Skip to main content

A Security Researcher Has Found That Anonymous Feedback App Sarahah Keeps Uploading Your Email And Phone Contacts To Its Servers


Earlier this month, viral anonymous app Sarahah took the internet by storm when its popularity rose exponentially. The teenagers, as well as adults, were engrossed in this Sarahah-mania to receive “anonymous” feedback from their friends and co-workers.

While Sarahah app was already criticized for its possible aid in cyber bullying incidents, a new revelation has been made by a senior security analyst. As reported by The Intercept, Zachary Julian found out that Sarahah is collecting the private information of users.
As soon as you launch the app for the first time, Sarahah immediately uploads all the phone numbers and email addresses in your phone book. While it asks for user-permission for the access, it doesn’t disclose the upload act.
Moreover, Sarahah doesn’t even make any apparent and functional use of the uploaded data. Julian discovered the same when he installed Sarahah app on his Android smartphone, which was a Samsung Galaxy S5 running Android 5.1.1. Using BURP Suite, he was able to intercept the incoming and outgoing internet traffic.
Sarahah performs this sneaky action on iOS devices as well. It’s worth noting that if a person doesn’t use the app for some time, it shares the contacts again.
On iOS, the app says, “the app needs to access your contacts to show you who has an account in Sarahah.” It doesn’t do so. On Android, the app, in some cases, makes a request to access contacts without giving any reason.
After this revelation, app’s creator, Zain al-Abidin Tawfiq, said that the functionality will be removed in a future update. He further said that the feature was intended for a “find your friends” feature, something that doesn’t exist at the moment. The validity of Tawfiq’s statements is impossible to verify.
While such acts of uploading contacts by applications aren’t uncommon, it’s concerning if that app isn’t making any use of the information. Apart from worrying about the security of data on your device, you also need to worry about the integrity of the company who has your data.
Did you find this story on viral Sarahah app useful? Don’t forget to share your views and concerns with us.

Comments

Follow Us

WHAT'S HOT

Fappening 2.0 Continues: Private Photos Leak Affects Miley Cyrus, Rosario Dawson, Suki Waterhouse

ust when we thought that Fappening 2.0 leaks were over, the 4th wave just arrived. This alleged leak of private pictures has affected Miley Cyrus, Rosario Dawson, and Suki Waterhouse. Reported by myth-busting publication Gossip Cop, the pictures were first posted on notorious website Celeb Jihad.

84-year-old woman dies after being stung more than 500 times by swarm of bees (photos)

An 84-year-old woman from Brazil died after she was stung by a whole beehive She was out collecting firewood when she disturbed the bees who stung her until rescuers arrived The old woman died from the beestings on her way to the hospital 84-year-old Divina Ambrósio de Jesus from Brazil recently died after she got stung by a swarm of bees. The beestings covered the old woman's body including her face The old lady was out collecting firewood when she accidentally disturbed a beehive. The bees repeatedly sting the old lady for 30 minutes.

MC Galaxy – DIO (Refix) | prod. KrizBeatz

“With the recently released  “MMM” Album  still causing a furore online and on the streets, MCG Empire Boss –  MC GALAXY  comes through with the  refix  to  DIO  (which means come), the 3rd track of the critically acclaimed sophomore body of work.

Man beats up boyfriend of woman who spat on him on a train (Video)

A woman spat on a man on the train, but instead of the man hitting the girl he beat up her boyfriend. What do you think of his action? Watch video below.. ..