By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Cybersecurity Beat - News & Alerts
Search
  • Home
  • News & Alerts
  • Articles
  • Features
  • Spotlight
  • Resources
  • About
    • Mission
    • Services
    • Contact
Reading: Silent Account Hijack Exploits iOS 16 Image Flaw to Take Over WhatsApp
Ad imageAd image
Cybersecurity Beat - News & AlertsCybersecurity Beat - News & Alerts
Font ResizerAa
Search
  • News & Alerts
  • Articles
  • Spotlight
  • Features
  • Resources
Have an existing account? Sign In
Follow US
  • About CSB
  • Services
  • Contact
  • Privacy
  • Legal
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
News & Alerts

Silent Account Hijack Exploits iOS 16 Image Flaw to Take Over WhatsApp

A zero click attack exploits two vulnerabilities to silently hijack WhatsApp accounts on iOS 16 devices, leaving no trace in linked devices settings.

CSBadmin
Last updated: May 27, 2026 11:01 am
CSBadmin
2 Min Read
Share
SHARE

Attack Overview

A sophisticated zero click attack is actively targeting WhatsApp users on iOS 16, enabling attackers to hijack accounts without any victim interaction. According to an investigation by Italian security firm Forenser, victims running iOS 16 on iPhone models from the 8 to 14 have reported their accounts being silently taken over. The attackers send unauthorized messages requesting money transfers, yet no suspicious devices appear in the Linked Devices section, making the breach nearly invisible to the user.

Contents
Attack OverviewTechnical Exploitation Chain

Technical Exploitation Chain

The attack combines two distinct vulnerabilities to achieve the silent takeover. An image processing flaw in Apple ImageIO allows the delivery of a malicious payload through image files, while a separate vulnerability in WhatsApp’s linked device synchronization enables the extraction of cryptographic session data. This data is then used to initialize a rogue WhatsApp client that operates in parallel with the victim’s legitimate session. Forenser’s analysis found unusual resync events in iOS logs, revealing that both the attacker’s and victim’s clients were competing for control. The attack can be reproduced in lab settings, confirming that session hijacking occurs without any user awareness or forensic traces like new device pairings. Users should immediately update their devices to the latest available iOS and WhatsApp versions to mitigate the risk.

Source: Cyber Security News

CSBadmin

The latest in cybersecurity news and updates.

TAGGED:Account TakeoverImageIOZero Click
Share This Article
Facebook Print
ByCSBadmin
Follow:
The latest in cybersecurity news and updates.
Previous Article Credential Theft Emerges as the New Goal in Software Supply Chain Attacks
Next Article Apple Develops iPhone Auto Lock Feature That Triggers on Theft Detection

Trending

US Executives Plead Guilty in Tech Support Scam Ring
May 27, 2026
Iranian Threat Group Expands Global Espionage With DLL Side Loading Technique
May 27, 2026
Apple Develops iPhone Auto Lock Feature That Triggers on Theft Detection
May 27, 2026
Credential Theft Emerges as the New Goal in Software Supply Chain Attacks
May 26, 2026
Urgent Update: Three Critical Flaws Patched in UniFi OS
May 26, 2026

Related Stories

CSBadmin

SAP Patches 21 Vulnerabilities, Including Three Critical Flaws in NetWeaver

CSBadmin

New Open Source Framework Automates Bug Bounty Testing with 50 Specialized Agents

CSBadmin

Qilin Ransomware Uses RDP History to Accelerate Lateral Movement

CSBadmin

Secret Blizzard Upgrades Kazuar Into Modular Espionage Botnet

Ad imageAd image
csb-sized
  • About CSB
  • Services
  • Contact
  • Privacy
  • Legal

© 2026 Cybersecurity Beat. All rights reserved.

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?