Photonews Logo Photonews logo
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Azad Jammu Kashmir
    • Balochistan
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
    Bridgerton Season 4 trailer
    EntertainmentVideos

    Bridgerton Season 4 Trailer Reveals Benedict’s Love Story

    December 26, 2025 2 Min Read
    Christopher Nolan The Odyssey trailer
    Videos

    Christopher Nolan Drop ‘The Odyssey’ Trailer

    December 23, 2025 2 Min Read
    Supergirl trailer Milly Alcock
    EntertainmentVideos

    DC Releases First ‘Supergirl’ Trailer Starring Milly Alcock

    December 12, 2025 2 Min Read
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Reading: WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn
PhotoNews PakistanPhotoNews Pakistan
Font ResizerAa
Search
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Balochistan
    • Azad Jammu Kashmir
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Have an existing account? Sign In
Follow US
© 2022 Photonews. All Rights Reserved.
WhatsApp malware campaign
PhotoNews Pakistan > Tech > WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn
Tech

WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn

Web Desk
By Web Desk Published January 9, 2026 2 Min Read
Share
File Photo
SHARE

Cybersecurity researchers have warned of a large-scale malware campaign actively exploiting popular messaging platforms, with WhatsApp at the centre of the operation.

According to researchers, attackers are using compromised WhatsApp accounts to send automated messages containing malicious links or files. Once a user clicks an attachment, malware installs on the system, often before antivirus software can respond.

Security firms report that the malware usually appears as an ordinary document or file. After activation, it deploys multiple loaders on Windows systems and relies on PowerShell and other scripting tools to bypass detection. The malicious code remains hidden within encrypted strings and delays execution until it has evaluated the system environment.

⚠️ Astaroth banking malware is now using WhatsApp as its main delivery channel in Brazil.

Researchers report a new Python-based module that steals a victim’s contact list and auto-sends malicious ZIP files, spreading the infection chat to chat.

🔗 How the campaign works and… pic.twitter.com/TKekC70Vv5

— The Hacker News (@TheHackersNews) January 8, 2026

Once active, the malware establishes persistence by creating scheduled tasks or modifying registry entries. It then focuses on stealing sensitive data, including banking credentials. Investigators say the campaign has been running since at least September 24, 2025, and uses ZIP files, PowerShell scripts, and Python-based tools to exfiltrate stolen information.

Cybersecurity experts have urged users to avoid clicking on unknown links or files, even when messages appear to come from trusted contacts. They also recommend strong passwords and two-factor authentication to secure WhatsApp accounts.

🛡️ WhatsApp Vulnerabilities Leak Users’ Metadata Including Device’s Operating System Details

Source: https://t.co/o3Oyxxfu0A

WhatsApp's multi-device encryption protocol has long leaked metadata, allowing attackers to fingerprint users' device operating systems, aiding targeted… pic.twitter.com/S2shAH80CL

— Cyber Security News (@The_Cyber_News) January 6, 2026

Authorities describe the campaign as highly dangerous and stress the need for stronger online security habits. The incident highlights the growing sophistication of cyber threats targeting everyday communication platforms, making vigilance and proactive protection more important than ever.

TAGGED:Featured
Share This Article
Facebook Twitter Pinterest Whatsapp Whatsapp LinkedIn Email Copy Link Print
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Advertisement

HBL Saving Made Easy
HBL Saving Made Easy

Recent Posts

Travis Kelce retirement decision

Travis Kelce Considering NFL Return, Seeks Taylor Swift’s Approval

net metering in Pakistan

Net Metering Share Rises in Pakistan as Solar Adoption Accelerates

PP-167 Lahore postal ballot

ECP Issues Postal Ballot Instructions for PP-167 Lahore By-Election

Post Archives

More Popular from Photonews

Canada visa-free entry
World

Canada Expands Visa-Free Travel for 13 Countries Under eTA Program

2 Min Read
Ji-young Yoo Critics Choice Awards
Entertainment

Ji-young Yoo Reveals Wild Fan Moment at 2026 Critics Choice Awards

2 Min Read
Jackass 5
Entertainment

Jackass 5 Set for 2026 Cinema Release, Johnny Knoxville Confirms

3 Min Read
Tech

Intel Positioned as Long-Term Play on US Semiconductor Manufacturing Revival

Intel Corporation is emerging as a strategic investment linked to the resurgence of US semiconductor manufacturing,…

January 6, 2026
World

Iran Faces Near-Total Internet Blackout Amid Nationwide Economic Protests

Iran has reportedly experienced a severe disruption to internet services as nationwide protests intensify over the…

January 9, 2026
Uncategorized

Samsung Galaxy S26 Price Leak Suggests No Increase in 2026

Samsung users may have a reason to celebrate. New reports suggest the company plans to hold…

January 3, 2026
Pakistan

Japan Announces Training Scholarship for Pakistani Teachers

The Government of Japan has officially announced the MEXT Teachers Training Scholarship 2026 for Pakistani teachers.…

January 7, 2026
PhotoNews Pakistan

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Categories

  • World
  • Pakistan
  • Punjab
  • Sindh
  • Khyber Pakhtunkhwa
  • Balochistan
  • Azad Jammu Kashmir

 

  • Top News
  • Business
  • Entertainment
  • Sports
  • Videos
  • Tech
  • Offbeat
  • Blog
  • About Us
  • Privacy Policy
  • Code of Ethics & Editorial Standards

© 2026 Phototnews
All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?