Facebook, Instagram Apps on Google Play Store Vulnerable: Check Point

Check Point Research said it informed the applications as well as Google about the vulnerabilities.

Advertisement
By Indo-Asian News Service | Updated: 22 November 2019 13:13 IST
Highlights
  • Hackers can steal and alter posts on Facebook
  • Unethical hackers can also extract location data from Instagram
  • Threat actors can gain administrative control over the mobile apps

Check Point Research on Thursday said it found the latest versions of some of the most famous apps in the world on Google's Play Store, including Facebook and Instagram, to have vulnerabilities that were believed to have been patched earlier. The research shows that threat actors can still execute code on the latest versions of mobile applications on Play Store, despite the updates those mobile apps have pushed to people.

In short, threat actors can gain administrative control over the mobile applications studied by Check Point Research.

Theoretically, hackers can steal and alter posts on Facebook, extract location data from Instagram and read SMS messages in WeChat, said the research.

Advertisement

In a month-long study, Check Point Research cross-examined the latest versions of these high-profile mobile for three known remote control execution (RCE) vulnerabilities dating from 2014, 2015 and 2016.

Advertisement

Each vulnerability was assigned two signatures. Then, Check Point Research ran its static engine to examine hundreds of mobile applications in Google's Play Store to see if old, vulnerable code was present in the latest version of the application.

Check Point Research found vulnerable code, which was claimed to patched, present in the latest versions of popular mobile application.

Advertisement

For now, Check Point urges people to install an antivirus-app that monitors vulnerable apps on the phone.

"Mobile app stores and security researchers do proactively scan apps for malware patterns, but devote less attention to long-known critical vulnerabilities. Unfortunately, this means there's not much the end user can do to keep his mobile device fully secure," said the research.

Advertisement

Check Point Research said it informed the applications as well as Google about the vulnerabilities.

The revelations come amid a snooping controversy that hit WhatsApp after Israeli spyware Pegasus exploited vulnerability in the messaging platform, affecting 1,400 select users globally, including over 100 in India.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Sister Midnight Streaming Online: Everything You Need to Know
  2. OnePlus 15R Confirmed to Come With 32-Megapixel Selfie Camera
  1. Secret Rain Pattern May Have Driven Long Spells of Dry and Wetter Periods Across Horn of Africa: Study
  2. Sister Midnight Out on OTT: Know Where to Watch This Radhika Apte-Starrer Online
  3. JWST Detects Thick Atmosphere on Ultra-Hot Rocky Exoplanet TOI-561 b
  4. Scientists Observe Solar Neutrinos Altering Matter for the First Time
  5. Uranus and Neptune May Be Rock-Dominated Planets, Study Suggests
  6. Kepler and TESS Discoveries Help Astronomers Confirm Over 6,000 Exoplanets Orbiting Other Stars
  7. Supernatural Thriller Jatadhara Arrives on OTT: Where to Watch Sonakashi Sinha-Starrer Film Online?
  8. OnePlus 15R Confirmed to Come With 32-Megapixel Selfie Camera, 4K Video Recording Support
  9. Rocket Lab Clears Final Tests for New 'Hungry Hippo' Fairing on Neutron Rocket
  10. Apple Rolls Out iOS 26.2 Update for iPhone With Liquid Glass Customisation, Changes to Apple Music, and More
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.