Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

OpenAI chief Sam Altman plans visit to India as AI leaders converge in New Delhi: sources

How PopWheels helped a food cart cut generators for e-bike batteries

Tech CEOs brag and argue about artificial intelligence at Davos

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Tech CEOs brag and argue about artificial intelligence at Davos

    24 January 2026

    Legal AI giant Harvey acquires Hexus as competition heats up in legal tech

    24 January 2026

    Meta cuts off teen access to AI characters before the new version

    23 January 2026

    Former Sequoia partner’s new startup uses AI to negotiate your calendar for you

    23 January 2026

    Are AI agents ready for the workplace? A new benchmark raises doubts.

    22 January 2026
  • Apps

    Ex-Googlers seek to captivate kids with an AI-powered learning app

    24 January 2026

    TikTok users are freaking out over the app’s “immigration status” collection — here’s what it means

    24 January 2026

    The latest Google Photos feature lets you make a meme

    23 January 2026

    Google now offers free SAT practice tests, powered by Gemini

    23 January 2026

    Substack launches a TV app

    22 January 2026
  • Crypto

    Hackers stole over $2.7 billion in crypto in 2025, data shows

    23 December 2025

    New report examines how David Sachs may benefit from Trump administration role

    1 December 2025

    Why Benchmark Made a Rare Crypto Bet on Trading App Fomo, with $17M Series A

    6 November 2025

    Solana co-founder Anatoly Yakovenko is a big fan of agentic coding

    30 October 2025

    MoviePass opens Mogul fantasy league game to the public

    29 October 2025
  • Fintech

    50% off +1 ends | TechCrunch

    23 January 2026

    Capital One acquires Brex for a steep discount to its valuation, but early believers are laughing all the way to the bank

    23 January 2026

    Tiger Global and Microsoft will fully exit Walmart-backed PhonePe through its IPO

    22 January 2026

    Fintech firm Betterment confirms data breach after hackers sent fake crypto scam alert to users

    12 January 2026

    Flutterwave buys Nigeria’s Mono in rare African fintech exit

    5 January 2026
  • Hardware

    Apple iPhone just had its best year in India as the smartphone market remains generally flat

    24 January 2026

    From invisibility cloaks to AI chips: Neurophos raises $110 million to build tiny optical processors for inference

    23 January 2026

    Ring adds a new content verification feature to videos

    22 January 2026

    OpenAI aims to ship its first device in 2026, and it could be a headset

    21 January 2026

    Why Serve Robotics is acquiring a hospital assistant robot company

    21 January 2026
  • Media & Entertainment

    Amagi debuts in India as cloud TV software company tests investor appetite

    24 January 2026

    What you need to know about Netflix’s acquisition of Warner Bros.

    24 January 2026

    TikTok-style mini-dramas are set to make billions this year, even though they’re kind of crap

    23 January 2026

    TechCrunch Disrupt 2026 tickets now on sale: Lowest prices all year

    23 January 2026

    Spotify brings AI-powered playlists to the US and Canada

    22 January 2026
  • Security

    Investigators say Russian government hackers are behind attempted power outage in Poland

    24 January 2026

    Microsoft gave FBI set of BitLocker encryption keys to unlock suspects’ laptops: reports

    23 January 2026

    Ireland proposes new law to allow police to use spyware

    23 January 2026

    Under Armor says it is “aware” of data breach claims after 72 million customer records were posted online

    22 January 2026

    UStrive Security Lapse exposed personal data of its users, including children

    21 January 2026
  • Startups

    OpenAI chief Sam Altman plans visit to India as AI leaders converge in New Delhi: sources

    25 January 2026

    This startup will send the ashes of 1,000 people into space — affordably — in 2027

    24 January 2026

    The Rippling/Deel corporate espionage scandal may have taken another crazy turn

    24 January 2026

    Palmer Luckey Says Coolest Thing About Anduril’s Long Beach Expansion Is The Fighter Jets

    23 January 2026

    Humans& believes coordination is the next frontier for artificial intelligence, and they’re building a model to prove it

    23 January 2026
  • Transportation

    How PopWheels helped a food cart cut generators for e-bike batteries

    25 January 2026

    Tesla is shutting down Autopilot in an effort to boost adoption of its Full Self-Driving software

    24 January 2026

    Waymo was investigated by the National Transportation Safety Board for illegal school bus conduct

    24 January 2026

    Waymo continues the robotaxi ramp with its Miami service now open to the public

    23 January 2026

    GM to End Chevy Bolt EV Production Next Year, Move Chinese Buick to US Plant

    23 January 2026
  • Venture

    PraxisPro Raises $6M Seed Fund From AlleyCorp To Mentor Medical Sales Reps

    23 January 2026

    Ex-CEO of celeb fav gym Dogpound launches $5 million fund to back wellness companies

    22 January 2026

    Former OpenAI Sales Lead Joins VC Firm Acrew: OpenAI Taught Her Where Startups Can Build A ‘Moat’

    22 January 2026

    Sources: SGLang project emerges as RadixArk at $400M valuation as inference market explodes

    21 January 2026

    Retail startup Another raises $2.5 million to help sell excess inventory

    20 January 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Security flaws in the Freedom Chat app exposed users’ phone numbers and PINs
Security

Security flaws in the Freedom Chat app exposed users’ phone numbers and PINs

techtost.comBy techtost.com11 December 202503 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Security Flaws In The Freedom Chat App Exposed Users' Phone
Share
Facebook Twitter LinkedIn Pinterest Email

Messaging app Freedom Chat has fixed a pair of security flaws: one that allowed a security researcher to guess the phone numbers of registered users and another that exposed user-set PINs to others on the app.

Freedom Chat, launched in June, bills itself as a secure messaging app and claims on its website that users’ phone numbers remain private.

However, security researcher Eric Daigle told TechCrunch that users’ phone numbers and PINs, used to lock the app, could be easily obtained by exploiting vulnerabilities.

Daigle found the vulnerabilities last week and shared their details with TechCrunch, as Freedom Chat does not provide a public way to report security flaws, such as a vulnerability disclosure program. TechCrunch then notified Freedom Chat founder Tanner Haas of the security flaws via email.

Haas confirmed to TechCrunch that the app has now reset users’ PINs and released a new version. Haas added that the company is removing cases where users’ phone numbers were occasionally visible and has rate-capped its servers to prevent mass guessing attempts.

Daigle, who published his findings in a blog posttold TechCrunch that it was able to list the phone numbers of nearly 2,000 users who had signed up to use Freedom Chat since it launched. Daigle said Freedom Chat’s servers allowed anyone to flood it with millions of phone number guesses to determine whether a user’s phone number was stored on the servers.

According to Daigle, this technique is identical to one described by the University of Vienna in an investigation last month, where academics scratched data on approximately 3.5 billion user accounts registered on WhatsApp by matching billions of phone numbers with WhatsApp servers.

Daigle also found that Freedom Chat leaked users’ PINs. Using an open-source network traffic inspection tool to analyze data coming in and out of the app, Daigle saw that the app would respond with the PINs of every other user on the same public channel — even if the PINs weren’t visible to users within the app itself.

According to Daigle, anyone who was in the default Freedom Chat channel, which users are automatically subscribed to when they first sign up, had their PIN broadcast to everyone else in the channel. Daigle told TechCrunch that knowing a person’s PIN could allow someone to open the app from a user’s stolen device.

In an app store update posted Sunday, Freedom Chat noted: “A critical reset: A recent support update inadvertently exposed user PINs in a system response. Messages were never compromised, and because Freedom Chat doesn’t support connected devices, your chats were never accessible. However, we reset all user PINs to ensure your account remains secure.”

Freedom Chat is Haas’ second messaging app, after Converso, to be pulled from app stores after the revelation security flaws that exposed users’ private messages and content.

app Chat cyber security encryption Exclusive exposed flaws freedom messages Numbers phone Pins security Users
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleOboe Raises $16M From a16z For AI-Powered Course Creation Platform
Next Article Disney signs deal with OpenAI to allow Sora to create AI videos with its characters
bhanuprakash.cg
techtost.com
  • Website

Related Posts

OpenAI chief Sam Altman plans visit to India as AI leaders converge in New Delhi: sources

25 January 2026

How PopWheels helped a food cart cut generators for e-bike batteries

25 January 2026

Ex-Googlers seek to captivate kids with an AI-powered learning app

24 January 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

OpenAI chief Sam Altman plans visit to India as AI leaders converge in New Delhi: sources

25 January 2026

How PopWheels helped a food cart cut generators for e-bike batteries

25 January 2026

Tech CEOs brag and argue about artificial intelligence at Davos

24 January 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

50% off +1 ends | TechCrunch

23 January 2026

Capital One acquires Brex for a steep discount to its valuation, but early believers are laughing all the way to the bank

23 January 2026

Tiger Global and Microsoft will fully exit Walmart-backed PhonePe through its IPO

22 January 2026
Startups

OpenAI chief Sam Altman plans visit to India as AI leaders converge in New Delhi: sources

This startup will send the ashes of 1,000 people into space — affordably — in 2027

The Rippling/Deel corporate espionage scandal may have taken another crazy turn

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.