Skip to main content


🚨 3.5 billion users: Entire WhatsApp directory publicly accessible

Source: theregister.com/2025/11/19/wha…

Here are our best #WhatsApp alternatives: tuta.com/blog/best-whatsapp-al…

Conclusion: Choose #Signal

This entry was edited (2 weeks ago)
in reply to Tuta

Wild stuff for a tech company that talks a big game about privacy

Also it took them a year to fully address?!

"He also pointed to the disclosure timeline, as set out in the paper, and how it took Meta nearly a year to provide a meaningful response to the numerous tickets they raised throughout the research process."

in reply to Tuta

mmm... Kudos to @signalapp for their work, but they should move their servers outside the US; otherwise there are crucial factors out of their control, I'm afraid.
This entry was edited (2 weeks ago)
in reply to Tuta

elegiría mejor #DeltaChat

Quedó comprobado que #Signal utiliza los servidores de Amazon que, al momento de sufrir un colapso, la mensajería quedaría fuera de servicio.

in reply to Tuta

one day you unwrap() what you shouldn't have, another day you again unwrap what you shouldn't have. What should I do with you bigtech?
#cloudflare #whatsapp #bigtech
This entry was edited (2 weeks ago)
in reply to Tuta

🔟 Easy Walmart Shopping Starts Here!
Get a prepaid gift card delivered instantly to your email — join today. Join Now: effectivegatecpm.com/x3b6hj9h7…
in reply to Tuta

youtube.com/watch?v=AUKIEECSKS…
in reply to Tuta

I’m not sure if I’m misunderstanding the article but couldn’t you also do this exploit in signal, since it has a look up by phone number option? I guess the main concern is the lack of rate limiting, but this could also be bypassed. The real lesson is that if you want privacy you shouldn’t dox yourself in your accounts.
in reply to Tuta

No offense. This seems to be pretty fuddy to me. The data that "leaked" was just the public data, like phone number, status text, pfp, etc.

Don't put anyhting you don't want public on a social media platform.

in reply to Tuta

Yes, but its also only the names and profile pictures.
Unfair to claim it as leak since most of it is online anyway
in reply to Tuta

“To our surprise, neither our IP address nor our accounts have been blocked by WhatsApp. Moreover, we did not experience any prohibitive rate-limiting. With our query rate of 7,000 phone numbers per second (and session), we could confirm 3.5 billion phone numbers registered on WhatsApp”

😐