Security researchers denounced a smirch in a renouned Tinder dating app Wednesday that authorised users to lane any other’s real-time plcae for a infancy of 2013 — a loophole that anyone able of elementary programming could exploit.
Tinder is a dating app that uses a real-time geo-location information of circuitously users to bond with one another, and for most of 2013, a disadvantage in a app authorised a user to lane a accurate plcae of another user while a app was running. When a app was closed, a user could still be tracked to a final place they used Tinder.
Include Security detected a bug and reported it to Tinder final fall. A elementary penetrate authorised a user to triangulate another user’s position with an algorithm that would yield a accurate embodiment and longitude of pronounced user. Anyone able of elementary mechanism programming could govern a hack.
“Due to Tinder’s architecture, it is not probable for one Tinder user to know if another took advantage of this disadvantage during a time of exposure,” Include Security Founder Erik Cabetas said in a Net Security report. ”As some-more and some-more applications are being built to embody geo-location services, there is an increasing risk to a remoteness and reserve of users.”
After alerting Tinder to a problem countless times between Oct and Dec 2013, Tinder released a repair someday between Dec and Jan 2014.
“Application vendors and developers have a shortcoming to safeguard their users’ remoteness and confidence is protected, vulnerabilities are communicated promptly, and priority is given to building critical fixes like this,” Cabetas said.
WATCH:
Article source: http://dailycaller.com/2014/02/20/dangerous-flaw-in-tinder-app-let-users-track-each-other-in-real-time/
Recent Comments