03 Oct 2007
Smartphone monitoring firm Mobile Spy has fixed a security hole that exposed the data of all its users to public display.
The company makes software that records every call and SMS made from a mobile phone, but a flaw in the company's website meant that the demo page could be used to read all the data of customers who used the service.
Sean Sullivan, a senior researcher at F-Secure, demonstrated the flaw last week to vnunet.com, which then contacted the software's manufacturer asking for comment.
"The data leakage described is not possible with our servers," replied James Johns, chief executive of software creator Retina-X Studios, at 1.47am BST this morning.
"Anyone trying this method would receive a message denying access. Retina-X Studios takes customer privacy very seriously. We have tested all services to verify that this is not an issue."
After checking the website, Sullivan confirmed that the problem had just been fixed. He has detailed the issue and provided screenshots on an F-Secure blog.
"They have fixed the problem," he said. "It is the same response as we got from FlexiSPY when we alerted them to the same problem. They have pretty much corrected it the same way too."
Latest stories from Communications
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Support Analyst x 1/2 Skills: Apple Mac OSX, Windows...
Network Consultant - London - 55-65k My client are...
A leading global provider of critical information to...
Playstations and table football in the kitchen? Standard...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
lulz
Did James Johns see the irony in his statement "Retina-X Studios takes customer privacy very seriously"? I guess not.
Posted by: JC 03 Oct 2007