uniladtech homepage
  • News
    • Tech News
    • AI
  • Gadgets
    • Apple
    • iPhone
  • Gaming
    • Playstation
    • Xbox
  • Science
    • News
    • Space
  • Streaming
    • Netflix
  • Vehicles
    • Car News
  • Social Media
    • WhatsApp
    • YouTube
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • UNILAD
  • SPORTbible
  • GAMINGbible
  • Tyla
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Archive
  • Topics A-Z
  • Authors
Facebook
Instagram
X
TikTok
Snapchat
WhatsApp
Submit Your Content
Security experts sound the alarm on WhatsApp flaw that puts 3,500,000,000 phone numbers are at risk

Home> Social Media> WhatsApp

Published 14:12 21 Nov 2025 GMT

Security experts sound the alarm on WhatsApp flaw that puts 3,500,000,000 phone numbers are at risk

Your phone number could have been exposed

Harry Boulton

Harry Boulton

google discoverFollow us on Google Discover
Featured Image Credit: NurPhoto / Contributor via Getty
Whatsapp
Smartphone
Cybersecurity
Social Media

Advert

Advert

Advert

A new critical vulnerability has been discovered within WhatsApp that has exposed the phone numbers of over 3.5 billion account holders, as security experts issue major privacy warnings to people.

There are new security breaches and data leaks all the time in the internet age and people can make sure of vital websites to keep track of when and where their data might have been stolen from to avoid any further issues down the line.

However, there's little you can do about certain types of information once they do break containment, and some forms are far more valuable and damaging than others if they were to get into the wrong hands.

That's why recent news of a critical vulnerability within WhatsApp – a platform that over 3 billion people use worldwide every single month – is rather frightening, and has prompted cybersecurity experts to issue their own advice for people to follow.

Advert

As reported by the Independent, the flaw was first uncovered by a team of experts at the University of Vienna and SBA Research, and it hinges on WhatsApp's contact discovery mechanism.

Researchers uncovered a flaw that has left billions of phone numbers, pictures, and account information exposed on WhatsApp (Jakub Porzycki/NurPhoto via Getty Images)
Researchers uncovered a flaw that has left billions of phone numbers, pictures, and account information exposed on WhatsApp (Jakub Porzycki/NurPhoto via Getty Images)

This, in practice, allows people to match phone numbers that are already stored in the device's contact book with numbers in the app's database, effectively matching you up with people you already know to save time and effort.

However, hackers have managed to use this system to scrape phone numbers, profile photos, and even what's written in your 'About' status from billions of accounts, leading to a potentially serious breach of data.

Gabriel Gegenhuber, a researcher from the University of Vienna, asserted that "these findings remind us that even mature, widely trusted systems can contain design or implementation flaws that have real-world consequences."

It's particularly jarring as many people have opted for WhatsApp for its security purposes, as it offers end-to-end encryption for its chats, but this, in the eyes of cybersecurity experts, should serve as a 'wake-up call'.

Phone numbers are too public and too permanent on these platforms, argue the experts, and can be scraped by bad actors with far too much ease to be used as the primary user identification process going forward.

Hackers exploited the fact that WhatsApp uses phone numbers as a primary identification source (Getty Stock)
Hackers exploited the fact that WhatsApp uses phone numbers as a primary identification source (Getty Stock)

Speaking to the Independent, NordVPN's chief technology officer Marijus Briedis illustrated that "this issue highlights a fundamental problem with WhatsApp's architecture: the phone number itself is the vulnerability.

"WhatsApp uses numbers as its core identity system, [so] attackers were able to automatically test billions of them and pull back profile details at extraordinary speed," he continued.

Unfortunately there's little you can actually do for now outside of changing your phone number completely – which for most people is entirely impractical – but you should simply be wary of any phone-related scams, perhaps more so than you usually would anyway.

Thankfully WhatsApp's parent company Meta has informed everyone that the issue has since been addressed and fixed, but some might argue that more could have been done beforehand to prevent the issue entirely.

Choose your content:

2 days ago
3 days ago
  • Daniel Tamas Mehes via Getty
    2 days ago

    What would actually happen if you ate a silica gel packet marked 'do not eat'

    The packets serve a surprising purpose

    Social Media
  • H3 Podcast / YouTube
    2 days ago

    YouTubers team up to sue Apple over claims of 'unconscionable attack' on creators' rights

    They claim Apple has violated their copyright

    Social Media
  • Jack Gordon / YouTube
    2 days ago

    YouTuber praised for getting 'better footage than NASA' as he goes behind the scenes at Artemis 2 launch

    NASA's official coverage disappointed many

    Social Media
  • 5./15 WEST/Getty
    3 days ago

    YouTuber with 2.5M+ views issues desperate plea to platform after waking up to his channel deleted

    He woke up to find over two years of work wiped overnight

    Social Media
  • WhatsApp release new 'lockdown' mode amid latest security update
  • WhatsApp ‘red flags’ that users need to know as 6.8M malicious accounts are deleted
  • All WhatsApp users told to change key setting after hacking bug
  • Whatsapp banned on all devices of US House of Representatives