Image via BigTunaOnline / Shutterstock.com
WhatApp confirms that it has fixed an issue that previously leaked users’ phone numbers in Google search results.
The vulnerability was discovered by security researcher Athul Jayaram, who
found that users who had used the Facebook-owned messaging app’s ‘
Click to Chat’ feature had their phone numbers indexed in search.
The feature enables users to create links in order to start conversations with people who are not in their contacts by adding the recipients’ phone numbers at the back of URLs. Jayaram related that the links do not have a robot.txt file in the server root, which means they would not prevent Google Search or other search engines from indexing the links.
Jayaram also found that there were more than 300,000 phone numbers appearing in Google search results. The numbers were exposed when internet users search “site:wa.me.”
Though WhatsApp has promised that the issue has been fixed, the leak remains a security breach as the problem persisted for several months.
[via
Engadget, cover image via
BigTunaOnline / Shutterstock.com]