Hacker News new | past | comments | ask | show | jobs | submit login

You're still vulnerable then.

"Affected versions: ... WhatsApp for iOS prior to v2.19.51" from https://www.facebook.com/security/advisories/cve-2019-3568

The news outlets are all telling us to update, but until WhatsApp/Apple get their act together, there's no point. Worse still, people won't realise they need to do it again and will remain vulnerable indefinitely.




Lol, App Store for 2.19.51 describes the update as:

> You can now see stickers in full screen when you long press a notification

If that’s how we encourage critical security updates, I’ll suspect that Facebook themselves are behind all of this.


I don’t think this is a conspiracy by Big Social. If they really want to do that, they can still do that.

I assume the stickers thing truly was the most notable patch, and they didn’t want to scare people & tip off the attackers.


If I were anti-update (and sometimes I am, eg: limited bandwidth), full-screen stickers is the most unnecessary update I could imagine.

At least say something like “bug fixes”. Some kind of carrot to discourage me from thinking “Total waste of time and too many developers”.


I'm on Android. It auto-updated on May 10th to v2.19.134

"The issue affects WhatsApp for Android prior to v2.19.134"


The problem is iOS AppStore. If you update via the "Updates" tab, you don't get the latest version. But if you search for WhatsApp as if installing it for the first time, then you get the new version.


Yep sure, I was just reporting from the Android side since your comment caused me to go check.




Consider applying for YC's W25 batch! Applications are open till Nov 12.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: