Security flaws in Freedom Chat app exposed users’ phone numbers and PINs
ID: ee9f5eae-fd90-568a-948c-f8f2afc6f699
STIX ID: report--ee9f5eae-fd90-568a-948c-f8f2afc6f699
Feed Name: TechCrunch Security News
Threat Score
Freedom Chat patched critical flaws after a researcher discovered that attackers could enumerate nearly 2,000 users' phone numbers by brute-forcing the app's server and that user-set PINs were being leaked to participants in the default public channel. The reporter notified the vendor, who reset all PINs, released an updated app, removed exposures of phone numbers, and added rate-limiting; no evidence was reported of message access or wider active exploitation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
