Photonews Logo Photonews logo
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Azad Jammu Kashmir
    • Balochistan
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
    Zayn Malik
    Videos

    Zayn Malik Releases Die For Me Music Video Ahead of New Album

    February 6, 2026 3 Min Read
    Masters of the Universe teaser
    Videos

    Masters of the Universe Teaser Reveals Nicholas Galitzine as He-Man

    January 22, 2026 3 Min Read
    Bridgerton Season 4 trailer
    EntertainmentVideos

    Bridgerton Season 4 Trailer Reveals Benedict’s Love Story

    December 26, 2025 2 Min Read
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Reading: WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn
PhotoNews PakistanPhotoNews Pakistan
Font ResizerAa
Search
  • Home
  • Pakistan
    • Punjab
    • Sindh
    • Khyber Pakhtunkhwa
    • Balochistan
    • Azad Jammu Kashmir
    • Gilgit – Baltistan
  • World
  • Business
  • Entertainment
  • Videos
  • Sports
  • Technology
  • Offbeat
  • Blog
  • Contact
Have an existing account? Sign In
Follow US
© 2022 Photonews. All Rights Reserved.
WhatsApp malware campaign
PhotoNews Pakistan > Tech > WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn
Tech

WhatsApp Malware Campaign Exploits Compromised Accounts, Experts Warn

Web Desk
By Web Desk Published January 9, 2026 2 Min Read
Share
File Photo
SHARE

Cybersecurity researchers have warned of a large-scale malware campaign actively exploiting popular messaging platforms, with WhatsApp at the centre of the operation.

According to researchers, attackers are using compromised WhatsApp accounts to send automated messages containing malicious links or files. Once a user clicks an attachment, malware installs on the system, often before antivirus software can respond.

Security firms report that the malware usually appears as an ordinary document or file. After activation, it deploys multiple loaders on Windows systems and relies on PowerShell and other scripting tools to bypass detection. The malicious code remains hidden within encrypted strings and delays execution until it has evaluated the system environment.

⚠️ Astaroth banking malware is now using WhatsApp as its main delivery channel in Brazil.

Researchers report a new Python-based module that steals a victim’s contact list and auto-sends malicious ZIP files, spreading the infection chat to chat.

🔗 How the campaign works and… pic.twitter.com/TKekC70Vv5

— The Hacker News (@TheHackersNews) January 8, 2026

Once active, the malware establishes persistence by creating scheduled tasks or modifying registry entries. It then focuses on stealing sensitive data, including banking credentials. Investigators say the campaign has been running since at least September 24, 2025, and uses ZIP files, PowerShell scripts, and Python-based tools to exfiltrate stolen information.

Cybersecurity experts have urged users to avoid clicking on unknown links or files, even when messages appear to come from trusted contacts. They also recommend strong passwords and two-factor authentication to secure WhatsApp accounts.

🛡️ WhatsApp Vulnerabilities Leak Users’ Metadata Including Device’s Operating System Details

Source: https://t.co/o3Oyxxfu0A

WhatsApp's multi-device encryption protocol has long leaked metadata, allowing attackers to fingerprint users' device operating systems, aiding targeted… pic.twitter.com/S2shAH80CL

— Cyber Security News (@The_Cyber_News) January 6, 2026

Authorities describe the campaign as highly dangerous and stress the need for stronger online security habits. The incident highlights the growing sophistication of cyber threats targeting everyday communication platforms, making vigilance and proactive protection more important than ever.

TAGGED:Featured
Share This Article
Facebook Twitter Pinterest Whatsapp Whatsapp LinkedIn Email Copy Link Print
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Advertisement

Recent Posts

Christopher Nolan The Odyssey trailer

Christopher Nolan Odyssey Runtime Under Three Hours

Oil barrels, stacks of U.S. dollars, an oil pump and a tanker ship in a graphic about crude oil prices.

Crude Oil Prices Hit $122.53 on Iran Supply Fears

Twitch Streamer Isaiah Thomas moments before hit by car.

Twitch Streamer Isaiah Thomas Hit During Charity Walk

Post Archives

More Popular from Photonews

The Federal Investigation Agency (FIA)'s logo
Pakistan

FIA Launches Nationwide Crackdown Against Money Laundering

2 Min Read
Karachi Water Crisis
Sindh

Karachi Water Supply Suspension for 48 Hours

2 Min Read
Zavion Thomas Bears pick
Sports

Zavion Thomas Bears Pick Adds Round 3 Speed

6 Min Read
Sports

Carlos Alcaraz French Open Withdrawal Shocks Fans

The Carlos Alcaraz French Open withdrawal has been confirmed ahead of the 2026 tournament, with the…

April 25, 2026
Entertainment

D4vd Brother Post Draws Attention Amid Case

D4vd brother post drew fresh attention after Caleb Burke shared a strongly worded Instagram Story on…

April 26, 2026
Khyber Pakhtunkhwa

Parachinar Airport Reopens After Six Trial Flights

Parachinar Airport in Khyber Pakhtunkhwa has reopened after Pakistan Army Aviation completed six successful trial landings…

April 27, 2026
Pakistan

Pakistan Hot Weather Warning Issued for Plains

The Pakistan Meteorological Department warned that hot weather conditions would intensify across most plains over the…

April 26, 2026
PhotoNews Pakistan

Always Stay Up to Date

Subscribe to our newsletter to get our newest articles instantly!

Categories

  • World
  • Pakistan
  • Punjab
  • Sindh
  • Khyber Pakhtunkhwa
  • Balochistan
  • Azad Jammu Kashmir

 

  • Top News
  • Business
  • Entertainment
  • Sports
  • Videos
  • Tech
  • Offbeat
  • Blog
  • About Us
  • Privacy Policy
  • Code of Ethics & Editorial Standards

© 2026 Phototnews
All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?