0-Click WhatsApp Vulnerability Exploited via Malicious DNG Image

Smart devices software vulnerabilities
Post Reply
Shane1145
Posts: 1689
Joined: Wed Sep 25, 2024 2:31 pm

0-Click WhatsApp Vulnerability Exploited via Malicious DNG Image

Post by Shane1145 »

A newly disclosed zero-click remote code execution (RCE) vulnerability in WhatsApp is being actively exploited against Apple’s iOS, macOS, and iPadOS platforms.

The flaw, demonstrated in a proof-of-concept by DarkNavyOrg researchers, leverages two distinct vulnerabilities—CVE-2025-55177 and CVE-2025-43300—to silently compromise devices without any user interaction.

Victims receive a malicious DNG image file via WhatsApp and, upon automatic parsing, suffer complete device takeover.


https://cyberpress.org/0-click-whatsapp-vulnerability/
Post Reply