← Back to advisories & guidance
March 31, 2026
NCSC
Guidance
Summary
Alongside international partners, the NCSC has issued actions for individuals at risk of targeted attacks against Messaging apps such as WhatsApp, Messenger and Signal are an important part of how we communicate every day. The NCSC and international partners have seen growing malicious activity from Russia-based actors using messaging apps to target high-risk individuals. High-risk individuals face a greater likelihood of attacks against their accounts due to a combination of their role and potential access to sensitive information and important people. You might be a high-risk individual if your work or public status means you have access to, or influence over, sensitive information that could be of interest to threat actors. The NCSC has previously reported on the targeting of government officials’ accounts by China state-affiliated APT31, Russian Federal Security Service (FSB) actor Star Blizzard and Iran's Islamic Revolutionary Guard Corps (IRGC). trick you into sharing login or account recovery codes add their own device to your account without you noticing join group chats without detection phish you using malicious links or QR codes While anyone can be the victim of social engineering there are key actions you can take to reduce the risks against your Do not share sensitive information via messaging apps.
News Coverage
No coverage found in monitored research blogs or news feeds.
CVEs Referenced in This Publication
No CVEs are referenced in this publication.
Vendors Named in This Publication
Each vendor links to its Known Exploited Vulnerabilities catalog page.
Only vendors that appear in the KEV catalog are listed, either because
the publication cites one of their KEV entries or because it names them
directly.