logo

Security bugs in popular phone-tracking app iSharing exposed users’ precise locations

ID: 373388d5-7b8e-5b09-8bc1-ea0dff4901da

STIX ID: report--373388d5-7b8e-5b09-8bc1-ea0dff4901da

Feed Name: TechCrunch Security News

Threat Score
70/100

Date Published: 2024-04-24

Date Updated: 2026-04-23

Author: Zack Whittaker

...
...

**Executive summary:** A security researcher discovered API authorization flaws in the iSharing location‑tracking app that allowed any user to retrieve precise location coordinates and personally identifiable information for other users (name, profile photo, email, phone). The researcher reported the issue and iSharing patched the bug around April 20–21; the company reported no evidence of prior exploitation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.