Skip to main content
Security AI

Calif demo shows zero-click WeChat worm; Tencent says exploit mitigated

Security firm Calif published a demo of WeWorm, which it describes as the first zero-click worm spreading through WeChat calls on iOS and Android. In the demo, a call from a compromised contact hijacked a victim's WeChat account while the phone was still ringing, and the compromised device then called the next target. Calif says the bug was a memory corruption issue in WeChat's VoIP stack, that it reported the flaw to Tencent on July 24, and that Tencent mitigated the exploit server-side for all users by August 28. Calif says it built the exploit with AI assistance and is withholding technical details until a conference presentation.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from calif.io and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
AI Capital
AI Capital

Epsilon Health exits stealth with $20M Series A led by AlleyCorp

Epsilon Health, an AI-enabled radiology practice that contracts with radiologists using its software to generate image reports faster, emerged from stealth with a $20 million Series A round led by AlleyCorp, CEO Rustin Rassoli tol...