• About Us
  • Disclaimer
  • Contact Us
  • Privacy Policy
Friday, January 16, 2026
mGrowTech
No Result
View All Result
  • Technology And Software
    • Account Based Marketing
    • Channel Marketing
    • Marketing Automation
      • Al, Analytics and Automation
      • Ad Management
  • Digital Marketing
    • Social Media Management
    • Google Marketing
  • Direct Marketing
    • Brand Management
    • Marketing Attribution and Consulting
  • Mobile Marketing
  • Event Management
  • PR Solutions
  • Technology And Software
    • Account Based Marketing
    • Channel Marketing
    • Marketing Automation
      • Al, Analytics and Automation
      • Ad Management
  • Digital Marketing
    • Social Media Management
    • Google Marketing
  • Direct Marketing
    • Brand Management
    • Marketing Attribution and Consulting
  • Mobile Marketing
  • Event Management
  • PR Solutions
No Result
View All Result
mGrowTech
No Result
View All Result
Home Technology And Software

Security flaws in Freedom Chat app exposed users’ phone numbers and PINs

Josh by Josh
December 11, 2025
in Technology And Software
0
Security flaws in Freedom Chat app exposed users’ phone numbers and PINs
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter


Messaging app Freedom Chat has fixed a pair of security flaws: one that allowed a security researcher to guess registered users’ phone numbers, and another that exposed user-set PINs to others on the app.

Freedom Chat, released in June, bills itself as a secure messaging app, and claims on its website that users’ phone numbers stay private.

But security researcher Eric Daigle told TechCrunch that users’ phone numbers and PIN codes, used for locking the app, could be easily obtained by exploiting vulnerabilities.

Daigle found the vulnerabilities last week and shared their details with TechCrunch, as Freedom Chat does not provide a public way to report security flaws, like a vulnerability disclosure program. TechCrunch then alerted Freedom Chat founder Tanner Haas to the security flaws by email.

Haas confirmed to TechCrunch that the app has now reset user PINs and released a new version. Haas added that the company is removing instances where users’ phone numbers were occasionally visible, and has notched up rate-limiting on its servers to prevent mass-guess attempts.

Daigle, who published his findings in a blog post, told TechCrunch it was possible to enumerate the phone numbers of close to 2,000 users who had signed up to use Freedom Chat since it launched. Daigle said Freedom Chat’s servers allowed anyone to flood it with millions of phone number guesses to determine if a user’s phone number was stored on the servers.

Per Daigle, this technique is identical to one described by the University of Vienna in research last month, where academics scraped data on some 3.5 billion user accounts who signed up to WhatsApp by matching billions of phone numbers against WhatsApp’s servers.

Daigle also found Freedom Chat was leaking users’ PIN codes. Using an open-source network traffic inspection tool to analyze the data going in and out of the app, Daigle saw that the app would respond with the PIN codes of every other user in the same public channel — even if the PINs weren’t visible to users within the app itself.

According to Daigle, anyone who was in the default Freedom Chat channel, which users are automatically subscribed to when they first sign up, had their PIN broadcast to everyone else in the channel. Daigle told TechCrunch that knowledge of a person’s PIN could allow someone to open the app from a user’s stolen device.

In an app store update published Sunday, Freedom Chat noted: “A critical reset: A recent backend update inadvertently exposed user PINs in a system response. No messages were ever at risk, and because Freedom Chat does not support linked devices, your conversations were never accessible; however, we’ve reset all user PINs to ensure your account stays secure. Your privacy remains our top priority.”

Freedom Chat is Haas’ second messaging app, after Converso, which was delisted from app stores following the disclosure of security flaws that exposed users’ private messages and content.



Source_link

READ ALSO

Claude Code just got updated with one of the most-requested user features

Why it feels like right-wing ICE narratives are dominating social media

Related Posts

Claude Code just got updated with one of the most-requested user features
Technology And Software

Claude Code just got updated with one of the most-requested user features

January 16, 2026
Why it feels like right-wing ICE narratives are dominating social media
Technology And Software

Why it feels like right-wing ICE narratives are dominating social media

January 15, 2026
How to claim Verizon’s $20 credit for Wednesday’s service outage
Technology And Software

How to claim Verizon’s $20 credit for Wednesday’s service outage

January 15, 2026
11 Best Smartwatches (2026): Apple, Wear OS, Hybrid & Kids’ Watches
Technology And Software

11 Best Smartwatches (2026): Apple, Wear OS, Hybrid & Kids’ Watches

January 15, 2026
Microsoft taps India’s Varaha for durable carbon removal offtake
Technology And Software

Microsoft taps India’s Varaha for durable carbon removal offtake

January 15, 2026
Z.ai's open source GLM-Image beats Google's Nano Banana Pro at complex text rendering, but not aesthetics
Technology And Software

Z.ai's open source GLM-Image beats Google's Nano Banana Pro at complex text rendering, but not aesthetics

January 15, 2026
Next Post
6 Ideas to Make Engineering Content Actually Engaging on Social Media

6 Ideas to Make Engineering Content Actually Engaging on Social Media

POPULAR NEWS

Trump ends trade talks with Canada over a digital services tax

Trump ends trade talks with Canada over a digital services tax

June 28, 2025
Communication Effectiveness Skills For Business Leaders

Communication Effectiveness Skills For Business Leaders

June 10, 2025
15 Trending Songs on TikTok in 2025 (+ How to Use Them)

15 Trending Songs on TikTok in 2025 (+ How to Use Them)

June 18, 2025
Google announced the next step in its nuclear energy plans 

Google announced the next step in its nuclear energy plans 

August 20, 2025
App Development Cost in Singapore: Pricing Breakdown & Insights

App Development Cost in Singapore: Pricing Breakdown & Insights

June 22, 2025

EDITOR'S PICK

Will AI start nuclear war? What Netflix movie A House of Dynamite misses.

Will AI start nuclear war? What Netflix movie A House of Dynamite misses.

November 8, 2025

Marine Combat Veteran Kills 12 In Crowded California Bar

March 29, 2025

How Discord is helping PR pros build community and reach journalists

November 3, 2025
Bringing meaning into technology deployment | MIT News

Bringing meaning into technology deployment | MIT News

June 11, 2025

About

We bring you the best Premium WordPress Themes that perfect for news, magazine, personal blog, etc. Check our landing page for details.

Follow us

Categories

  • Account Based Marketing
  • Ad Management
  • Al, Analytics and Automation
  • Brand Management
  • Channel Marketing
  • Digital Marketing
  • Direct Marketing
  • Event Management
  • Google Marketing
  • Marketing Attribution and Consulting
  • Marketing Automation
  • Mobile Marketing
  • PR Solutions
  • Social Media Management
  • Technology And Software
  • Uncategorized

Recent Posts

  • A Playbook for Securing Citations in AI Overviews
  • Accounting software development for mining in Australia
  • Seven tests for B2B growth
  • Campaign total budgets expands to more campaign types
  • About Us
  • Disclaimer
  • Contact Us
  • Privacy Policy
No Result
View All Result
  • Technology And Software
    • Account Based Marketing
    • Channel Marketing
    • Marketing Automation
      • Al, Analytics and Automation
      • Ad Management
  • Digital Marketing
    • Social Media Management
    • Google Marketing
  • Direct Marketing
    • Brand Management
    • Marketing Attribution and Consulting
  • Mobile Marketing
  • Event Management
  • PR Solutions

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?