TrueCaller patches exploit that left millions of Android users vulnerable

truecaller exploit patched
It seems as though every other day, there’s some kind of potential threat to an Android user’s security. Another security exploit was recently uncovered, but this time it’s related to a dialer app called TrueCaller.

While it’s not malware-related, installing TrueCaller could have left you susceptible to malicious hackers. Cheetah Mobile’s Security Research Lab found a loophole in the app that would have allowed anyone to gain access to TrueCaller user’s private information. TrueCaller used a smartphone’s IMEI number as the identity label of its users.

TrueCaller tells you who’s calling. It does so by identifying numbers, and matching them with ones marked by users. You can mark numbers as spam to make the service better and more reliable. As it crowd-sources its data, TrueCaller users have accounts with their name, phone number, home address, gender, and more — it’s this data that was available to malicious hackers through the app’s loophole.

If someone managed to get hold of your IMEI number, they could go to TrueCaller’s website and access all of that information in your account, and even modify it — potentially lifting spam blocks so those calls can make it through again.

Thankfully, TrueCaller has patched the issue, and you should download the latest update through the Google Play store to make sure you’re safe. The company says no user information was compromised.

“We recently found an issue where some user defined information can be retrieved or changed without the original user’s consent, if a third person knows the IMEI number of the original person’s device,” according to the blog post. “We’ve quickly taken steps to fix this issue and have released an update which we strongly suggest all users upgrade to.”

What makes it scary is that more than 100 million Android users who have downloaded the app were vulnerable, and likely more as TrueCaller has been making its way to Cyanogen OS, in phones like Wileyfox, and Blu devices. TrueCaller is also available for Windows, and iOS, but it looks like the app on those operating systems were not affected.


How good are you at spotting phishing scams? Take this quiz to find out

Are you able to discern between a legitimate email and one that's a scam designed to phish for your personal information? Google created an online quiz with tips to help you better understand phishing so you don't become a victim.

Popular Android navigation apps are just Google Maps with ads, researcher says

A malware researcher found that 19 free Android navigation apps on the Google Play Store were nothing more than Google Maps, but with ads. One of the apps asked for a payment to remove the ads, while some of them presented security risks.

Android vs. iOS: Which smartphone platform is the best?

If you’re trying to choose a new phone and you’re not sure about the merits and pitfalls of the leading smartphone operating systems, then come on in for a detailed breakdown as we pit Android vs. iOS in various categories.

Having trouble logging in? Here's how to reset your Apple ID password

To use any of Apple's services, you need to have an Apple ID and know your password. Thankfully, there are ways to deal with forgotten passwords and regain access to your account. Here's how to reset your Apple ID password.

Apple Pay coming to more top U.S. stores, including Target and Taco Bell

Apple Pay is the best way to pay on your iPhone and Apple Watch. Apple Pay support is being rolled out across the U.S. for a variety of top retailers, including Taco Bell, Target, Hy-Vee, and more.

Tune in to the best internet radio stations for your listening pleasure

Even in the streaming era, radio stations get some of the best exclusives and curate some of the finest handpicked playlists around. Here are the best internet radio stations, for your listening pleasure.

The 2020 iPhones may only use OLED displays and Intel 5G modems

While some reports hinted that Apple was looking to move away from using Intel tech, a new report suggests the exact opposite. Reportedly, Apple has chosen Intel to supply 5G modems for Apple's first 5G-enabled iPhone, due in 2020.
Home Theater

Spotify adds artist-blocking feature, despite its denials

Though it continues to claim you can't do it, there is plenty of evidence that Spotify added an artist-blocking feature to its platform, making it easy for users to never hear a specific musician or band.

With weeklong battery life, the new Honor Watches are a real Dream to wear

Honor has unveiled the new Honor View 20, one of the best smartphones of the year. Alongside it, however, the company also took the wraps off of the new Honor Watch Magic and Honor Watch Dream.

2019's 10 best dating apps to help you find the perfect companion

Everyone knows online dating can be stressful, time-consuming, and downright awful. Check out our top picks for the best dating apps, so you can streamline the process and find the right date, whatever you're looking for.

Moschino glams up the 48-megapixel Honor View 20 at Paris launch

After its success with the View 10 in 2018, Honor has announced its sequel, the Honor View 20 with an entirely new type of display which has a hole-punch for the camera rather than a notch.

10 top features you should be using on your Apple Watch

The Apple Watch can do more than just tell you the time, but you may not be aware of all the different functions it has. Our list of the 10 most often used functions and features will help you understand what it can really do.

Get your photos on billboards with Apple’s 2019 ‘Shot on iPhone’ program

Like previous years, Apple has once again launched its Shot on iPhone program, which encourages users to submit the best photos they've taken with their iPhone. Ultimately, the winners will get their photos featured on billboards.

Embrace your inner Dr. Frankenstein with the Huawei Mate 20 Pro and this cool app

Ever wanted to make your favorite toy come alive? If so, and you have a Huawei Mate 20 Pro, then you need to grab the 3D Live Maker app and try out some augmented reality magic. Here's how to use it.