What happened

US cybersecurity researchers demonstrated how AI could hijack WeChat accounts through unanswered voice calls, highlighting a new class of AI-driven threats.

Security firm Calif revealed on Tuesday that its AI system found a critical flaw in Tencent's messaging and payments app in July, and within about a week, researchers developed a tool called WeWorm to exploit it.

The demonstration has intensified concerns about AI-enabled cyber attacks and prompted renewed calls for bilateral cyber cooperation between the US and China.

Why it matters

The ease and speed with which AI can be used to find and exploit vulnerabilities in widely used apps like WeChat underscores the growing risk that AI poses to digital security.

This incident highlights the need for international collaboration, especially between the US and China, to address the shared threat of AI-powered cyber attacks, which can have global repercussions.

It also raises questions about the security of popular platforms and the potential for AI to be used in espionage or financial fraud, given WeChat's dual role in messaging and payments.

Key facts

US security firm Calif demonstrated AI-assisted hijacking of WeChat accounts via unanswered voice calls.

Calif identified a critical flaw in Tencent's WeChat app in July and developed WeWorm in just over a week.

The demonstration has led to renewed calls for US-China cooperation on cyber issues.

What to watch next

Whether Tencent will respond to the reported vulnerability and issue a patch to protect users.

If this demonstration will prompt concrete steps toward a US-China cyber cooperation framework.

The potential for other AI-driven exploits targeting popular apps, as AI tools become more accessible.

Sources