- Joined
- 3 Nov 2010
- Messages
- 29,032
- Solutions
- 17
- Reaction score
- 41,479
The vulnerability was found on the Airtel app's API and was exposed to exploitation by malicious parties. The flaw allowed access to personal data like user name, email, residential address, IMEI number of the device in user, and more with just the mobile number. Airtel says that the vulnerability has been fixed as soon as it got to know about the issue.
The security flaw on the Airtel mobile app was spotted by a security researcher, Ehraz Ahmed, based in Bengaluru. BBC reported that he took 15 minutes to find the flaw on the Airtel app. The researcher notes that the email of the users could also have been exposed and made it prone to spamming and other such targeted attacks.
Airtel Confirms Mobile App Security Flaw Exposed User Data Of Millions
The security flaw on the Airtel mobile app was spotted by a security researcher, Ehraz Ahmed, based in Bengaluru. BBC reported that he took 15 minutes to find the flaw on the Airtel app. The researcher notes that the email of the users could also have been exposed and made it prone to spamming and other such targeted attacks.
Airtel Confirms Mobile App Security Flaw Exposed User Data Of Millions