Lawsuit About WhatsApp Security
WhatsApp前安全负责人Attaullah Baig提起诉讼,指控Facebook故意未修复安全漏洞,违反2019年与FTC的和解协议。2022年每天约10万用户账户被黑,去年增至40万。Baig指出WhatsApp缺乏数据保护措施,导致每天约4亿用户资料被不当复制用于诈骗。 2025-9-15 11:5:45 Author: www.schneier.com(查看原文) 阅读量:6 收藏

Attaullah Baig, WhatsApp’s former head of security, has filed a whistleblower lawsuit alleging that Facebook deliberately failed to fix a bunch of security flaws, in violation of its 2019 settlement agreement with the Federal Trade Commission.

The lawsuit, alleging violations of the whistleblower protection provision of the Sarbanes-Oxley Act passed in 2002, said that in 2022, roughly 100,000 WhatsApp users had their accounts hacked every day. By last year, the complaint alleged, as many as 400,000 WhatsApp users were getting locked out of their accounts each day as a result of such account takeovers.

Baig also allegedly notified superiors that data scraping on the platform was a problem because WhatsApp failed to implement protections that are standard on other messaging platforms, such as Signal and Apple Messages. As a result, the former WhatsApp head estimated that pictures and names of some 400 million user profiles were improperly copied every day, often for use in account impersonation scams.

More news coverage.

Tags: , , ,

Posted on September 15, 2025 at 7:05 AM0 Comments

Sidebar photo of Bruce Schneier by Joe MacInnis.


文章来源: https://www.schneier.com/blog/archives/2025/09/lawsuit-about-whatsapp-security.html
如有侵权请联系:admin#unsafe.sh