Staying Secure on WhatsApp: A Guide to Privacy Settings and Scam Spotting

May 3, 2024 | By Pietro Dubsky

WhatsApp is one of the most popular messaging apps globally, connecting billions of users. While it offers end-to-end encryption for messages, which is a great security feature, users still need to be aware of various scams and take steps to protect their accounts and personal information. This guide will walk you through essential WhatsApp security settings and how to spot common scams.

Key WhatsApp Security Features to Utilize

WhatsApp provides several built-in features to enhance your security and privacy:

  • End-to-End Encryption: By default, your messages, photos, videos, voice messages, documents, status updates, and calls are end-to-end encrypted. This means only you and the person you're communicating with can read or listen to what is sent, and nobody in between, not even WhatsApp.
  • Two-Step Verification: This adds an extra layer of security by requiring a six-digit PIN when registering your phone number with WhatsApp again (e.g., when switching phones). This helps protect your account if your SIM card is stolen or your phone number is compromised.
    Action: Enable it via WhatsApp Settings > Account > Two-step verification. Don't forget to add an email address for PIN recovery, but ensure that email account is also secure!
  • Security Code Notifications: You can be notified when a contact's security code changes. This code is a visible version of the special key shared between you and your contact to verify that your calls and messages are end-to-end encrypted.
    Action: Enable in WhatsApp Settings > Account > Security > Show security notifications on this phone.
  • Fingerprint Lock / Face ID / Touch ID: You can require fingerprint, Face ID, or Touch ID to unlock WhatsApp, even if your phone is already unlocked.
    Action: Enable in WhatsApp Settings > Privacy > Fingerprint lock (or Screen Lock for iOS).
  • Privacy Settings: Control who can see your "Last Seen," "Profile Photo," "About," and "Status." You can also manage your read receipts (blue ticks).
    Action: Review and adjust in WhatsApp Settings > Privacy. Consider setting these to "My Contacts" or "Nobody" for enhanced privacy.
  • Group Privacy Settings: Control who can add you to groups. This helps prevent being added to spam or unwanted groups.
    Action: Set in WhatsApp Settings > Privacy > Groups.
  • Disappearing Messages: You can set messages in a chat to disappear after a certain period (24 hours, 7 days, or 90 days). This can be useful for sensitive conversations.
    Action: Enable per-chat by tapping the contact or group name > Disappearing messages.

Common WhatsApp Scams and How to Spot Them

Scammers are constantly finding new ways to exploit users. Here are some common WhatsApp scams:

1. Impersonation Scams (e.g., "Hi Mum/Dad" Scam)

How it works: You receive a message from an unknown number claiming to be a family member (often a child) who has lost their phone, broken it, or has a new number. They'll quickly ask for money to be transferred urgently for an emergency, a bill, or to buy a new phone.
Red flags: Unexpected message from an unknown number, urgent request for money, slightly off language or grammar, refusal to speak on the phone to verify identity.
How to avoid: Always try to verify the person's identity by calling their original known number or asking a question only they would know the answer to. Never send money based solely on a WhatsApp message request.

2. Fake Job Offers or Lottery Winnings

How it works: Messages promising lucrative job offers (often requiring little work for high pay) or informing you that you've won a lottery or prize. They usually ask you to click a link, provide personal information, or pay a "processing fee" to claim your winnings/job.
Red flags: Unsolicited offers, too-good-to-be-true claims, requests for upfront payment or sensitive personal data.
How to avoid: Legitimate companies rarely offer jobs or award prizes via unsolicited WhatsApp messages. Never pay a fee to receive a prize or secure a job offer found this way.

3. WhatsApp Gold/Premium or "New Features" Scam

How it works: Messages inviting you to download a supposed "premium" or "gold" version of WhatsApp with extra features, or to click a link to enable new, unreleased features. These links often lead to malware-infected websites or try to trick you into installing malicious apps.
Red flags: WhatsApp features are updated through official app stores, not via links in messages. There is no official "WhatsApp Gold" or "Premium" version for regular users.
How to avoid: Only download WhatsApp updates from the official Apple App Store or Google Play Store.

4. Verification Code Scams

How it works: An attacker tries to register your WhatsApp number on a new device. To do this, they need the 6-digit verification code WhatsApp sends to your phone number. They might message you (from a compromised account of one of your contacts, or an unknown number) with a story like, "I accidentally sent my WhatsApp verification code to your number, can you please forward it to me?"
Red flags: Any unsolicited request for a WhatsApp verification code.
How to avoid: NEVER share your WhatsApp verification code (or any other verification code) with anyone. WhatsApp will never ask you for this code. Enabling two-step verification provides strong protection against this.

5. Fake Customer Support

How it works: Scammers may pose as WhatsApp support (or support for other services) and contact you about a supposed issue with your account, asking for login details or personal information.
Red flags: WhatsApp support will typically communicate with you via official channels within the app or through their official help center, not usually via unsolicited direct messages asking for credentials.
How to avoid: Be wary of anyone claiming to be support and asking for sensitive information. Contact support through official channels only.

6. Investment Scams / Get-Rich-Quick Schemes

How it works: Messages promoting "guaranteed" high returns on investments, often in cryptocurrency or forex trading. They lure you with promises of quick and easy money.
Red flags: Promises of guaranteed high returns with little or no risk are almost always scams.
How to avoid: Be extremely skeptical of unsolicited investment advice or opportunities, especially via messaging apps.

General Tips to Stay Safe on WhatsApp

  • Think before you click: Don't tap on suspicious links, even if they appear to come from a known contact (their account might be compromised).
  • Verify requests for money or information: If a contact asks for money or sensitive data, call them on their known number to confirm it's really them.
  • Be wary of messages from unknown numbers.
  • Report and Block: Report spam messages and block suspicious numbers within WhatsApp.
  • Keep WhatsApp updated: Ensure you have the latest version of the app from your official app store.
  • Educate your friends and family: Share awareness about these scams, especially with more vulnerable individuals.

By understanding WhatsApp's security features and being aware of common scam tactics, you can significantly enhance your safety and enjoy a more secure messaging experience.

« Back to Blog