AI-Assisted Worm Targets WeChat Accounts
Calif, a cybersecurity firm located in Palo Alto, California, revealed the creation of a self-replicating worm that can take control of WeChat accounts by leveraging a memory corruption flaw within the app's voice-over-IP system. This worm, which the firm claims could potentially impact more than a billion users with just one call, was developed with considerable input from artificial intelligence. This announcement emphasizes the ability of AI to enhance the sophistication of cyber threats. The flaw in WeChat's VoIP feature permits the worm to spread autonomously, without any user action. Although Calif did not confirm if the vulnerability has been addressed, their findings highlight the alarming risks associated with AI-driven malware.
Key facts
- Calif is a security company based in Palo Alto, California.
- The worm targets WeChat accounts.
- It exploits a memory corruption flaw in WeChat's voice-over-IP stack.
- The worm is self-spreading and could hijack over a billion accounts.
- The attack could be initiated with a single call.
- AI significantly assisted in building the worm.
- The disclosure was made today.
- The worm is described as zero-click.
Entities
Institutions
- Calif
- Tencent Holdings
Locations
- Palo Alto
- California
- United States
- China
Sources
- SCMP Lifestyle —
- Quartz —