State-Backed Hackers Target Personal Messaging Apps to Bypass Corporate Controls

The UK National Cyber Security Centre (NCSC) warns that state-affiliated groups including Russia’s Star Blizzard, China’s APT31, and Iran’s IRGC are targeting personal messaging apps like WhatsApp, Messenger, and Signal. These attacks focus on high-risk individuals such as government officials, journalists, and academics. By compromising personal accounts, attackers bypass corporate messaging controls and use contact lists to pivot into sensitive networks. Techniques include malicious links, QR codes, social engineering, and impersonation within group chats. This shift means defenders must consider personal device security as part of organizational risk management.

Part of the PlainSec briefing for 2026-04-03

Sources