WhatsApp Scam: Hackers stealing Verification Codes from Users

WhatsApp Messenger, a cross-platform messaging app owned by Facebook is the most popular messaging application in the world and recently it’s usage increased by 40% amid lock-down. But with it’s rising popularity, the users are facing security threats as a new scam has emerged on the Facebook-owned messenger that tries to steal the user’s verification code.

The scammers pose as WhatsApp’s official account and ask the user to verify his/her identity by providing the six-digit verification code to the account.

This verification code is sent to the user via SMS in order to register their device.

WABetaInfo, a blog that tracks WhatsApp features shared the scam in a tweet. Dario Navarro, a Twitter user asked WABetaInfo that he got such a message and if he should reply, in response the feature tracker responded with “WhatsApp never asks your data or verification codes,”.

IMG 20200529 142516

According to the message sent to Navarro, the spammer sends the message posing as WhatsApp (with WhatsApp’s logo as a profile picture) and in a message written in Spanish ask him to verify his identity and account number by providing the six-digit verification code which the spammer could use to hack the account.

WhatsApp will never ask for your personal details or verification code

WhatsApp clearly states in their FAQs section not to share the verification code, “If someone is trying to take over your account, they need the SMS verification code sent to your phone number to do so. Without this code, any user attempting to verify your number can’t complete the verification process and use your phone number on WhatsApp,” the company says.

Any information by the company is either published on their blog or tweeted on their official account. And even if WhatsApp does message you ( a rare phenomenon) it would be from an account with a green tick next to it.

IMG 20200529 142434

If you get a verification SMS, it means someone is trying to log in to your account, this could be because someone entered the wrong phone number or if someone is trying to hack your account. So, if someone hacks your account, you can simply verify your phone number and the other user will be logged out.

Original Source