Skip to main content

TrueCaller patches exploit that left millions of Android users vulnerable

truecaller exploit patched
Image used with permission by copyright holder
It seems as though every other day, there’s some kind of potential threat to an Android user’s security. Another security exploit was recently uncovered, but this time it’s related to a dialer app called TrueCaller.

While it’s not malware-related, installing TrueCaller could have left you susceptible to malicious hackers. Cheetah Mobile’s Security Research Lab found a loophole in the app that would have allowed anyone to gain access to TrueCaller user’s private information. TrueCaller used a smartphone’s IMEI number as the identity label of its users.

Recommended Videos

TrueCaller tells you who’s calling. It does so by identifying numbers, and matching them with ones marked by users. You can mark numbers as spam to make the service better and more reliable. As it crowd-sources its data, TrueCaller users have accounts with their name, phone number, home address, gender, and more — it’s this data that was available to malicious hackers through the app’s loophole.

Please enable Javascript to view this content

If someone managed to get hold of your IMEI number, they could go to TrueCaller’s website and access all of that information in your account, and even modify it — potentially lifting spam blocks so those calls can make it through again.

Thankfully, TrueCaller has patched the issue, and you should download the latest update through the Google Play store to make sure you’re safe. The company says no user information was compromised.

“We recently found an issue where some user defined information can be retrieved or changed without the original user’s consent, if a third person knows the IMEI number of the original person’s device,” according to the blog post. “We’ve quickly taken steps to fix this issue and have released an update which we strongly suggest all users upgrade to.”

What makes it scary is that more than 100 million Android users who have downloaded the app were vulnerable, and likely more as TrueCaller has been making its way to Cyanogen OS, in phones like Wileyfox, and Blu devices. TrueCaller is also available for Windows, and iOS, but it looks like the app on those operating systems were not affected.

Julian Chokkattu
Former Digital Trends Contributor
Julian is the mobile and wearables editor at Digital Trends, covering smartphones, fitness trackers, smartwatches, and more…
I used lots of great smartphone cameras in 2024. The Vivo X200 Pro is my favorite
Man holding Vivo X200 Pro with Zeiss lenses up to his face.

I have fancied cameras on phones for as long as I can remember. My fascination perhaps stems from the fact our phones, despite continued diligence from brands for almost 20 years now, haven't fully replaced actual cameras. Over the years, however, phones have come dangerously close to mimicking actual cameras, and Vivo is among the brands leading this crusade.

Vivo's flagship phone cameras -- primarily its X series -- have always successfully armed me with a sense of confidence in my skills as a photographer. Earlier devices have aced at taking portraits and disregarding any difficulties other phones might face in low lighting. The latest Vivo X200 Pro doubles down on that feeling with better hardware, improved processing capabilities, and a range of new modes to help you seize moments with much more ease.
What makes the Vivo X200 Pro's hardware special

Read more
The OnePlus 13 is coming on January 7 — along with a surprise
The OnePlus logo on the back of the OnePlus Open Apex Edition.

It's official: the OnePlus 13 will launch on January 7, 2025. Preempting the anticipated event by several weeks, OnePlus has officially confirmed the date we’ll see its next major smartphone release outside of China. Additionally, it has revealed some key features and news of a surprise new launch to go along with the phone.

OnePlus will release the OnePlus 13 in three different colors — Black Eclipse, Arctic Dawn, and Midnight Ocean. It’s the latter that is likely to be the model to have, as it is wrapped in a material called micro-fiber vegan leather, which is apparently corrosion and scratch-resistant but still luxurious to the touch. For the Arctic Dawn phone, the glass will have a special coating to give it a silky-smooth finish. It’s likely these are the same colors offered in China, where the phone has already been announced, just with different names.

Read more
An OLED iPad mini is coming in 2026, says Apple insider
Front view of Apple iPad mini with A17 Pro.

Although the iPad mini has continued to receive updates and support, it's fair to say it hasn't gotten the same level of love as the iPad Pro. However, that could be set to change, as the next iPad mini is expected to launch in 2026 with a new OLED display.

That's not all, though. Both the iPad Air 11-inch and 13-inch models could also receive the same upgrade in 2027 (adding weight to a previous leak). Then there's the rumored foldable iPad with an 18.8-inch display, according to a report from analysts at Display Supply Chain Consultants (DSCC).

Read more