Monday, December 22, 2025
17.1 C
New Delhi

THIS WhatsApp Scam Lets Hackers Read Your Chats Without OTP Or Password

A new and dangerous scam is targeting WhatsApp users by misusing the app’s device-linking feature. Cybersecurity experts have flagged this attack, called GhostPairing, as highly deceptive because it does not involve stealing passwords, SIM cards, or verification codes. Instead, users are tricked into approving access themselves. The scam spreads quietly through trusted contacts and is hard to notice once activated.
Experts warn that this method exposes serious risks in how people understand device-pairing features on popular messaging apps.

GhostPairing WhatsApp Scam Explained: How Accounts Get Hijacked

According to cybersecurity researchers at Gen Digital, the scam starts with a harmless-looking message from a known contact. Messages like “Hey, I just found your photo!” are designed to spark curiosity. The message includes a link that appears with a Facebook-style preview inside WhatsApp, making it look safe.

When the link is clicked, users are taken to a fake webpage that looks like a Facebook photo viewer. Before showing the image, the page asks users to “verify” their identity. This is where the trap is set. The page secretly initiates WhatsApp’s official device-linking process.

Users are asked to enter their phone number, after which WhatsApp generates a numeric pairing code. The fake site then tells users to enter this code in WhatsApp, claiming it is a normal security step. Once the code is entered, the attacker’s device is approved without the victim realising it.

This gives hackers full WhatsApp Web access. They can read chats, download photos and videos, send messages, and receive new messages in real time. The victim’s phone keeps working normally, making the attack very difficult to detect.

WhatsApp Security Alert: Why GhostPairing Is Hard To Detect

Experts say GhostPairing is especially dangerous because it does not break encryption or exploit software bugs. Everything works exactly as designed. The scam relies purely on social engineering and human trust.

The campaign was first noticed in Czechia, but researchers warn it can spread globally. Once an account is compromised, attackers send the same fake link to the victim’s contacts and group chats, allowing the scam to spread fast through trusted networks.

Linked devices stay connected until users manually remove them. This means attackers can maintain access for long periods without being noticed.

To stay safe, users should regularly check Settings > Linked Devices, remove unknown sessions, avoid entering pairing codes from websites, enable two-step verification, and double-check unexpected messages, even from known contacts. Vigilance remains the strongest defence against such trust-based scams.

Go to Source

Hot this week

Lionel Messi Kolkata event row: Ticket reselling company officials reportedly questioned by SIT

Kolkata Police have questioned senior officials of an online ticketing company as part of the SIT probe into the chaos during Lionel Messi’s brief Salt Lake Stadium appearance, which ended early due to crowd mismanagement. Read More

Putin flaunts CIS unity amid tensions with Europe over Ukraine war

At a time when tensions with Europe are rising, Russian leader Vladimir Putin has convened leaders of former Soviet republics under the banner of Commonwealth of Independent States (CIS) and flaunted the unity of the regional bloc. Read More

China-EU trade tensions deepen as Beijing slaps new tariffs on cheese and cream imports

The levies, which take effect from Tuesday, are part of an anti-subsidy investigation Beijing says shows EU support for its dairy industry is harming China’s own producers Go to Source Read More

SHANTI Act: US calls it ‘step towards stronger energy security partnership’ — why it matters

Representataional photo NEW DELHI: United States on Monday welcomed India’s newly passed SHANTI bill, calling it an important step towards stronger energy ties and peaceful civil nuclear cooperation between the two countries. Read More

8th Pay Commission Delay Could Quietly Cost Govt Employees Up To Rs 3.8 Lakh In HRA

Show Quick Read Key points generated by AI, verified by newsroom As central government employees await clarity on the implementation of the 8th Pay Commission (8th CPC), a growing concern is emerging around a less discussed but financiall Read More

Topics

Lionel Messi Kolkata event row: Ticket reselling company officials reportedly questioned by SIT

Kolkata Police have questioned senior officials of an online ticketing company as part of the SIT probe into the chaos during Lionel Messi’s brief Salt Lake Stadium appearance, which ended early due to crowd mismanagement. Read More

Putin flaunts CIS unity amid tensions with Europe over Ukraine war

At a time when tensions with Europe are rising, Russian leader Vladimir Putin has convened leaders of former Soviet republics under the banner of Commonwealth of Independent States (CIS) and flaunted the unity of the regional bloc. Read More

China-EU trade tensions deepen as Beijing slaps new tariffs on cheese and cream imports

The levies, which take effect from Tuesday, are part of an anti-subsidy investigation Beijing says shows EU support for its dairy industry is harming China’s own producers Go to Source Read More

SHANTI Act: US calls it ‘step towards stronger energy security partnership’ — why it matters

Representataional photo NEW DELHI: United States on Monday welcomed India’s newly passed SHANTI bill, calling it an important step towards stronger energy ties and peaceful civil nuclear cooperation between the two countries. Read More

8th Pay Commission Delay Could Quietly Cost Govt Employees Up To Rs 3.8 Lakh In HRA

Show Quick Read Key points generated by AI, verified by newsroom As central government employees await clarity on the implementation of the 8th Pay Commission (8th CPC), a growing concern is emerging around a less discussed but financiall Read More

Dalal Streets Cheer As Sensex Jumps Over 616 Points, Nifty Tests 26,200

Show Quick Read Key points generated by AI, verified by newsroom The Indian benchmark indices ended with significant gains on Monday as the Sensex rose over 616 points to close at 85,545. Read More

What Crypto To Buy As ADA Loses Momentum? Whales Track This $0.035 Altcoin For 800% Upside Potential

When large altcoins slow down, capital does not leave the market. It rotates. Cardano has reached a stage where growth is harder to sustain, and many traders are now scanning for projects built differently. Read More

RBI To Cut Repo Rates Again In February? Report Says Inflation Keeps Door Open For Lower Rate

Show Quick Read Key points generated by AI, verified by newsroom The Reserve Bank of India (RBI) may cut the policy repo rate by 25 basis points to 5 per cent in its February monetary policy meeting given the RBI’s dovish guidance, Read More

Related Articles