WhatsApp, njengezinye izinhlelo zokusebenza ze-smartphone ezifana neTelegram ne-Snapchat, ayikhululwanga ekuhluphekeni kwemigodi ethile yezokuphepha ebeka engcupheni idatha yabasebenzisi bayo. Lokhu kuye kwabonakala esikhathini esedlule, futhi namanje, esibhekene nenye inkinga engathinta ubumfihlo besibalo sabantu esingacacisiwe.
Inkinga entsha ye-WhatsApp eyenzeka namuhla ihlobene nayo amafayela we-MP4 anonya. Lokhu kudluliswe ngokusemthethweni yiFacebook, ngakho-ke sekuyaphenywa futhi kuzophela maduze.
Ngokuningiliziwe, ngokwalokho okumbuliwe, i-MP4 ingasebenzisa umaki ngokuthumela ifayela le-MP4 elakhiwe ngokukhethekile. Isigenge esingahle sibe khona singafaka ikhodi ngokuhlaziya imethadatha yokusakaza eyiqiniso yefayela le-MP4 elingadala i-DoS (ukwenqaba ukuhlaselwa kwensizakalo) noma lingaqala ukwenziwa kwekhodi ekude. Awudingi ukuqinisekiswa ukwenza lokhu kuhlasela ukude. Le nkampani ihlukanise ukuba sengozini njenge-'Critical 'ngenxa yemiphumela emibi engadalwa uma umuntu esebenzisa kabi lo mbobo.
Isiphazamisi esibucayi sitholakala kuzinguqulo ze-WhatsApp ngaphambi kuka-2.19.274 kuzinguqulo ze-Android ne-iOS ngaphambi kuka-2.19.100. Ngokufanayo, inkinga ikhona kuzinguqulo ze-Enterprise client 2.25.3 nangaphambilini; Izinhlobo zeWindows zifakiwe nangaphambi kuka-2.18.368; IBusiness for Android version 2.19.104 nangaphambilini; Ibhizinisi lezinguqulo ze-iOS ngaphambi kuka-2.19.100.
Abaduni bangajova i-malware noma iyiphi ikhodi ecacile engaba nayo kuphazamise idatha nolwazi olubalulekile lwabasebenzisi abahlukahlukene. Kungaba umnyango wangemuva wezinhloso zokuqapha. Kodwa-ke, inkinga yatholwa yithimba langaphakathi futhi ayidalulwanga yinoma yimuphi umcwaningi noma umhlaziyi. Kepha akekho owaziyo ukuthi othile ubengayisebenzisa ukuthola idatha.
Siyethemba ukuthi inkampani izokhipha isibuyekezo esisheshayo ngokufaka inkinga. Inkinga ingalungiswa ngaphansi kwekhodi ethi 'CVE-2019-11931'.