Gen Digital researchers have disclosed GhostPairing, a technique that leverages WhatsApp’s multi-device functionality via social engineering to enable persistent, low-noise access to user communications.

The case highlights how legitimate features can become attack surfaces when paired with deception rather than technical exploitation.

Open discussion: how can platforms mitigate abuse of trusted workflows without degrading user experience?

Follow TechNadu for objective threat analysis and security research updates.

Source: https://www.techrepublic.com/article/news-whatsapp-ghostpairing/

#InfoSec #ThreatResearch #SocialEngineering #MessagingSecurity #PrivacyEngineering #CyberRisk

Researchers disclosed that delivery-receipt behavior in WhatsApp and Signal can be leveraged to observe device activity using silent reactions, edits, and deletions.

Only a phone number is needed, and there’s no user control to disable receipts.
What types of safeguards would you consider appropriate here?

Source: https://gbhackers.com/hackers-exploit-delivery-receipts-in-messaging-app/

Follow us for measured, research-driven cybersecurity reporting.

#InfoSec #Cybersecurity #MobileSecurity #ThreatResearch #Privacy #MessagingSecurity #SecurityAwareness #TechNews #CyberRisk #DigitalSafety

Swedish government wants to get access to your encrypted messaging communication.
Exactly how are they thinking of doing that?
I am no tech specialist, even I have been online since early 1990s. I may very well miss something or be ignorant of some aspects, but..

OK, let's say Swedish government wants backdoors to messaging apps.
Signal refuses and leaves Sweden.
So, is the Swedish government going to demand that of everyone messaging app?
Signal, WhatsApp, etc, they are centralised, so could perhaps work.

But what about smaller, "unknown", decentralised messaging services? Like SimpleX? How are you going to get them to comply?

Or XMPP/Jabber with OMEMO encryption? That is a not an app, not even a messaging service, but a protocol, similar to email.
Do you think every developer of an XMPP app is going to comply? That is, if you are even capable of finding them? And that goes for the XMPP servers, as well. "Anyone" can set up an encrypted XMPP server.

1/2

#signal #MessagingSecurity #chatcontrol #XMPP #backdoors

Gearing up for some more development on encrypting and decrypting messages for kids.

Just renamed my one-time pad encryptio library to something that was possible to remember:

otp-encryption-js

First thing is to make emojis unique over different versions of unicode emoji versions.

Then look at one-time pad exchange between phones.

#onetimepad #encryption #JavaScript #development #messaging #MessagingSecurity

https://github.com/eklem/otp-encrypt-js

GitHub - eklem/otp-encrypt-js: One-time pad encrypting and decrypting messages. Library of helper-functions for all the steps in the process.

One-time pad encrypting and decrypting messages. Library of helper-functions for all the steps in the process. - eklem/otp-encrypt-js

GitHub

iMessage and Secure Communication

In the process of updating my blog to align with Fediverse standards and protocols, I realized that iMessage could be a great option for secure communication. I wasn’t aware that you can prompt a link to open a new iMessage chat.

By creating a disposable iMessage alias and disabling unknown FaceTime calls, you can keep your contact information accessible while maintaining clear boundaries. 🙂

Meta Enhances Safeguards Against Teen Grooming on Instagram and Facebook

New Measures Aim to Strengthen Protections, Empower Guardians, and Enhance User Safety

Review Space

🌐 **АНОНС ТЕСТИРОВАНИЯ DELTA CHAT: В ЗОНЕ БЕЗОПАСНОСТИ И ИННОВАЦИЙ** 🚀

Привет, киберсообщество! Готовьтесь к захватывающему путешествию в мир безопасной переписки с Delta Chat! 🛡️💬

Я, Alterego, отправляюсь в увлекательный космос тестирования, чтобы определить лучший сервер Delta Chat с точки зрения безопасности и выявить все дополнительные возможности, скрытые в этом космическом клиенте электронной почты. 🌌🔍

Буду исследовать каждый уголок этого космического чата, нацеленного на безопасность и инновации. Скоро вы узнаете, какой сервер обеспечит вам непревзойденную степень защиты и уникальные функции для вашего космического общения! 🚀🌐

Открывайте для себя новые горизонты с Delta Chat! Присоединяйтесь ко мне в этом увлекательном путешествии, а ваши предложения и советы будут весьма ценными! 💡🌟

**Хэштеги:**
1. #DeltaChatExploration
2. #SecureMessaging
3. #InnovationQuest
4. #CyberSecurityJourney
5. #DeltaServerShowdown
6. #ChatSecurity
7. #EmailInnovation
8. #TechDiscovery
9. #TestingDeltaChat
10. #DigitalSafetyMission
11. #DeltaChatAdventure
12. #SafeCommunication
13. #ServerSecurityCheck
14. #InnovativeChatFeatures
15. #TechTesting
16. #SecurityAnalysis
17. #ExploreDeltaOptions
18. #CyberSpaceTesting
19. #SecureChatQuest
20. #DeltaChatInFocus
21. #EmailSecurityScan
22. #TechExploration
23. #DeltaDiscoveries
24. #MessagingSecurity
25. #TechPioneeringDelta

EU Commission to staff: Switch to Signal messaging app

The move is part of EU’s efforts to beef up cybersecurity, after several high-profile incidents shocked diplomats and officials.
https://www.politico.eu/article/eu-commission-to-staff-switch-to-signal-messaging-app/
#MessagingSecurity #signal #eu

EU Commission to staff: Switch to Signal messaging app

The move is part of EU’s efforts to beef up cybersecurity, after several high-profile incidents shocked diplomats and officials.

POLITICO
#Signal Is Finally Bringing Its #MessagingSecurity to the Masses. With new features comes additional complexity, which may add more chances for #security #vulnerabilities to slip into Signal's engineering, warns Matthew Green, a cryptographer at Johns Hopkins University. 
https://www.wired.com/story/signal-encrypted-messaging-features-mainstream/
#messaging #opensource
Signal Is Finally Bringing Its Secure Messaging to the Masses

The encryption app is putting a $50 million infusion from WhatsApp cofounder Brian Acton to good use, building out features to help it go mainstream.

New WhatsApp Bug Could Have Let Hackers Spy On Users Just by Sending MP4 Video

New WhatsApp Flaw (CVE-2019-11931) Could Have Allowed Hackers to Install Spyware On Your Device Just by Singing MP4 Media File