Zero-Click AI Worm Can Hack WeChat Accounts Via Calls
- On Tuesday, Palo Alto-based Calif disclosed WeWorm, described as "the first zero-click worm to spread through WeChat calls across iOS and Android," threatening over 1.4 billion users before Tencent patched the vulnerability.
- Using AI, Calif discovered a "memory corruption issue in WeChat's VoIP stack" in two days and built the worm in one week, enabling attackers to take control of accounts without user interaction.
- Once inside, the worm uses friend lists to self-replicate into delivery systems; former National Security Agency chief data scientist Vinh Nguyen warned the worm could reach hundreds of millions of devices.
- Tencent stated there is no evidence that users were compromised, and customers do not need to update their apps, as Calif confirmed the flaw was mitigated for all users by August 28.
- The disclosure follows an open letter signed by more than 100 technology companies, including OpenAI, warning that AI-enabled cyberattacks could become increasingly sophisticated, as Calif urges the industry to bolster defenses.
25 Articles
25 Articles
This AI-Developed Computer Worm Could Have Hijacked a Billion Accounts
The demo attack against WeChat highlights the disturbing possibility that an AI-developed computer worm could be unleashed to hack devices globally. A cybersecurity company used AI to quickly develop a computer worm capable of hacking over a billion accounts on the Chinese messaging service WeChat.Palo Alto-based Calif disclosed the already-patched computer worm to warn the public about the threat of AI-driven hacks. …
WeChat's 1.4 Billion Users Faced a Dangerous Security Flaw. AI Helped Turn It Into a Self-Spreading Worm.
Palo Alto cybersecurity company Calif described WeWorm as the first known zero-click worm that can spread through WeChat calls on both Apple's iOS and Google's Android.
Coverage Details
Bias Distribution
- 57% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium















