Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

As VC-backed e-bike startups went bankrupt, Lectric by bootstraps grew

AirTrunk commits $30 billion to build 5 GW AI data centers in India

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    AirTrunk commits $30 billion to build 5 GW AI data centers in India

    6 June 2026

    Google will pay SpaceX $920 million per month for computing

    6 June 2026

    The Token Bill Is Coming: Industry Insiders Struggle to Manage Artificial Intelligence’s Costs

    5 June 2026

    Ahead of IPO, Anthropic’s Daniela Amodei Dispels Doubts About AI Returns

    5 June 2026

    Is Silicon Valley ready to put robots in people’s homes? Hello Robot it is.

    4 June 2026
  • Apps

    Beyond Instagram: Introducing the next generation of social apps

    6 June 2026

    The cash app launches a stick for tap-and-pay

    6 June 2026

    Meta introduces a new AI creator assistant to Facebook

    5 June 2026

    Apple approves Poke as first AI agent on Messages for Business platform

    5 June 2026

    Apple touts $1.4 trillion in App Store fees and sales, 90% commission-free

    4 June 2026
  • Crypto

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026

    Coinbase to lay off 14% of staff as part of broader restructuring

    5 May 2026

    British cryptographer Adam Back denies NYT report that he is Bitcoin creator Satoshi Nakamoto

    9 April 2026
  • Fintech

    Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

    5 June 2026

    Last 24 hours to save up to $410 on your Disrupt 2026 ticket

    29 May 2026

    2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

    28 May 2026

    Robinhood now allows your AI agents to trade stocks

    28 May 2026

    Disrupt 2026 Early Bird ticket savings expire in 3 days

    27 May 2026
  • Hardware

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    7 June 2026

    What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

    5 June 2026

    Oura Ring 5 review: Thinner, lighter, better

    4 June 2026

    Meta mercifully released the VR fitness game Supernatural instead of just killing it

    4 June 2026

    Apple’s MacBook Neo is winning over a new generation of buyers

    3 June 2026
  • Media & Entertainment

    Plex adds new social features ahead of major price hike for its lifetime pass

    6 June 2026

    Startup Battlefield 200 applications officially close in 3 days

    5 June 2026

    Founders Fund Launches Series of Games Starring Sam Altman, Palmer Luckey and Other Tech Elites

    5 June 2026

    Meet Wander, a StumbleUpon-inspired tool for discovering the ‘small web’

    4 June 2026

    Publishers will be able to opt out of AI Search, thanks to the new setting

    4 June 2026
  • Security

    Google and FBI warn of ransomware group sending fake IT workers to hack victims in person

    6 June 2026

    Former cyber executive-turned-whistleblower accuses IBM of covering up multiple data breaches

    5 June 2026

    Filtr is a new privacy tool that blocks ads in almost every iPhone and Mac app

    5 June 2026

    Chinese spies use LinkedIn to trick Westerners into sharing sensitive information

    4 June 2026

    Instagram alerts users targeted by hackers during AI chatbot attacks

    4 June 2026
  • Startups

    Sam Altman-backed fusion startup Helion raises $465M to build power plant for Microsoft

    6 June 2026

    Supabase doubles valuation to $10 billion in 8 months

    5 June 2026

    Startup Battlefield is back in Australia — here’s what happened last time we came to Sydney

    5 June 2026

    Focused Energy raises massive $240M Series A for laser-powered fusion technology

    4 June 2026

    Quick Commerce FirstClub Doubles Valuation to $255M in Nine Months

    4 June 2026
  • Transportation

    As VC-backed e-bike startups went bankrupt, Lectric by bootstraps grew

    6 June 2026

    GM’s electric future depends on a new battery — and this facility

    6 June 2026

    Carvana ties up with Bezos-backed Slate Auto as it plans new car sales

    4 June 2026

    Uber will roll out 500 data collection vehicles this year

    4 June 2026

    Squishmallows, dentures and an ‘I Heart Hot Dads’ bag: Uber found thousands of items left in robotaxis

    3 June 2026
  • Venture

    Founders share VC horror stories and some name names

    6 June 2026

    Defense technology, artificial intelligence and fundraising take center stage at StrictlyVC Los Angeles

    5 June 2026

    Benchmark raises its first growth capital as part of $2 billion capital raising

    4 June 2026

    Former Meta CTO Raises $250 Million Climate Fund

    3 June 2026

    Because VivaTech 2026 is the place to see Europe’s AI strategy taking shape

    3 June 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Security flaws in the Freedom Chat app exposed users’ phone numbers and PINs
Security

Security flaws in the Freedom Chat app exposed users’ phone numbers and PINs

techtost.comBy techtost.com11 December 202503 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Security Flaws In The Freedom Chat App Exposed Users' Phone
Share
Facebook Twitter LinkedIn Pinterest Email

Messaging app Freedom Chat has fixed a pair of security flaws: one that allowed a security researcher to guess the phone numbers of registered users and another that exposed user-set PINs to others on the app.

Freedom Chat, launched in June, bills itself as a secure messaging app and claims on its website that users’ phone numbers remain private.

However, security researcher Eric Daigle told TechCrunch that users’ phone numbers and PINs, used to lock the app, could be easily obtained by exploiting vulnerabilities.

Daigle found the vulnerabilities last week and shared their details with TechCrunch, as Freedom Chat does not provide a public way to report security flaws, such as a vulnerability disclosure program. TechCrunch then notified Freedom Chat founder Tanner Haas of the security flaws via email.

Haas confirmed to TechCrunch that the app has now reset users’ PINs and released a new version. Haas added that the company is removing cases where users’ phone numbers were occasionally visible and has rate-capped its servers to prevent mass guessing attempts.

Daigle, who published his findings in a blog posttold TechCrunch that it was able to list the phone numbers of nearly 2,000 users who had signed up to use Freedom Chat since it launched. Daigle said Freedom Chat’s servers allowed anyone to flood it with millions of phone number guesses to determine whether a user’s phone number was stored on the servers.

According to Daigle, this technique is identical to one described by the University of Vienna in an investigation last month, where academics scratched data on approximately 3.5 billion user accounts registered on WhatsApp by matching billions of phone numbers with WhatsApp servers.

Daigle also found that Freedom Chat leaked users’ PINs. Using an open-source network traffic inspection tool to analyze data coming in and out of the app, Daigle saw that the app would respond with the PINs of every other user on the same public channel — even if the PINs weren’t visible to users within the app itself.

According to Daigle, anyone who was in the default Freedom Chat channel, which users are automatically subscribed to when they first sign up, had their PIN broadcast to everyone else in the channel. Daigle told TechCrunch that knowing a person’s PIN could allow someone to open the app from a user’s stolen device.

In an app store update posted Sunday, Freedom Chat noted: “A critical reset: A recent support update inadvertently exposed user PINs in a system response. Messages were never compromised, and because Freedom Chat doesn’t support connected devices, your chats were never accessible. However, we reset all user PINs to ensure your account remains secure.”

Freedom Chat is Haas’ second messaging app, after Converso, to be pulled from app stores after the revelation security flaws that exposed users’ private messages and content.

app Chat cyber security encryption Exclusive exposed flaws freedom messages Numbers phone Pins security Users
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleOboe Raises $16M From a16z For AI-Powered Course Creation Platform
Next Article Disney signs deal with OpenAI to allow Sora to create AI videos with its characters
bhanuprakash.cg
techtost.com
  • Website

Related Posts

As VC-backed e-bike startups went bankrupt, Lectric by bootstraps grew

6 June 2026

Google and FBI warn of ransomware group sending fake IT workers to hack victims in person

6 June 2026

GM’s electric future depends on a new battery — and this facility

6 June 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

What to expect from WWDC 2026: The long-awaited Siri refresh and Apple Intelligence updates

7 June 2026

As VC-backed e-bike startups went bankrupt, Lectric by bootstraps grew

6 June 2026

AirTrunk commits $30 billion to build 5 GW AI data centers in India

6 June 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Ramp raises $750M at $44B valuation as investors thirst for fintechs with AI history

5 June 2026

Last 24 hours to save up to $410 on your Disrupt 2026 ticket

29 May 2026

2 days left: Lock in up to $410 in ticket savings for Disrupt 2026

28 May 2026
Startups

Sam Altman-backed fusion startup Helion raises $465M to build power plant for Microsoft

Supabase doubles valuation to $10 billion in 8 months

Startup Battlefield is back in Australia — here’s what happened last time we came to Sydney

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.