Categories
Close
Menu
Menu
Close
Search
Search

Featured Articles

News

Security flaw on Immobilise mobile phone database is now fixed

Mark

Share:

Print

Rate article:

No rating
Rate this article:
No rating

The Immobilise.com online database, which helps people to store their mobile phone’s IMEI number and record other valuable items, has had a significant security flaw fixed this week.

Users are able to see an online ‘certificate’ that includes their name, address and details of the property they’d registered.

However, security consultant Paul Moore discovered that changing the numbers in a web address for this certificate could reveal information about other people’s valuables.

He described it as “a nice shopping list for a would-be burglar”.

Mr Moore had contacted Recipero, the company behind the Immobilise and CheckMEND sites, in 2013 to warn them about the vulnerability. He made the news public this week after realising that the security flaw still hadn’t been fixed.

Since publicising the issue, the vulnerability has been removed.

In a statement on the Immobilise.com website, Recipero said “We confirm that a vulnerability in a website feature was highlighted to us on 3rd January. If exploited this could have allowed a third party to view details associated with an item registration. The vulnerability was in a feature intended for use by insurers when confirming the validity of an ownership certificate given to them by a claimant. The feature was removed within 30 minutes of us becoming aware. A thorough review of our records reveals no evidence of any data leakage and therefore no requirement to contact any individual Immobilise users.”

[BBC News; Paul Moore website]

Comments

Collapse Expand Comments (0)
You don't have permission to post comments.

Opinion Articles

ExclusiveMobile optimised websites v native applications for mobile devices

James Rosewell writes:

51Degrees.mobi's figures show 10 per cent of web traffic in the UK originates from mobile devices. In India this figure rises to over 90 per cent. With global mobile internet usage expected to grow from 14 million at the end of 2010 to 788 million by the end of 2015, every business needs a strategy for mobile connectivity.

ExclusiveLast week at The Fonecast: 5th December 2011

Mark Bridge writes:

Season of goodwill?  Not in the mobile phone industry.

Orange UK is putting its prices up next month. It says the 4.34% rise is less than inflation, so you might think customers would be pleased. You’d be wrong. Also unhappy are many people who’ve discovered Carrier IQ software embedded on their phones. Fortunately for the UK mobile industry, most of those people seem to be in the United States. And there was unhappiness in Egypt as Twitter’s acquisition of privacy and security company Whisper Systems saw Whisper’s mobile encryption applications taken (temporarily) offline.

ExclusiveMy phone isn't spying on me... and yours probably isn't, either

Mark Bridge writes:

“Mobile operators track who you call. In other news, banks know how much money is in your account and utility companies know where you live.”

At the end of a week in which so-called ‘spyware’ on mobile phones had been creating headlines, this tweet from Benedict Evans offered an alternative perspective.

ExclusiveFarmers want QR cows, infrared sheep and mobile-controlled sheepdogs

Mark Bridge writes:

A brainstorming day run by T-Mobile UK with a dozen farmers, M&C Saatchi Mobile, the National Farmers Union and EBLEX (the organisation for the English beef and sheep industry) has resulted in some fascinating mobile-focussed solutions. The aim was to raise awareness of the benefits that smartphone technology can bring farmers and other small business owners.

RSS
First5152535456585960Last

Recent Podcasts

ExclusivePodcast from Mobile World Congress 2015

Mark Bridge learns about the mobile technology trends at Mobile World Congress 2015 by chatting to James Rosewell of 51Degrees, Dr Kevin Curran from the IEEE and Chris Millington of Doro.

They talk about wearable devices, wireless charging, mobile operating systems and much more... including some of their favourite products from the exhibition.

ExclusiveLooking back at February: from security scares to multiple MVNOs

We're taking a look back at the biggest mobile industry news stories from February 2015, including allegations that the UK's security service tried to breach SIM card security by hacking into one of the world's biggest SIM producers.

We also talk about the planned BT and EE merger, the creation of two new UK virtual networks, some acquisitions in the mobile payment arena and a new Ubuntu smartphone.

ExclusiveA month of mobile: O2 counts on 3, Microsoft counts to 10 and Apple counts its profits

We're back with a month of mobile industry news, including takeover talks and takeover rumours. O2 and Three are said to be discussing a merger... but is there any truth in the suggestions that BlackBerry could be up for grabs?

We also discuss Apple's record-breaking quarterly figures, the highlights of CES and the launch of Microsoft Windows 10, as well as saying farewell to the current version of Google Glass.

RSS
12345678910Last

Follow thefonecast.com

Archive Calendar

«June 2026»
MonTueWedThuFriSatSun
25262728293031
1234567
891011121314
15161718192021
22232425262728
293012345

Archive