that left some iPhone and Mac users vulnerable to advanced spyware attacks. The Meta-owned messaging service said the vulnerability, tracked as CVE-2025-55177, was patched in recent app updates.

The flaw was linked to another bug in Apple devices, CVE-2025-43300, which the company fixed last week. Together, the two weaknesses formed a zero-click exploit, capable of compromising a device without requiring the victim to click a link or interact with the app.

Amnesty International’s Security Lab, which investigated the campaign, said the spyware attacks had been ongoing since late May and described them as highly sophisticated. Once exploited, the chain allowed attackers to access sensitive data, including private WhatsApp messages.

Meta said it detected the activity weeks ago and notified fewer than 200 affected users. The company did not identify the perpetrators but confirmed that the incident bore similarities to previous government-linked spyware campaigns.

WhatsApp has a history of being targeted by surveillance vendors. In 2019, spyware maker NSO Group exploited a similar zero-day to install Pegasus spyware, leading to a U.S. court ordering NSO to pay WhatsApp $167 million in damages. Earlier this year, WhatsApp also disrupted a campaign using Paragon spyware that targeted journalists in Italy.

The latest discovery underscores the ongoing threat of zero-day vulnerabilities being exploited against high-risk individuals, even on fully patched Apple devices.

Invite your friends and family to sign up for MC Tech 3, our daily newsletter that breaks down the biggest tech and startup stories of the day

MC Tech Desk Read the latest and trending tech news—stay updated on AI, gadgets, cybersecurity, software updates, smartphones, blockchain, space tech, and the future of innovation.
first published: Aug 30, 2025 09:40 am

Discover the latest Business News, Sensex, and Nifty updates. Obtain Personal Finance insights, tax queries, and expert opinions on Moneycontrol or download the Moneycontrol App to stay updated!

Subscribe to Tech Newsletters

  • On Saturdays

    Find the best of Al News in one place, specially curated for you every weekend.

  • Daily-Weekdays

    Stay on top of the latest tech trends and biggest startup news.

Advisory Alert: It has come to our attention that certain individuals are representing themselves as affiliates of Moneycontrol and soliciting funds on the false promise of assured returns on their investments. We wish to reiterate that Moneycontrol does not solicit funds from investors and neither does it promise any assured returns. In case you are approached by anyone making such claims, please write to us at grievanceofficer@nw18.com or call on 02268882347