A bug in Truecaller’s Guardian app could let hackers track user’s family
By MYBRANDBOOK
Truecaller has launched its Guardian app that has been designed to share location and important details with ‘guardians’ of user’s choice in cases of emergency. The app is supposed to be able to get users aid as quickly as possible at the location users are in. Soon after the app was announced, a major bug was discovered that could let hackers take full control over users’ accounts and track them.
According to a report, security researcher Anand Prakash discovered a vulnerability in the Guardian app and informed Truecaller about it. It was fixed on the same day.
The bug discovered by Prakash was in the app’s “Log in with Truecaller API”. This meant that a hacker could use user’s phone number to log into their account on the Guardian app. They could then intercept the API’s request and change the phone number to get access to user’s account and control it.
This account takeover could let hackers add themselves or pretty much anyone else as a trusted contact on another person’s profile. This bug also allowed the hacker to view your family members’ details like name, birth dates, phone number and live location.
Truecaller said in a statement that that the bug was a development configuration that made its way to the final roll by mistake.
“In this case, the issue pointed out by Anand was due to a development configuration being rolled out by mistake during the launch phase. Our engineers were already rolling out a fix at the time of his submission to ensure user safety,” Truecaller said.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
PRAMA HIKVISION INDIA PRIVATE LIMITED
TEJAS NETWORKS INDIA PVT. LTD.
DELL TECHNOLOGIES INDIA PVT. LTD.
WIPRO LTD.
ICONS OF INDIA : RAMESH NATRAJAN
Ramesh Natarajan, CEO of Redington Limited, on overcoming ‘technolog...
Icons Of India : Bhavish Aggarwal
Indian entrepreneur Bhavish Aggarwal is the CEO of Ola, India’s larg...
ICONS OF INDIA : RISHAD PREMJI
Rishad Premji is Executive Chairman of Wipro Limited, a $11.3 billion ...
ITI - ITI Limited
ITI Limited is a leading provider of telecommunications equipment, sol...
EESL - Energy Efficiency Services Limited
EESL is uniquely positioned in India’s energy sector to address ener...
C-DAC - Centre for Development of Advanced Computing
C-DAC is uniquely positioned in the field of advanced computing...
Indian Tech Talent Excelling The Tech World - Rajiv Ramaswami, President & CEO, Nutanix Technologies
Rajiv Ramaswami, President and CEO of Nutanix, brings over 30 years of...
Indian Tech Talent Excelling The Tech World - Sanjay Mehrotra, CEO- Micron Technology
Sanjay Mehrotra, the President and CEO of Micron Technology, is at the...
Indian Tech Talent Excelling The Tech World - Thomas Kurian, CEO- Google Cloud
Thomas Kurian, the CEO of Google Cloud, has been instrumental in expan...