Flaw in Airtel's mobile app exposed data of 32 cr subscribers

by IANS |

New Delhi, Dec 7 (IANS) In yet another massive data breach incident, data of over 32 crore subscribers of telecom major Airtel were exposed and became vulnerable due to a serious security flaw in its mobile application.

Ehraz Ahmed, a Bengaluru-based researcher, who first noticed the fault, said in his blog written on Friday that the flaw existed in one of Airtel's API (Application Program Interface) that allowed people to fetch sensitive user information of any Airtel subscriber.

According to reports, Airtel confirmed the breach saying that it has fixed the security flaw associated with its application.

Ahmed also posted a video, which shows a script being used to fetch the information from the Airtel mobile app's API.

"It revealed information like First and Last Name, Gender, Email, Date of Birth, Address, Subscription Information, Device Capability information for 4G, 3G & GPRS, Network Information, Activation Date, User Type [Prepaid/Postpaid] And Current IMEI number," he wrote in his blog.

The IMEI number can be used to identify the device of an user.

According to the blog, every user on Airtel network was at the risk of getting his/her information leaked through this vulnerability.

Airtel is the third largest telecom service provider in the country in terms of subscribers after Vodafone-Idea and Reliance Jio.

Latest News
Top psephologist says PM Modi's connect with women to propel NDA to '400 paar' Fri, Apr 26, 2024, 04:48 PM
Covid-19 worsened 'silent' spread of antimicrobial resistance: WHO Fri, Apr 26, 2024, 04:42 PM
Govt working on setting up Maritime Development Fund akin to Power Finance Corp, REC Fri, Apr 26, 2024, 04:38 PM
Several killed and injured after junta airstrikes in Myanmar Fri, Apr 26, 2024, 04:35 PM
South Korea, Japan could consider simplified entry agreement amid warming ties: Seoul official Fri, Apr 26, 2024, 04:33 PM
CM Vijayan loses cool when asked if elections would be assessment of his governance Fri, Apr 26, 2024, 04:31 PM
Brand owners may look at chess GM Gukesh and others for endorsement deals Fri, Apr 26, 2024, 04:29 PM
Global connected car sales to exceed 500 million in 2030, India to be among top nations Fri, Apr 26, 2024, 04:11 PM
INDIA bloc aims to divide the country on religious grounds: UP CM Yogi Adityanath Fri, Apr 26, 2024, 04:07 PM
FairPoint: If mangoes were for bail, then CM Kejriwal would ride out of jail Fri, Apr 26, 2024, 04:01 PM
Hulkenberg to leave Haas for Sauber at the end of F1 season 2024 Fri, Apr 26, 2024, 03:54 PM
Kia's net profit up 32.5 pc in Q1; India sales drop due to aging models, geopolitical factors Fri, Apr 26, 2024, 03:47 PM
We will implement UCC in entire country, it is 'Modi ki Guarantee': Amit Shah Fri, Apr 26, 2024, 03:45 PM
Three dead after mini car falls into paddy field in Japan Fri, Apr 26, 2024, 03:09 PM
Amid scorching heat, Tripura East records 55 pc turnout till 1 p.m. Fri, Apr 26, 2024, 03:07 PM