Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

President Trump to headline America’s 250th anniversary celebration after artist declines

This 5-year piano learning app offer has been reduced to just $68, making it cheaper than ever.

Taylor Swift completed ‘Toy Story 5’ song in ‘hectic’ 8 hours

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » Security flaw in Freedom Chat app exposes users’ phone numbers and PINs
Exclusives

Security flaw in Freedom Chat app exposes users’ phone numbers and PINs

By December 11, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Messaging app Freedom Chat has fixed two security flaws. One allowed security researchers to guess registered users’ phone numbers, and the other allowed users to set a PIN and make it available to other users on the app.

Released in June, Freedom Chat advertises itself as a secure messaging app, and its website claims that users’ phone numbers are kept private.

However, security researcher Eric Daigle told TechCrunch that the user’s phone number and PIN code used to lock the app could be easily obtained by exploiting the vulnerability.

Daigle discovered the vulnerability last week and shared its details with TechCrunch, as Freedom Chat does not offer a public means to report security flaws like a vulnerability disclosure program. TechCrunch later alerted Freedom Chat founder Tanner Haas about the security flaw in an email.

Haas confirmed to TechCrunch that the app reset user PINs and released a new version. Haas added that the company is removing instances where a user’s phone number is occasionally displayed and is gradually tightening rate limits on its servers to prevent mass guessing attempts.

Daigle, who published his findings in a blog post, told TechCrunch that he was able to list the phone numbers of nearly 2,000 users who have signed up to use Freedom Chat since its launch. Daigle said Freedom Chat’s servers allowed anyone to submit millions of phone number guesses in order to determine if a user’s phone number was stored on the server.

Daigle said the technique is identical to one published in a study last month by the University of Vienna, in which academics collected data on the roughly 3.5 billion user accounts who signed up for WhatsApp by matching billions of phone numbers with WhatsApp’s servers.

Daigle also discovered that Freedom Chat was leaking users’ PIN codes. Using open-source network traffic inspection tools to analyze data flowing into and out of the app, Daigle found that the app responded with the PIN code of every other user in the same public channel, even if the PIN was not visible to the user within the app itself.

According to Daigle, anyone who joined the default Freedom Chat channel, which users are automatically subscribed to when they first sign up, had their PIN broadcast to everyone else in the channel. Daigle told TechCrunch that knowing a person’s PIN could allow them to open apps from the user’s stolen device.

In an app store update published on Sunday, Freedom Chat said, “Critical reset: A recent backend update inadvertently exposed a user’s PIN in a system response. At no time were their messages ever compromised. And because Freedom Chat does not support linked devices, they were unable to access their conversations. However, we have reset the PIN for all users to ensure the safety of their accounts. Your privacy remains our top priority.”

Freedom Chat is Haas’ second messaging app, following Converso, which was removed from the app store following the disclosure of security flaws that exposed users’ private messages and content.


Source link

#Aceleradoras #CapitalRiesgo #EcosistemaStartup #Emprendimiento #InnovaciónEmpresarial #Startups
Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleNANOREMOTE malware uses Google Drive API for hidden controls on Windows systems
Next Article Spyware Alerts, Mirai Strikes, Docker Leaks, ValleyRAT Rootkit — and 20 More Stories

Related Posts

This 5-year piano learning app offer has been reduced to just $68, making it cheaper than ever.

June 18, 2026

How Shaun Evans turned ‘Hot Ones’ into one of the most important interview shows in entertainment

June 18, 2026

New York Knicks Parade: Live updates from the parade route

June 18, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

President Trump to headline America’s 250th anniversary celebration after artist declines

This 5-year piano learning app offer has been reduced to just $68, making it cheaper than ever.

Taylor Swift completed ‘Toy Story 5’ song in ‘hectic’ 8 hours

Hot rivalry crushes competition in 13 categories at Canadian Screen Awards

Trending Posts

Taylor Swift completed ‘Toy Story 5’ song in ‘hectic’ 8 hours

June 18, 2026

John Waters talks Mosswood meltdown, AI lighting, the Pope and more

June 18, 2026

Sakurazaka46 “Lonely Usagi” ranks first on the JAPAN HOT 100

June 18, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.