Indian security researcher, Ehraz Ahmed found a critical flaw in the Truecaller app that may expose user data as well as device and location information. Truecaller provides various useful features to its users like call-recording, call-blocking, call-identification, chat & video, etc. Truecaller is one of the most popular smartphone app in India and it has over 500 Million downloads worldwide including iOS and Android . Also, it has over 150 Million daily active users, and 1 Million premium users worldwide. According to a security researcher Ehraz Ahmed, the vulnerability existed in one of the APIs of the Truecaller app which allows hackers to insert a malicious link as the profile pic URL. Also, the user wouldn't differentiate this change as the profile pic URL is not shown publicly. So, whenever a user (victim) visits the malicious link added profile which the attacker created on the Truecaller app, the malicious script gets executed and the user's
It features the latest cybersecurity related post and news.