Researchers built a zero-click worm, dubbed WeWorm, that takes over WeChat accounts through incoming calls before Tencent's August fix.
Tencent researchers escaped a container and reached host root through an 18-year-old SCTP use-after-free.