• Archives
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise Here
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home General App

WhatsApp Vulnerability May Have Exposed Billions of Numbers

Akinola Ajibola by Akinola Ajibola
November 20, 2025
in App, Security
Share on FacebookShare on Twitter

WhatsApp’s greatest strength, despite being used by over three billion people, has always been its simplicity: find a phone number and start chatting. However, a group of researchers exploited WhatsApp’s systematic weakness to reveal approximately 3.5 billion phone numbers and associated account data. But here’s the thing: this very ease unintentionally led to one of the most serious breaches of privacy in modern history. Austrian researchers have recently demonstrated that WhatsApp allows anyone to extract all 3.5 billion users’ phone numbers and, in some cases, view profile photographs and account content even for all 3.5 billion registered accounts! The simple “Add Contact” flow scaled up to billions. Despite earlier warnings from 2017, Meta did not address the loophole until late this year.

The study also revealed that researchers leveraged the lack of rate limits on profile views for registered accounts on the Meta-owned platform, enabling them to scan large volumes of potential phone numbers to determine which were linked to user profiles. They described it as the most significant exposure of phone numbers and related profile data ever recorded, warning that in the wrong hands, it could pose a serious security risk.

Researchers from the University of Vienna and SBA Research discovered a flaw in WhatsApp’s contact discovery system that allowed them to enumerate approximately 3.5 billion phone numbers along with related profile data. Their findings, published on GitHub, outline the method used and expose a major security vulnerability in WhatsApp’s infrastructure.

The strategy took use of the fact that WhatsApp allows users to upload their phone book and immediately identify which contacts already had accounts. The researchers mechanised the process by routinely entering vast lists of potential phone numbers and monitoring whether or not each number was registered. Because the system did not impose adequate rate-limiting, they were able to verify tens of millions of numbers every hour.

Their findings indicate that more public metadata was available for several of the found numbers. Specifically, approximately 57% of the accounts featured profile photographs that were viewable to “everyone,” and roughly 29% included text in the profile’s “About” area.

Surprisingly, researchers found millions of accounts in countries where WhatsApp is banned. Using phone number ranges for China, Myanmar, and Iran, they discovered 2.3 million, 1.6 million, and over 60 million accounts, respectively. “Phone numbers were not designed to be used as secret identifiers for accounts, but that’s how they’re used in practice,” a researcher was quoted by Wired.

As reported by Wired, the researchers reached out to Meta regarding the enumeration vulnerability, which the company addressed in October. Meta stated that the exposed data was “basic publicly available information” and confirmed that no message content or private user data had been accessed.

This event is not about leaked messages or hacked servers, but it does highlight a larger issue: WhatsApp left a vital privacy door open for years. Even if Meta maintains there is no documented abuse, the sheer volume of accessible data raises serious concerns about user safety, spam, and targeted fraud. The patch was late, and the story serves as a reminder that convenience frequently comes at the expense of security unless businesses take privacy issues seriously before they grow.

Related Posts:

  • WA_SEARCH_AND_CALL_USERNAME_FEATURE_IOS
    WhatsApp Tests Username-Based Search and Calling on iOS Beta
  • WA_USERNAME_KEY_REDUCE_UNWANTED_MESSAGES_FEATURE_ANDROID
    WhatsApp Adds Username Keys on Android to Combat Spam
  • Picture2
    Soon, WhatsApp Will Simplify the Process of Adding…
  • WA_MANAGE_ADD_USE_SWITCH_MULTIPLE_ACCOUNTS_SAME_DEVICE_FEATURE_IOS
    WhatsApp Brings Multi-Account Feature to iOS Beta
  • WA_NEW_MULTIPLE_ACCOUNTS_FEATURE_SETTINGS_IOS
    WhatsApp Plans to Introduce Multiple Accounts Feature on iOS
  • chatgpt-whatsapp-call-ai
    OpenAI's ChatGPT is Now Available on WhatsApp.…
  • WA_RESERVE_USERNAME_WITH_AVAILABILITY_FEATURE_IOS
    WhatsApp Tests Facebook and Instagram Username…
  • WhatsApp
    WhatsApp GhostPairing Scam Lets Hackers Hijack Accounts

Discover more from TechBooky

Subscribe to get the latest posts sent to your email.

Tags: vulnerabilitywhatsappwhatsapp vulnerability
Akinola Ajibola

Akinola Ajibola

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • TELCOs Face One-Week Deadline To Propose Data Price Reductions January 25, 2026
  • Flutterwave Rolls Out Turnkey-Powered Stablecoin Wallets for Merchants January 25, 2026
  • MTN Nigeria Says Fibre Cuts and Theft Hit 211 Sites in 2025 January 25, 2026
  • TikTok Star Khaby Lame Sells Company for $900M January 25, 2026
  • Meta Faces UK Scrutiny Over WhatsApp Data Request Compliance January 24, 2026
  • Microsoft Teams Introduces Brand Impersonation Alerts During Calls January 24, 2026
  • Paramount Proposal Rejected by Netflix Over Limited Benefits January 24, 2026
  • TikTok Resolves Legal Standoff With Agreement To Form U.S. Entity January 24, 2026
  • Microsoft Outage Affects Thousands Of Users Worldwide January 23, 2026
  • Paystack’s Zap Now Supports Apple Pay January 22, 2026
  • X Hit By Another Brief Outage January 22, 2026
  • Snapchat Adds Parental Tools for Teens’ Screen Time and Friends January 22, 2026

Browse Archives

January 2026
MTWTFSS
 1234
567891011
12131415161718
19202122232425
262728293031 
« Dec    

Quick Links

  • About TechBooky
  • Advertise Here
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • About TechBooky
  • Advertise Here
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.