Posts

Showing posts from April, 2021

Whatsapp User’s IP Address disclosure with Link Preview feature and Grabify

Image
Note: This content is strictly for educational use only , misusing this knowledge can land you in trouble.  I recently came across an article on medium by Rahul Kankrale about  Whatsapp user’s IP disclosure from Whatsapp's Link Preview feature  . The article was quite interesting , it meant that if a Whatsapp user copy pasted a website URL on his/her message box and Whatsapp generated a preview of the URL , it may expose Whatsapp user's IP address to the website even without user clicking the URL . That article was quite techy and demonstrating it to non technical student community was a pain, i also wanted to test if it works in 2021 without complex technical setup. So after lots of trial and error I selected  grabify for this purpose and got interesting results such as Whatsapp version , Location , ISP and IP Address. I have used a VPN to hide my IP Address and geolocation . In the above dashboard  i had to  hide few columns for privacy reasons .   So here i am going to expla