Tuesday , April 15 2025
WhatsApp

CVE-2025-30401
Alert! WhatsApp Vuls Let Attackers Execute Malicious Code

The spoofing vulnerability, CVE-2025-30401, impacts all WhatsApp Desktop versions for Windows before 2.2450.6, posing a risk to users dealing with attachments on the platform.

According to the official security advisory, the application “displayed attachments according to their MIME type but selected the file opening handler based on the attachment’s filename extension.”

Top 10 Malware Threats of the Week: Reports ANY.RUN

Cybersecurity platform ANY.RUN recently reported the top 10 malware threats of the week, highlighting a surge in activity for information...
Read More
Top 10 Malware Threats of the Week: Reports ANY.RUN

Hackers Exploit Ivanti VPN Vulns 12 Countries to Infiltrate Multiple Orgs

In late March, TeamT5 found that a China-linked APT group exploited a critical vulnerability in Ivanti Connect Secure VPN appliances,...
Read More
Hackers Exploit Ivanti VPN Vulns 12 Countries to Infiltrate Multiple Orgs

Hackers Allegedly Advertise To Sell FortiGate Firewall 0-Day Exploit

A threat actor is reportedly advertised to sell a zero-day exploit for Fortinet's FortiGate firewalls on a dark web forum....
Read More
Hackers Allegedly Advertise To Sell FortiGate Firewall 0-Day Exploit

New Security Companies Who Are Exploring the Bangladeshi Market 

BlackHat Asia-2025 was held for four days at the Marina Bay Convention Center in Singapore in early April. Infosecbulletin covered...
Read More
New Security Companies Who Are Exploring the Bangladeshi Market 

Hackers retain access to patched FortiGate VPNs using symlinks

Recent incidents continue to bring this into focus with active exploitations of known vulnerabilities as investigations by Fortinet have discovered...
Read More
Hackers retain access to patched FortiGate VPNs using symlinks

CISA Releases Ten Industrial Control Systems Advisories

The Cybersecurity and Infrastructure Security Agency (CISA) has released ten new advisories regarding Industrial Control Systems (ICS) to highlight serious...
Read More
CISA Releases Ten Industrial Control Systems Advisories

Bangladesh Revenue Market For Data Center Is Projected US$615.59m in 2025

Highlights: # Revenue in the Data Center market is projected to reach US$615.59m in 2025. # Network Infrastructure dominates the...
Read More
Bangladesh Revenue Market For Data Center Is Projected US$615.59m in 2025

Hackers breach US bank regulator’s email system for year

The U.S. Treasury Department's Office of the Comptroller of the Currency said on Tuesday, opens new tab that emails of...
Read More
Hackers breach US bank regulator’s email system for year

Fortinet Addresses Multiple Vulnerabilities In Its Various Products

Fortinet has fixed several vulnerabilities in its products, including FortiAnalyzer, FortiManager, FortiOS, FortiProxy, FortiVoice, FortiWeb, and FortiSwitch. The vulnerabilities include...
Read More
Fortinet Addresses Multiple Vulnerabilities In Its Various Products

Microsoft patched 134 Windows security flaws including a zero-day

Microsoft's April security update, released on Tuesday, addressed 121 vulnerabilities, marking the largest patch for the year. Despite a high...
Read More
Microsoft patched 134 Windows security flaws including a zero-day

This discrepancy created a dangerous loophole for malicious actors. When a user receives a WhatsApp attachment, the app shows the file type based on its MIME type (e.g., as an image), while the operating system opens the file based on its extension (e.g., .exe).

An attacker can create a file with a misleading MIME type and filename extension, tricking users into unintentionally running harmful code when they open what seems to be a safe attachment.

WhatsApp for Windows Vulnerability:

The attack is alarming because it exploits user trust. A cybercriminal could send a seemingly normal image file on WhatsApp, but it may actually be an executable file.

Opening this attachment in WhatsApp can lead to executing harmful code instead of viewing an image.

“A maliciously crafted mismatch could have caused the recipient to inadvertently execute arbitrary code rather than view the attachment when manually opening the attachment inside WhatsApp,” stated the official advisory from Facebook, WhatsApp’s parent company.

The summary of the vulnerability is given below:

Impact & Affected Versions:

The vulnerability impacts all versions of WhatsApp Desktop for Windows starting from version 0.0.0 up to but not including 2.2450.6.

CVE-2025-30401 has a high severity rating because it may allow remote code execution, potentially leading to unauthorized access or data theft.

Security analysts warn that this vulnerability is especially risky in group chats, as harmful attachments can affect multiple victims at once.
Messaging platforms have faced security issues before. In 2024, researcher Saumyajeet Das found a vulnerability in WhatsApp for Windows that allowed Python and PHP scripts to run without warning.

Users should update WhatsApp for Windows to version 2.2450.6 or later to fix the spoofing vulnerability.

Check Also

24000 unique IP

24,000 unique IP attempted to access Palo Alto GlobalProtect portals

GreyNoise has detected a sharp increase in login scanning aimed at Palo Alto Networks PAN-OS …

Leave a Reply

Your email address will not be published. Required fields are marked *