Snapchat Has A Huge Security Hole That Allows Hackers To Identify Exactly Who You Are

Snapchat Has A Huge Security Hole That Allows Hackers To Identify Exactly Who You Are
Technology
Like Us On Facebook
Like Us On Facebook

A group of young Australian hackers called Gibson Security posted information on Christmas Eve exploiting loopholes in Snapchat‘s security that “allows mass matching of phone numbers with names and mass creation of bogus accounts,” reports ZDNet.

According to ZDNet, Gibson published the codes because they had warned Snapchat of the vulnerability last August, but were ignored by the $2 billion company.

The loopholes are accessed by reverse-engineering Snapchat’s API, or re-writing a script of code.

But the security glitches are just the start of Gibson’s Snapchat revelations.

First off, Gibson claims Snapchat could have closed the loopholes by writing just 10 more lines of code. They also said that Snapchat, along with its investors, lied to the press not too long ago when they said that 70% of its users are female because there is no way such statistics could be obtained.

Gibson’s security exploits state that a 1:1 link can be established between a person’s phone number and Snapchat account.

The hackers told ZDNet that the first loophole, called the “find friends exploit,” generates phone numbers and then obtains the Snapchat usernames of any phone number that matches the record of a Snapchat user.

From ZDNet:

“People could operate a service similar to ssndob.cc, where you could pay a few dollars and obtain the phone number and social media profiles of a person, just by their username.

“[Snapchat could have fixed this] by adding rate limiting; Snapchat can limit the speed someone can do this, but until they rewrite the feature, they’re vulnerable. They’ve had four months, if they can’t rewrite ten lines of code in that time they should fire their development team. This exploit wouldn’t have appeared if they followed best practices and focused on security (which they should be, considering the use cases of the app).”

The most significant finding here seems to be that it is incredibly easy to register a false Snapchat account and access the phone numbers of virtually any user, even if the account is private.

It is therefore impossible to determine what percentage of Snapchat accounts are actually valid.

Via: Valley Wag, Top Photo Courtesy: Gaterr

Share Tweet
React
Like Us On Facebook
Like Us On Facebook

Sean Levinson

Sean Levinson loves writing almost as much as he loves ranting about politics. Elite Daily lets him do both, and he couldn't be happier now that he's finally putting his years at SUNY New Paltz to good use. When he's not writing, Sean enjoys nature excursions, playing the guitar and the Ultimate Fighting Championship. Look for him on "Real Time with Bill Maher," where he regularly appears in his most precious fantasies.

More In Technology

Technology Emily Arata

Coolest Dad In The World Makes His Son A Hovercraft From Scratch (Video)

Add “homemade hovercraft” to your Christmas list. This dad made his son a hovercraft on a string using polystyrene insulation board and a little love. In the video, he pulls the hovercraft around in circles while his son giggles happily. The dedicated father posted the previous prototype of the hovercraft online earlier in the month, which seems […]

Also On Elite

TV

5 Reasons Why Naked Dating Shows Are The Worst Possible Idea Ever

Just when you thought “train wreck” television programming had reached the deepest abyss, Hollywood has found a way to sink even further by throwing naked boobs, penises and ass cracks into the mix. Hollywood trade magazine, The Wrap, reported that TV executives this year have been bombarded with pitches for shows in which contestants go out […]

Humor

Adorable Little Kids Get Into Their First Medieval Sword Fight (Video)

There may be two new entrants to the Game of Thrones. As these young knights duke it out in their first fight, it doesn’t look like anyone is taking it easy. One boy loses his sword very early in the fight, falling to the ground. He resourcefully resorts to pushing his opponent around with his […]

Women

Indian Fashion Photographer Reenacts Sexual Assault In Tasteless Campaign (Photos)

Photographer Raj Shetye’s new photo series, The Wrong Turn, has been receiving backlash for glamorizing sexual assault. In the photos, a well-dressed female model appears to be fighting off male models groping her on a bus. One model is holding her down, while the other appears to be kissing her leg and working his way up her […]

Humor

Guy Freaks Out At His Sister When She Messes Up His Ice Bucket Challenge (Video)

The Ice Bucket Challenge is that thing on Facebook you’re probably tired of hearing about, but it’s raised almost $6 million for ALS research over the past two weeks, meaning anyone who criticizes it for being “attention seeking” entirely missed the point. The challenge has been attempted by tens of thousands of people at a […]