Cloned accounts on WhatsApp are soaring and experts reveal how to protect data and regain access
Account cloning on WhatsApp has become one of the most common digital frauds, affecting thousands of users. Criminosos constantly improve their social engineering tactics to deceive victims and gain improper access to the messaging app, turning a communication tool into a vector for financial crimes and extortion.
The scammers’ main objective is to take control of the account to impersonate the owner and request money from friends and family, usually through transfers via Pix. Losses can be significant, and the speed of instant transactions makes it difficult to recover lost amounts.
Faced with this scenario, cybersecurity experts reinforce the need to adopt robust preventive measures and know how to act quickly if the scam materializes. Recovering access and minimizing damage depends on coordinated and immediate actions by the affected user.
How criminals act to clone accounts
The main tactic used by fraudsters is social engineering, a form of psychological manipulation to get people to perform specific actions or disclose confidential information. The scam usually starts with a telephone contact, in which the criminal poses as an employee of a well-known company, such as a bank, a telephone operator or even WhatsApp’s own technical support. With a convincing pretext, such as confirming a registration, offering a benefit or a false security alert, it asks the victim to enter the six-digit verification code sent via SMS by the application. Este code is the access key that allows you to register the WhatsApp account on a new device. Once the scammer obtains this numerical sequence, he enters it into his own device, activating the victim’s account and instantly disconnecting him from his original cell phone, thus taking full control of conversations and contacts.
Warning signs that your account has been hacked
The first and most obvious sign that an account has been cloned is the sudden loss of access. The application displays a message informing that the number was registered on another device, disconnecting the user from their own account without taking any action.
Another important indication is the unexpected receipt of an SMS containing the WhatsApp verification code without you having requested it. Isso demonstrates that someone is actively trying to register your number on another cell phone, making it a clear hacking attempt.
If you still have access, checking active sessions on WhatsApp Web or other devices is crucial. In the “Connected devices” section within the settings, you can view all the locations where the account is logged in. The presence of an unknown device is a strong warning of unauthorized activity.
First essential actions to regain control
The first step when you suspect an intrusion is to try to re-register your phone number on WhatsApp. Abra the app and enter your number to request a new verification code via SMS. If you can receive it and enter it in time, you will regain control and disconnect the attacker.
Immediately after regaining access, go to settings and disconnect all unknown devices in the “Connected devices” section. Essa action ensures that the criminal can no longer access your conversations through an active web session.
It is essential to communicate with the application’s official support. Envie an email to support@whatsapp.com with the subject “Lost/Stolen: Please deactivate my account” and, in the body of the email, include your full phone number, with country code (+55) and area code.
At the same time, register an Boletim of Ocorrência (B.O.) online or at a civil police station. Documentar the crime is essential for future investigations and may be necessary to challenge fraudulent financial transactions carried out in your name.
The importance of two-step verification
Two-step verification is, without a doubt, the most effective layer of security against account cloning on WhatsApp. Esse feature adds the requirement for a PIN, a six-digit numeric password created by the user, which is requested periodically and whenever the phone number is registered on a new device. Mesmo Even if a scammer manages to obtain the verification code sent by SMS, he will not be able to activate the account without knowing this personal password, effectively blocking the invasion.
To activate this feature, go to “Settings” > “Account” > “2-Step Verification” and follow the instructions to create your PIN. We highly recommend associating an email address with your account during this process. Esse email will serve as a recovery method if you forget your PIN, ensuring you don’t lose access to your own account permanently, as well as facilitating a secure password reset when necessary.
Preventative measures to strengthen security
Keeping the WhatsApp app always up to date is a fundamental security practice. Updates released by Meta often include fixes for security vulnerabilities that could be exploited by criminals to facilitate intrusions or install malicious software.
Be wary of links and files received from unknown contacts or even acquaintances if the message seems suspicious. Clicar in malicious URLs can lead to the installation of spyware, spy programs capable of monitoring your activity and stealing sensitive data, including passwords and access codes.
What to do to alert your network of contacts
As soon as you notice cloning, immediately notify your friends, family and groups you participate in through other means of communication, such as calls, SMS or other social networks. Informe that your account has been hacked and ask them not to respond to any requests for money or transfers via Pix coming from your number, in addition to asking them to report the fraudulent profile directly in the application.
Additional protection tools for your device
Installing reliable antivirus software on your smartphone provides an extra layer of protection. Essas tools can detect and block the installation of malicious applications and spyware that are often used as a gateway to steal personal information.
Another related scam is “SIM swap”, where the criminal manages to transfer his cell phone number to a new chip. Para protect yourself, contact your operator and request the creation of a password for any change to your chip. Essa simple measure makes it difficult for fraudsters who try to impersonate you to obtain a new SIM card.
Veja Tambem em News (EN)
Research reveals that parents are unaware of how their children use artificial intelligence
Samsung releases new system update with new features for Galaxy Watch 4 users
Digital retail reduces the value of the Galaxy S25 5G smartphone with bank bonuses and device exchange
Amazon’s wireless CarPlay adapter has a 50% discount and high approval ratings from drivers
Zach Cregger’s new Resident Evil ignores games and focuses on an unprecedented story with new characters
Rumor suggests that Nintendo is preparing a special edition of the Switch 2 with a remake of Ocarina of Time
Apple accelerates production of the iPhone 17e and develops new Air model with dual camera system
Epic Games platform releases twelve high-budget games at no permanent cost for PC users
PlayStation 5 Pro price drop accelerates digital retail sales and eliminates global stocks
New Galaxy Watch 9 firmware appears on server and confirms progress in software development
Apple’s commemorative project tests cell phone with 1.1 millimeter edge and curved screen for 2027