TechBooky AI Assistant
TechBooky AI Assistant
👋 Welcome to TechBooky AI Assistant

I can help with:
🔎 Tech News
🤖 AI Topics
💻 Gadgets
☁️ Cloud
✍️ Guest Posts
📢 Advertising
🔗 Backlinks
📩 Newsletter
  • AI Search
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise With TechBooky
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home Security

WhatsApp GhostPairing Scam Lets Hackers Hijack Accounts

Akinola Ajibola by Akinola Ajibola
December 20, 2025
in Security
Share on FacebookShare on Twitter
Share this story

Send it to someone who should read it.

f Facebook X X in LinkedIn wa WhatsApp tg Telegram @ Email
In Brief
  • A cybersecurity company has found a new method for taking over WhatsApp accounts that exploits the app’s legal device-linking feature.
  • Without obtaining passwords, SIM cards, or authentication codes, the GhostPairing campaign enables hackers to fully access a victim’s WhatsApp account.
  • The attack uses social engineering to persuade consumers into authorising a malicious device rather than taking use of software faults.

A cybersecurity company has found a new method for taking over WhatsApp accounts that exploits the app’s legal device-linking feature. Without obtaining passwords, SIM cards, or authentication codes, the GhostPairing campaign enables hackers to fully access a victim’s WhatsApp account. The attack uses social engineering to persuade consumers into authorising a malicious device rather than taking use of software faults. According to reports, the technique is hard to spot, spreads swiftly through reliable contacts, and exposes significant flaws in the way device-pairing features are now created and comprehended by users.

The research from the cybersecurity company Gen Digital claims that the attack starts with a quick message from a reliable acquaintance, usually along the lines of “Hey, I just found your photo!” pickup line, which is sent. The message contains a link that shows up in WhatsApp as a preview similar to Facebook. When visitors click the link, they are taken to a phoney webpage that mimics a Facebook photo viewer and requests that they “verify” before they can access the material.

Facebook is not involved in the verification process at all. Rather, the page subtly initiates the official device-pairing procedure of WhatsApp. After victims provide their phone number, WhatsApp creates a numerical pairing code. The phoney page then gives users instructions to input this code into WhatsApp, giving the impression that it is a standard security check.

Users unintentionally accept the attacker’s browser as a linked device when they type the code, according to the research. This grants attackers complete access to WhatsApp Web, enabling them to read conversations, download media, send messages as the victim, and receive new messages instantly. It is challenging to detect the hack because the phone keeps operating normally.

Although the campaign was initially seen in Czechia, Gen Digital cautioned that it might quickly expand to other areas. Instead of using mass spam to spread the attack, compromised accounts are utilised to transmit the same enticement to contacts and group chats.

The technique does not take advantage of software vulnerabilities or get around encryption, according to the report’s researchers. Rather, it depends on legitimate features functioning as intended and social engineering. This makes the attack especially worrisome, according to the research, since linked devices stay active until users actively deactivate them.

Also worth reading
WhatsApp Is Developing On-Device Scam Detection Feature For Android Users Meta’s Muse AI Agent Will Test User Trust 1Password Funding Row Shows Open Source Is Political WhatsApp Tests A Business Folder To Tame Brand Messages WhatsApp Adds Multiple Accounts For iOS Texas Takes Action Against WhatsApp Over Encryption

Users are encouraged to often check WhatsApp’s Settings > Linked Devices section and delete any strange sessions in order to be safe. Additionally, the researchers suggested turning on two-step verification, treating any request to scan QR codes or input pairing numbers from websites as suspicious, and taking the time to confirm odd messages, even from contacts you know.

Also Whatsapp users should never share codes, never scan QR codes from outside websites or enter pairing codes. Whatsapp users should always be the only one to start the WhatsApp device connecting process.

Another advise to users, is to activate 2FA, (Two Factor Authentication or Multi-Factor Authentication), in which the setting is in your WhatsApp settings, by enabling the Two-Step Verification. This offers a crucial layer of overall protection, even though it doesn’t prevent this particular vulnerability once a device is connected.

Also users should check unexpected links, before clicking on a strange link sent by a friend, give them a call to make sure.

According to reports, GhostPairing is drawing attention to more general dangers in device-pairing technologies that are utilised by numerous apps. Convenience is an important benefit, but the report suggested that greater controls, more context for pairing requests, and more explicit cautions might help lessen abuse.

Why it is dangerous, with the authentication bypass, the link seems authentic to WhatsApp’s systems because the user directly authorises it, and this circumvents the conventional security. Also stealthy persistence by the “ghost device” which might stay linked in the background for months while the victim’s phone keeps operating normally. The quick spread is a cycle that is continued by the attackers using the compromised account to message the victim’s friends, family, and co-workers.

Related Reading

More contextual TechBooky stories selected from tags, categories and article context.

  • skynews-instagram-meta-facebook_6688367
    WhatsApp iOS Users May Soon Link Instagram Profiles
  • Picture2
    Soon, WhatsApp Will Simplify the Process of Adding…
  • WA_NEW_MULTIPLE_ACCOUNTS_FEATURE_SETTINGS_IOS
    WhatsApp Plans to Introduce Multiple Accounts Feature on iOS
  • WA_ADD_FACEBOOK_PROFILE_LINKS_FEATURE_ANDROID
    WhatsApp Beta Adds Option to Link Facebook Profile
  • WA_STRICT_SECURITY_ACCOUNT_SETTINGS_FEATURE_ANDROID
    WhatsApp Tests ‘Strict Account Settings’ for Better Security
  • skynews-russia-hacker_5812455
    Russian Hackers Target WhatsApp for Data on Ukraine
  • WA_QR_CODE_VIEW_FOLLOW_CHANNEL_FEATURE_IOS
    WhatsApp Tests QR Channel & Sticker Pack Sharing
  • blog-a-lurking-npm-package
    Malicious npm Package Compromises WhatsApp Accounts
Keep Reading Smarter

Search TechBooky with AI

Use TechBooky's AI Search to explore the context behind this story and related coverage across the site.

Try AI Search
More On This Topic
Security
Follow TechBooky

Follow TechBooky for more technology stories and newsroom updates.

f Facebook X X in LinkedIn ig Instagram wa WhatsApp

Tags: securitywhatsappwhatsapp ghostpairing
Akinola Ajibola

Akinola Ajibola

Search TechBooky
Open TechBooky AI Search Try the AI Assistant

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • Bitget Loses $351.6M In Crypto Hack As North Korea Is Suspected September 26, 2026
  • Nscale Raises $3.36B Ahead Of AI Cloud IPO September 26, 2026
  • Best Ways to Open and Read Outlook OST Files without Outlook September 25, 2026
  • Meta Teases Muse Charm, A Pocket AI Voice Device September 25, 2026
  • Waymo Wants London Robotaxis, But Approval Comes First September 25, 2026
  • Oracle’s Stargate Site Faces Power Delay Warning September 25, 2026
  • Amazon Opens Seller Central To Walmart, Shopify And TikTok Sales September 24, 2026
  • OpenAI Agent Entered Australian Government Portal Without Permission September 24, 2026
  • AI Agents Tried To Hack Data Sites During Routine Searches September 24, 2026
  • OpenAI Builds A Better Test For Mental Health AI Chats September 24, 2026
  • Microsoft Rebuilds Defender Security Operations For AI Agents September 24, 2026
  • Qualcomm Wants Earbuds To Become Everyday AI Assistants September 24, 2026

Browse Archives

September 2026
M T W T F S S
 123456
78910111213
14151617181920
21222324252627
282930  
« Aug    

Quick Links

  • About TechBooky
  • Advertise With TechBooky
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • AI Search
  • About TechBooky
  • Advertise With TechBooky
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.