Security flaw in Airtel app exposes customers data, fixed now


PTI, Dec 8, 2019, 9:35 AM IST

New Delhi: An independent cybersecurity researcher found technical flaws in an application of Bharti Airtel that exposed “sensitive user information” which the company claims to have fixed now.

According to the cybersecurity researcher Ehraz Ahmed the flaw existed in one of the Airtel app that allows “to fetch sensitive user information of any Airtel subscriber.”

“It revealed information like first and last name, gender, email, date of birth, address, subscription information, device capability information for 4G, 3G & GPRS, network information, activation date, user type (prepaid or postpaid) And current IMEI number,” Ahmed said in his blog.

The IMEI number is a unique number that can be used to identify the device of the user.

“Every user that is on India’s Airtel network was at risk of getting his information leaked through this vulnerability, and risking over 325.5 million subscribers in India,” Ahmed said.

When contacted Bharti Airtel spokesperson acknowledged the flaw and said that it has been fixed as soon as the company was alerted about it.

“There was a technical issue in one of our testing APIs, which was addressed as soon as it was brought to our notice. Airtel’s digital platforms are highly secure. Customer privacy is of paramount importance to us and we deploy the best of solutions to ensure the security of our digital platforms,” Airtel spokesperson said.

Udayavani is now on Telegram. Click here to join our channel and stay updated with the latest news.

Top News

Today’s Cong is ‘duplicate Congress’ led by ‘fake Gandhis’, claims Union Minister Pralhad Joshi

Ahead of Delhi polls, Kejriwal helps women, elderly register for welfare schemes

Cong presses for Shah resignation over Ambedkar remark, announces protests against ‘anti-Dalit’ BJP

Mumbra woman gets life in jail for killing son’s wife, his mother-in-law

Indian buyers still prefer physical dealerships over online mediums to purchase cars: Survey

Derogatory remarks row: Karnataka legislative Council chairman says no recordings available

‘Send Sheikh Hasina back to country’: Bangladesh writes to India

Related Articles More

ISRO to study how crops grow in space on PSLV-C60 mission

ISRO & ESA agree to cooperate on astronaut training, mission implementation

Snatcher lands in police net in Delhi, AI tech helps reveal identity

AI Meets Health: The Rise of Smart Fitness Solutions

Power Up by Powering Down: 10 Energy-Saving Tips for Every Home

MUST WATCH

Tulunadu Daivaradane

Feeding Birds with Creative Paddy Art!

Areca Nut

HOTEL SRI DURGA BHAVANA

Harish Poonja


Latest Additions

Tanush Kotian replaces recently retired Ashwin in India’s squad

Newly recruited Meitei, Kuki personnel in Manipur police to be posted together: CM Biren Singh

Today’s Cong is ‘duplicate Congress’ led by ‘fake Gandhis’, claims Union Minister Pralhad Joshi

Belagavi: Assistant mahout killed by temple elephant

Ahead of Delhi polls, Kejriwal helps women, elderly register for welfare schemes

Thanks for visiting Udayavani

You seem to have an Ad Blocker on.
To continue reading, please turn it off or whitelist Udayavani.