The Sri Lanka Computer Emergency Readiness Team (SLCERT) warned WhatsApp users today not to share any one-time password (OTP) with third parties, as their accounts are at risk of being hacked.
SLCERT Senior Information Security Engineer Charuka Damunupola said that so far three incidents have been reported to the team regarding the hacking of WhatsApp accounts.
“A message could be received from a known contact in the WhatsApp contact list claiming to have sent an OTP number and that a link (code) would be received requesting to join a zoom meeting claimed to be a religious discussion. Once receiving the OTP by the requested party, the WhatsApp account will no longer be active for the original user. Then the same process will be continued using the hacked account contacts and they will claim money to restore the account,” he said.