
DEF CON 33 - Exploiting Security Side Channels in E2E Encrypted Msngrs - G Gegenheuber, M Gunther
Source: YouTube · DEFCONConference · published Oct 10, 2025 · 40:42
Silent Signals: Privacy Side Channels in Encrypted Messengers
This talk reveals critical privacy side channels in Signal and WhatsApp that enable attackers to monitor users without their knowledge or consent. Using only a target's phone number, researchers demonstrated how to track online activity, identify device types, detect usage patterns, and even launch denial-of-service attacks against billions of users.
Key vulnerabilities include device state tracking via silent pings, where delivery receipts (which can't be disabled) allow attackers to monitor online/offline status and differentiate between device states by measuring response times. The prekey mechanism can be exploited to deplete one-time prekeys, track device availability, identify operating systems, and create device fingerprints. Rapid prekey exhaustion can trigger server errors that block new conversations or calls, completely isolating users. Attackers can also drain device resources through invisible reaction messages, causing significant battery consumption (18% per hour) and data usage (13 GB per hour).
These vulnerabilities highlight how end-to-end encryption, while protecting message content, creates inherent privacy risks through implementation details that attackers can exploit to surveil users without consent.
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
I have two really awesome speakers to introduce to you today. Um, we have Gabriel and Max who is behind me. Uh, Max is our first time Devcon speaker. So, um, please welcome them. They will be talking about actually the title of their talk is silent signals exploiting security and privacy side channels in end to-end encrypted messengers. So, let's give it up for these guys. Hi guys, I'm Max. Uh like Jenny said, we're going to talk about silent signals, which is a a little introduction about privacy side channels we found in Signal and WhatsApp and also some other nice vulnerabilities. So first of all, why are we doing this? So I'm going to ask you guys a question. Who in here is using WhatsApp? Just raise your hand if you're using WhatsApp. Okay, that's a that's a good amount of hands. Um w…