WhatsApp accounts at risk in Pakistan as National CERT issues urgent security alert

National CERT urges users to enable 'Two-step authentication' with recovery email, as it is most important safeguard
An undated image of a person sending voice message on WhatsApp. — Shutterstock
An undated image of a person sending voice message on WhatsApp. — Shutterstock

Pakistan’s National Cyber Emergency Response Team (National CERT) on Monday issued a nationwide advisory warning of a increase in WhatsApp account hacking, calling the threat widespread and highly effective. 

In an advisory issued, the body stated that hackers are dependent more on social engineering tactics than technical flaws, tricking users into handing over access. "Once your account comprised, it is used for impersonation, financial fraud, data theft, and spreading malicious content. 

NCERT emphasised that WhatsApp accounts are linked to phone numbers and SIM ownership that makes recovery possible, but also creates open chances for hackers who deceive users into sharing OTP codes or enabling call forwarding.

How hackers hack WhatsApp?

The NCERT's advisory shared some common methods, hackers use to hack your WhatsApp:

  • OTP social engineering: Victims are tricked into sharing six-digit verification codes by attackers posing as WhatsApp support, telecom staff, or known contacts.
  • Call forwarding exploits: Users are deceived into dialing USSD codes that forward verification calls to attackers.
  • Phishing links: Fake alerts or prize messages lead to fraudulent login pages that steal credentials.
  • QR code scams (Quishing): Scanning malicious QR codes links the victim’s account to the attacker’s device.

The authority urged users to enable 'Two-step authentication' with a recovery email, as it is the most important safeguard. Moreover, it advised WhatsApp users in Pakistan to secure their accounts immediately, remain cautious of unsolicited requests, and educate others, especially vulnerable users.