WhatsApp Enhances Security with Stronger Two-Step Verification and Multiple Passkeys

www.news4hackers.com-whatsapp-enhances-security-with-stronger-two-step-verification-and-multiple-passkeys-whatsapp-enhances-security-with-stronger-two-step-verification-and-multiple-passkeys

The platform has rolled out new security protocols, including multi-passkey support and enhanced two-factor authentication, to bolster account protection.

Multi-Passkey Support and Enhanced Two-Factor Authentication

Security adds enhanced account protection measures including multi-passkey support and improved two-factor authentication. The platform has initiated deployment of new security protocols designed to strengthen user account resilience against unauthorized access. These updates include the ability to associate multiple passkeys with individual accounts, expanding existing biometric authentication options.

Multi-Passkey Functionality

Current passkey functionality allows secure login through fingerprint recognition, facial authentication, or device-specific screen locks, with the new feature enabling separate passkeys for different operating systems. “Over a billion users have already implemented passkeys, and the capability to add multiple credentials now provides enhanced flexibility for those utilizing both Android and iOS devices. To activate this feature, navigate to Settings > Account > Passkeys,” the company stated.

Modernized Two-Step Verification

The organization has also modernized its two-step verification process by replacing the previous six-digit numeric code requirement with a full alphanumeric password system. “Previously limited to six-character numeric codes, the updated verification method now supports longer passwords incorporating letters, numbers, and special characters to increase security. Users relying on simple sequences like ‘123456’ are encouraged to update their credentials immediately,” the statement emphasized.

Expanded Caller Identification and Fraud Mitigation

Android Caller Identification Features

Additional security enhancements include expanded caller identification features on mobile devices. Android users will now receive supplementary information about unknown contacts, such as international number origin and shared group memberships, to help mitigate scam attempts. “Scammers often exploit urgency to manipulate users, but this new context provides an opportunity to verify caller legitimacy before engaging,” the company noted.

Broader Security Initiatives and Recent Updates

Strict Account Settings and Device-Linking Alerts

These improvements align with broader security initiatives launched throughout the year to detect and prevent fraudulent activities. In January, the platform introduced “Strict Account Settings,” a feature inspired by Apple’s Lockdown Mode, aimed at safeguarding high-risk users from advanced threats like spyware exploitation. By March, the service implemented alerts for suspicious device-linking requests, a common tactic used in account takeover attempts through deceptive QR codes or linking codes.

Scam Alert Beta and Ongoing Security Efforts

Recently, a limited beta test for an “Scam Alert” function was launched, utilizing on-device machine learning to identify potential scam interactions. The company serves over 3 billion users globally across 180 countries, according to internal metrics. Security analytics reveal that 37% of malicious activities are blocked after credential compromise, highlighting ongoing challenges in threat mitigation.

Global Reach and Security Effectiveness

The Blue Report 2026 evaluates security effectiveness through 338 million simulated attacks across enterprise environments, providing insights into defensive strategies. The platform continues to refine its security architecture, incorporating user feedback and evolving threat landscapes to maintain robust protection standards. Recent updates demonstrate a commitment to proactive defense mechanisms, addressing both emerging vulnerabilities and persistent attack vectors.

“Security analytics reveal that 37% of malicious activities are blocked after credential compromise, highlighting ongoing challenges in threat mitigation.”



About Author

en_USEnglish