Pages

Tuesday, March 29, 2016

Truecaller bug puts 100,000,000 users's privacy at risk

There is no doubt that Truecaller offers a splendid and truly natural upgrade to the otherwise really analog service that is voice calling. If you are not in the know about the app, it is simply an interactive directory for the smartphone age, that offers extra functions like blacklists, online statuses and access to aggregated personal info (address, photo, email etc.).
However, when dealing with sensitive personal data on such a big scale, hiccups are typically quite scary, as Truecaller can already attest. The last such scare was when hackers have discovered a potential exploit that could allow access to any user profile on Truecaller.
Before you get too freaked out, the process does require access to your phone's IMEI address, which isn't too easy to obtain. Hackers claimed that obtaining it could allow them to steal or even alter details such as account name, gender, profile pic, home address and just about anything else Truecaller has on record for you. Allegedly, the method could even be used to modify account settings and tamper with stuff like spam filters and blacklists, potentially even disrupting the your phone experience.
Thankfully, whatever the exploit was, Truecaller has acted quickly and has already patched the bug. However in order for the fix to start working, you need to update their app. Hopefully, the problem won't escalate any further.

No comments :

Post a Comment