logoalt Hacker News

solenoid0937yesterday at 5:32 PM2 repliesview on HN

I don't see why standard RE techniques (DBI/Frida + MITM) wouldn't work, do you?

WhatsApp is constantly RE'd because it'd be incredibly valuable to discover gaps in its security posture, the community would find any exfil here.


Replies

martinralbrechtyesterday at 5:40 PM

We did reverse engineer it and we're cryptographers not reverse engineering experts https://eprint.iacr.org/2025/794

show 2 replies
cosmicgadgetyesterday at 5:51 PM

If people are trivially hooking IOS and Android applications then sure, it's just an exercise in dynamic analysis.

Mobile applications are outside my domain so I am surprised platform security (SEL, attestation, etc.) has been so easily defeated.