AI-Built WeChat Worm Reveals Billion-Account Risk

Calif described WeWorm as the first known worm to spread between Apple and Google operating systems entirely through a zero-click exploit, potentially reaching hundreds of millions of devices within hours by propagating through victims’ full address books.
Calif said it briefed White House officials about the vulnerability before publicly disclosing its research.
Tencent addressed the vulnerability in Android version 8.0.77 and iOS version 8.0.76, released on Aug. 21, according to Calif researchers.
For its demonstration, Calif used a Google Pixel 10a as the attacking device and an Apple iPhone 17e as the target, illustrating the worm’s ability to cross between Android and iOS.
Calif said it used a combination of open-source and leading U.S.-based AI models to build WeWorm, but did not identify the specific models.
Researchers at Palo Alto security firm Calif have disclosed WeWorm, a zero-click worm that could hijack WeChat accounts on over a billion devices by exploiting a memory-corruption flaw in the app's voice-calling system. Cyber Kendra reports the worm spreads automatically through victims' saved contacts on both iOS and Android, allowing attackers to read messages, make calls, and potentially seize full device control. Calif said AI models identified the vulnerability and built a working exploit in roughly two days, with the complete worm completed within a week—raising alarms about how artificial intelligence could accelerate cyberattack development at scale.
Tencent, WeChat's parent company, patched the flaw in Android version 8.0.77 and iOS version 8.0.76 released on August 21, and said it found no evidence that real users were compromised. PC Mag reports Calif also briefed White House officials about the vulnerability before going public, though the firm withheld technical details pending a future security conference presentation.
WeWorm works by exploiting a flaw in WeChat's VoIP (voice-over-IP) system that requires no user action—victims don't need to answer a call or tap a link. IBTimes explains the worm hijacks an account through an incoming call, then automatically spreads to everyone in the victim's address book by making outgoing calls on both iPhones and Android phones. This cross-platform spread is novel: Calif said WeWorm is the first known worm to jump between Apple and Google operating systems entirely through a zero-click method. In demonstrations using a Google Pixel 10a attacking an Apple iPhone 17e, researchers showed how hundreds of millions of devices could be compromised within hours by chaining through address books.
What sets WeWorm apart is how quickly it was built. Calif used a combination of open-source and leading U.S.-based AI models to identify the vulnerability and generate an initial working exploit in about two days, then completed the full worm roughly a week later. PC Tablet reports this compressed timeline illustrates a major cybersecurity concern: artificial intelligence can dramatically speed up the discovery, testing, and weaponization of zero-day vulnerabilities. Without AI, such work typically takes security teams weeks or months. Calif warned that widespread access to powerful AI models could enable attackers to find and exploit flaws faster than defenders can patch them.
The firm did not disclose which specific AI models were used, citing plans to share full technical details at an upcoming security conference. This partial disclosure is intentional—Calif balances transparency to warn the industry against revealing exploits that could be immediately adopted by criminal groups.
Tencent moved quickly after Calif's private report. The company released patched versions of WeChat for both platforms within weeks and implemented server-side mitigations to block the exploit. UK PC Mag notes that Tencent said it found no evidence that actual users were compromised during the vulnerability window, and stated that no further action was required. However, Calif's disclosure raises questions about whether the flaw was discovered and exploited by threat actors before the patch dropped—security researchers often find evidence of exploitation only months or years after an attack begins.
WeChat has 1.4 billion monthly active users, making it one of the world's most widely used messaging apps. A successful WeWorm attack could have given hackers read and send access to private conversations, voice calls, and payment information—all without the victim knowing they were compromised. Cyber Kendra reports the vulnerability affected both Android and iOS simultaneously, eliminating the possibility that users could simply switch phones to escape the worm. The disclosure highlights a critical gap: even massively popular apps with large security teams can miss critical flaws, and AI-powered discovery tools will only make such misses more consequential if wielded by attackers.
Publishers
19
Articles
13
Reach
32