Gabriel Gegenhuber
ggegenhuber.bsky.social
Gabriel Gegenhuber
@ggegenhuber.bsky.social
#InfoSec enthusiast; security and privacy PhD candidate; opinions are my own
Excited to share that my newest research paper, accepted to NDSS, was just featured by @wired.com and @agreenberg.bsky.social!
Researchers tried plugging every possible phone number into WhatsApp's web app. They found they could collect 3.5 billion users' phone numbers, plus photos for half and profile text for more than a third, the biggest personal data exposure ever by some measures. www.wired.com/story/a-simp...
A Simple WhatsApp Security Flaw Exposed 3.5 Billion Phone Numbers
By plugging tens of billions of phone numbers into WhatsApp’s contact discovery tool, researchers found “the most extensive exposure of phone numbers” ever—along with profile photos and more.
www.wired.com
November 18, 2025 at 6:08 PM
Reposted by Gabriel Gegenhuber
WOOT 2025 late morning session: Application Security (Chair: Yves Younan)
- Gabriel Karl Gegenhuber: Prekey Pogo—WhatsApp handshake weaknesses
- Manuel Karl: Formula injection in real-world spreadsheets
- Jannik Hartung: PHP foot-gun case study (Best paper award !)
August 12, 2025 at 8:04 PM