
Indeed, after decrypting the WhatsApp communication we found that WhatsApp is using the “ protobuf2 protocol” to do so.īy converting this protobuf2 data to Json we were able to see the actual parameters that are sent and manipulate them in order to check WhatsApp’s security. These encryption processes caught our attention and we decided to try to reverse WhatsApp’s algorithm to decrypt the data.

What’s more, not even WhatsApp has the ability to view those messages. Please read below for our full technical analysis.ĭemonstration Video of the Attacks in ActionĪs is well known, WhatsApp encrypts every message, picture, call, video or any other type of content you send so that only the recipient can see it. From Check Point Research’s view, we believe these vulnerabilities to be of the utmost importance and require attention.

With so much chatter, the potential for online scams, rumours and fake news is huge.

Research By: Dikla Barda, Roman Zaikin and Oded VanunuĪs of early 2018, the Facebook-owned messaging application, WhatsApp, has over 1.5 billion users with over one billion groups and 65 billion messages sent every day.
