Mashable 09月27日
Neon App Exposes User Data
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

The Neon Mobile app, which paid users to record phone calls for AI training, went viral but quickly faced a major data breach. TechCrunch uncovered a security flaw that exposed users' phone numbers, call recordings, and transcripts. The app was temporarily taken offline for security enhancements, but the email notification to users failed to mention the specific data exposed. The app remains available on the App Store but non-functional. The breach allowed access to audio files, transcripts, and metadata including phone numbers and call details, raising concerns about user privacy and data security.

📱 The Neon Mobile app paid users to record phone calls, which were then provided to AI companies for training purposes. The app gained rapid popularity but exposed significant user data vulnerabilities.

🔒 A security flaw was discovered by TechCrunch, revealing users' phone numbers, call recordings, and transcripts. The app was temporarily taken offline to implement additional security measures, but the notification to users did not specify the nature of the data breach.

📞 The breach allowed unauthorized access to audio files, call transcripts, and metadata, including the user's phone number, the number they called, call duration, and earnings from the call. This exposed sensitive personal information.

📱 Despite the app being taken offline, it remains available on the App Store but is non-functional, raising questions about the effectiveness of the temporary measure and the potential for further scrutiny when the app is reintroduced.

Less than 24 hours after receiving attention and going viral, the Neon Mobile app has already exposed users' phone numbers, call recordings, and transcripts.

Just yesterday, Mashable covered a viral new app that was rising up the App Store charts called Neon. The app paid users to record their phone calls, which Neon then provided to AI companies for training. Mashable warned users at the time to be cautious if using the app as there was too much unknown about the company, its founder, and their claims about keeping data safe and anonymous.

Now, 24 hours later, Neon has gone offline after TechCrunch uncovered a security flaw that exposed users' phone numbers, call recordings, and call transcripts.

"Your data privacy is our number one priority, and we want to make sure it is fully secure even during this period of rapid growth," reads an email sent to users by Neon founder Alex Kiam. "Because of this, we are temporarily taking the app down to add extra layers of security."

As TechCrunch notes, while Kiam took down the app's servers and let users know about the downtime, the email failed to warn users about the specific security issue that exposed their phone numbers, call recordings, and transcripts.

Also, it should be noted that it appears only the app's servers have been taken down, rendering the app itself, which remains in the App Store, available but useless.

According to TechCrunch, they discovered the security flaw using a network analysis tool that showed data both being pushed into and sent out of the app. While users logged into the app itself could not access private user data, the data was exposed to anyone utilizing such a tool. This data included a URL to the recorded call's audio files, which was accessible to anyone with the link, and a text transcript of the call. 

However, it wasn't just call files and transcripts that were accessible. TechCrunch discovered that Neon's servers also exposed data concerning the most recent calls made by other users of the app. TechCrunch was able to access audio links and transcripts to those recorded calls as well. Furthermore, the metadata connected to those calls were also exposed. This metadata included the user's phone number, the phone number they called, how long the call was and what time it was made, as well as how much was earned from the call.

It's not everyday that a chart-topping app in the App Store is outright pulled from distribution. TechCrunch reports that app platform Appfigures tracked that Neon was downloaded 75,000 times just yesterday. If and when Neon makes a comeback, it will certainly receive increased scrutiny to be sure it addressed the issues.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Neon Mobile App Data Breach Privacy Concerns AI Training App Store
相关文章