Wednesday, August 28, 2024

flagHow to Recover a Hacked WhatsApp Account on Android

Left image
2024-01-19
Jide Mbaka

Discovering that your WhatsApp account has been hacked can be a distressing experience. It not only compromises your personal conversations and sensitive information but also poses a risk to your contacts. Fortunately, WhatsApp provides several measures to help you regain control of your account and secure it from future unauthorized access.

In this article, we will walk you through the necessary steps to recover a hacked WhatsApp account on Android. Whether your account has been compromised due to a phishing attack, weak password, or any other security breach, these methods will assist you in regaining access and restoring the security of your account.

 

How to recover a hacked WhatsApp account on Android 

Part 1. How can I Recover a Hacked WhatsApp Account?

Take these steps as soon as you discover that someone other than you is using your WhatsApp account. This happens when your contacts start receiving WhatsApp messages from you that you did not send, you see status updates and posts in WhatsApp groups that you did not create. This does not apply to cases of stolen or lost phones.

It is possible that someone else might be using your decide from a desktop or WhatsApp Web that you had earlier connected to. You have to undo this first to be sure you are not dealing with a case of hackers.

  • Open your WhatsApp > Tap the three vertical dots at the top right beside the search bar > Tap on WhatsApp web > Log out of all devices

If you find out that no device is linked and you still continue to experience same thing, then follow the steps below to recover a hacked WhatsApp account.

  • Log out of your WhatsApp messenger and login again using your phone number
  • A six-digit code will be sent to your phone number via sms. Enter the code.
  • This logs you into your account immediately, and automatically logs out the hacker.
  • If you are asked to provide a two-step verification code, even though you did not set up one, it means the individual using your account must have activated a two-step verification code. Since you do not have the code, it means you have to wait 7 days again before you can sign in without the two-step verification code.
  • Remember that the hacker had been logged out immediately you were logged in with the 6-digit SMS code? So no worries. The hacker cannot continue any chat with your contacts and they cannot even get access to your WhatsApp account during this period.

Part 2. Phone Lost or Stolen, How do I Recover WhatsApp Account?

If your phone gets missing, recovering your WhatsApp account takes completely different steps. In this case, you do not have access to your sim card and so cannot just log in.

  • The first thing you should do is to inform everyone including WhatsApp. If people are aware that you no longer have control over your account, they will be prepared for any fraudulent chats.
  • Now, you should send a mail to Whatsapp at support@whatsapp.com. You can state the details of the incident to the mail, but make sure you add “Lost/Stolen: Please deactivate my account” in the subject and text body and also provide the mobile number registered with the WhatsApp account.
  • Please ensure that you are sending this mail from the email address registered in your two-factor authentication process. If you did not do the two-factor authentication before your phone got lost or was stolen, then you can use any of your email addresses.

Once the account has been successfully deactivated, the thieves will no longer be able to use it to chat with your contacts. Now you have 30 days to recover your account if you still want to be able to access all your saved chats and media backed up in the cloud. It you delay this beyond 30 days, you will lose access to all that data.

Part 3. How do I Secure my WhatsApp Messenger Account?

WhatsApp Messenger has become an indispensable part of our daily communication, allowing us to connect with friends, family, and colleagues effortlessly. As the popularity of the platform continues to grow, it is essential to prioritize the security and privacy of your WhatsApp account. By following a few simple steps, you can strengthen the security of your account and minimize the risk of unauthorized access. Here are some effective measures to secure your WhatsApp Messenger account:

  • Enable Two-Step Verification: Two-step verification adds an extra layer of security to your WhatsApp account. It requires you to set up a six-digit PIN that will be prompted whenever you register your phone number with WhatsApp. To enable two-step verification, go to WhatsApp settings, select "Account," then "Two-step verification," and follow the instructions to set up your unique PIN. Remember to choose a PIN that is easy for you to remember but difficult for others to guess.
  • Keep WhatsApp Updated:
    Regularly updating your WhatsApp Messenger app ensures that you have the latest security patches and bug fixes. Developers continuously work to address vulnerabilities, and by updating your app, you benefit from these improvements. Enable automatic updates on your device or manually check for updates in your app store to ensure you are running the latest version of WhatsApp.
  • Be Cautious with Links and Downloads:
    Exercise caution when clicking on links or downloading files shared through WhatsApp, especially if they come from unknown sources or seem suspicious. Malicious links and downloads can compromise your account's security or infect your device with malware. Avoid clicking on suspicious links and only download files from trusted sources.
  • Protect Your Phone with a Strong Password:
    Ensure that your Android device has a strong and unique password or PIN to prevent unauthorized physical access. This adds an extra layer of security and protects your WhatsApp account from being compromised if your phone falls into the wrong hands.
  • Be Mindful of WhatsApp Web:
    If you use WhatsApp Web to access your account on a computer, make sure to log out after each session, especially if you are using a shared or public computer. Additionally, regularly review the active WhatsApp Web sessions in your account settings and terminate any sessions you don't recognize or no longer use.
  • Control Your Privacy Settings:
    WhatsApp provides various privacy options to control who can see your profile information, status updates, and last seen timestamps. Navigate to the "Privacy" section in your WhatsApp settings and adjust these settings according to your preferences. Restricting access to your information enhances your account's privacy and security.
  • Use Biometric Locks:
    Many Android devices offer biometric authentication options, such as fingerprint or face recognition. Enable these features to add an extra layer of security to your WhatsApp account. This ensures that only you can access your WhatsApp Messenger app.

By implementing these security measures, you can significantly enhance the protection of your WhatsApp Messenger account. Remember, being proactive and vigilant about your account's security is essential in today's digital landscape.

Fluid image

Account security tips

 

WhatsApp account security tips


To better secure your WhatsApp account, follow these tips:
  • Never share your registration code or two-step verification PIN with others.
  • Enable two-step verification and provide an email address in case you forget your PIN.
  • Set a voicemail password on your phone that's difficult to guess to prevent anyone from accessing your voicemail.
  • Check your linked devices regularly. Go to WhatsApp Settings > Linked Devices to review all devices linked to your account. To remove a linked device, tap the device > Log Out.
  • Set a device code and be aware of who has physical access to your phone. Someone who has physical access to your phone might use your WhatsApp account without your permission.
We recommend you share this advice with friends and family to help secure their WhatsApp accounts.
Note:If you receive unrequested emails to reset your two-step verification PIN or registration code, don't click on any links. Someone could be attempting to access your phone number on WhatsApp.

Resources



From Meta Logo
© 2024 WhatsApp

How to Protect your WhatsApp Account from hackers.

 

How to protect your WhatsApp account from hackers

It’s important to be aware of who has physical access to your phone. If someone has physical access to your phone, they can use your WhatsApp account without your permission.
If you believe someone has scanned your QR code and has access to your account through WhatsApp Web and Desktop, you have the option to log out of all your active WhatsApp Web and Desktop sessions on your phone. To do so:
  1. Open WhatsApp on your phone.
    • Android: Tap 
      more options
      .
    • iPhone: Go to WhatsApp Settings.
  2. Tap Linked Devices.
  3. Tap a device > Log Out.
  4. Repeat these steps for all linked devices.
When you launch WhatsApp Web or Desktop, you can uncheck the option to Keep me signed in before scanning the QR code so your WhatsApp session will be logged out automatically after 15 minutes of inactivity.
Note: WhatsApp can't provide information about who accessed your account or the time and place of it.


Thursday, August 8, 2024

Cyber alert: NCC-CSIRT warns Nigerians on latest Phishing attack

Cyber alert: NCC-CSIRT warns Nigerians on latest Phishing attack


News                         December 3, 2022

By Juliet Umeh

The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has warned that a new Phishing, Attacks Exploit Windows Zero-Day Vulnerability, can load a malicious QBot malware on the compromised device without triggering any Windows security alerts. An its advisory, NCC-CSIRT indicated that the vulnerability, which is present in all versions of Windows-based products, presents as Phishing Attacks and Malware threats. NCC-CSIRT reports that ProxyLife security researcher discovered the new phishing exploit on Windows zero-day vulnerability to drop a Qbot malware without displaying Mark of the Web (MoTW) security warnings.

It said: “To take advantage of the Windows Mark of the Web zero-day vulnerability, threat actors have switched to a new phishing strategy that involves propagating JS files (plain text files that include JavaScript code) signed with forged signatures.

“The newest phishing attempt begins with an email that contains a password for the file along with a link to an allegedly important document.

“When the link is clicked, a password-protected ZIP folder that includes another zip file and an IMG file is downloaded.

“Normally, launching the JS file in Windows would result in a Mark of the Web security warning because it is an Internet-based file. However, the forged signature permits the JS script to function and load the malicious QBot program without triggering any Windows security alerts,” the advisory said.

Accordingly, NCC-CSIRT advised that users apply updates per vendor instructions.

Source: https://www.vanguardngr.com/2022/12/cyber-alert-ncc-csirt-warns-nigerians-on-latest-phishing-attack/