Feed›Vulnerability›Zero-click worm spreads on iPhones and Android via WeChat ca...
VulnerabilityCyber Insider
8.0 — CRITICAL

Zero-click worm spreads on iPhones and Android via WeChat calls

📅 8 September 2026 at 16:33 UTC📰 Cyber InsiderView original source ↗
Zero-click worm spreads on iPhones and Android via WeChat calls

A zero-click worm can spread between iPhones and Android devices through WeChat calls, allowing attackers to hijack accounts even without victims answering. Dubbed WeWorm, the proof-of-concept attack exploits a memory corruption vulnerability in WeChat’s Voice-over-IP (VoIP) stack. Calif reported the flaw to Tencent in July, and the company has since deployed mitigations that the researchers … The post Zero-click worm spreads on iPhones and Android via WeChat calls appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A zero-click worm can spread between iPhones and Android devices through WeChat calls, allowing attackers to hijack accounts even without victims answering.

⚙️Technical Details
Affected Systems
WeChat
Attack Vectors
Voice-over-IP (VoIP) stack vulnerability
💥Impact Assessment
Severity: High
Who Is at Risk
Users of WeChat, particularly those with compromised accounts
🛡️Recommended Actions
1Enable two-factor authentication on WeChat accounts
2Keep WeChat and its associated apps up to date with the latest security patches
3Be cautious when receiving unsolicited calls or messages from unknown contacts
📦Affected Products
WeChat AndroidWeChat iOS

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider ↗
← Back to feed