Invader Or Intruder Of Privacy: WhatsApp Web Should Have Another Secure Way

Shehu Awwal
Shehu Awwal
Published in
2 min readMar 21, 2019

Whats App have already implemented a security measure to the App, which includes end to end encryption to Two Factor Authentication/Two Step Verification, and also if there’s a bug or vulnerability found in the App, Any one can report it and have a bounty depending on how critical the vulnerability is. I think there should be something else to WhatsApp web.
There’s a quote: If someone/attacker has your device for sometime, at that time or moment that your phone is not yours, but that person.

A friend of mine was discussing with me about how someone hacked into her phone knowing her chats, So i was thinking, If probably that person would be so skillful probably installing a backdoor or a kind of app that will allow him to sniff her chats, I asked her if probably may be the device has been rooted, she said she doesn’t know what that is all about, Then later on she told me, he has her device for some minutes before returning it back to her, then which i figured out, It is WhatsApp Web.

WhatsApp web

Alot of people of don’t check the WhatsApp Web to see the list of devices or browsers currently connected to their phone, There’s an App also on Google Playstore called WhatsApp, Instead of login from PC, you can just the App and all the conversations will be seen.

If the question will be while should you give your phone to some one you don’t trust, Depending on the condition that warrant that, I dont know how WhatsApp will secure this feature, So that it won’t be abused.

What To Do Before Something Else Can Be Implemented.

My advice is once in a while, always check your WhatsApp web in the menu, to see probably if there’s a connected device/browser and then log them out, if there’s any.

--

--

Shehu Awwal
Shehu Awwal

Hacker — Passionate About InfoSec, Linux, Clouds, Containers, Virtualization, Distributed Systems And Architectures And New Trends.