A newly disclosed attack chain can potentially let someone with physical access to a locked Android phone browse its photo gallery through an incoming WhatsApp video call. The path is essentially: WhatsApp call → Effects → Backgrounds → Meta AI → Edit Photo → Gallery No PIN, pattern, or biometric authentication is required once the vulnerable path is available. Testing found the behavior on some Pixel and Oppo devices, while Samsung’s One UI blocked the same path with authentication.



Woah, good thing I uninstalled WhatsApp ages ago
Imessage or Telegram??
Neither, the former is only on iOS / various other Apple bits, the latter is awful in terms of privacy (arguably more so than Whatsapp)
I mainly use Matrix (Element on desktop, FluffyChat on Android, Fractal on mobile Linux) and email (Thunderbird), but I also have Halloy (IRC) installed to. As for any proprietary messaging services I use, it’s mainly WeChat for messaging Chinese friends.
edit: I also have Signal, but pretty much no one in my circle uses it, as everybody who would’ve switched to Signal went all the way and joined Matrix in my experience.