WhatsApp is absurdly unsafe to use, but so are SMS/MMS and unpatched web browsers for various reasons. There is also no good way to segregate them, meaning that their compromise is a compromise of the entire device. Even GrapheneOS is now unsafe because it hasn't received patches for months. The only logical conclusion is that both Google and Meta are in on it. Something tells me that these vulnerabilities are why the government gives both companies a free pass.
Even if these doors were closed, there is also the cell tower communication chip that has significant access to the phone, and risks device compromise. All together, using a smartphone is more unsafe than using Adobe Flash back in the day, but nothing is done about it.
The release https://grapheneos.org/releases#2025090500 specifically states "update to Android 16 QPR1 kernel drivers and kernel build system to ship the security patches prior to Android 16 QPR1 being released to AOSP"
OutOfHere•4h ago