Skip to content
Search AI Powered

Latest Stories

Service Allowed People To Track Pretty Much Anyone Else's Location Through Their Cell Phone. Whoops.

Service Allowed People To Track Pretty Much Anyone Else's Location Through Their Cell Phone. Whoops.
(Ute Grabowsky/Photothek via Getty Images)

Little did consumers know that the smartphones they carried in their pockets also served as a tracking device, not just for phone companies, but for other users thanks to a buggy location demo service.

KrebsOnSecurity reported that a small company called LocationSmart – an aggregator of real-time data of the locations of cell phone users – was inadvertently allowing anyone with free access to the feature without passwords.


The service was enabled on AT&T, Sprint, T-Mobile, and Verizon devices and had the capability of tracking down customers within a few hundred-yard accuracy.



KrebsOnSecurity provided details on how the system works:

LocationSmart's demo is a free service that allows anyone to see the approximate location of their own mobile phone, just by entering their name, email address and phone number into a form on the site. LocationSmart then texts the phone number supplied by the user and requests permission to ping that device's nearest cellular network tower.

After LocationSmart receives consent from the user, they are sent latitudinal and longitudinal coordinates, via text, on Google Street View maps as confirmation.

Sometimes it feels like, somebody's watching YOU.

Giphy



Robert Xiao, a security researcher at Carnegie Mellon University found a way to avoid the authentication process after realizing that LocationSmart "failed to perform basic checks to prevent anonymous and unauthorized queries."

The system's flaw left anyone who is Internet savvy to abuse its function.

I stumbled upon this almost by accident, and it wasn't terribly hard to do. This is something anyone could discover with minimal effort. And the gist of it is I can track most peoples' cell phone without their consent.
This is really creepy stuff.

Don't tell him twice.

Giphy




LocationSmart's demo was taken offline on Thursday after the technical snafu.



The company's founder Mario Proietti had no intention for the service to be free, but was meant "for legitimate and authorized purposes."

It's based on legitimate and authorized use of location data that only takes place on consent.We take privacy seriously, and we'll review all facts and look into them.




The gaffe occurred after the New York Times reported on a little-known service called Securus that allowed law enforcers to track down anyone with a U.S.-based smartphone within seconds.

The service suffered a security breach leaking subscribers' usernames and passwords

Stephanie Lacambra from the Electronic Frontier Foundation said that wireless customers are obligated to location tracking enabling by their cellphone carriers by law. The function is relied upon for improving customer service as carriers use the information in the event of an emergency to comply with 911 regulations.





However, Krebs mentioned the inherent danger in third parties compromising customers' security.

But unless and until Congress and federal regulators make it more clear how and whether customer location information can be shared with third-parties, mobile device customers may continue to have their location information potentially exposed by a host of third-party companies, Lacambra said.



H/T - KrebsOnSecurity, Twitter

More from Trending

Kat Dennings attends iHeartRadio Jingle Ball 2025 presented by Capital One.
Jesse Grant/Getty Images for iHeartRadio

MCU Fans Concerned After Kat Dennings Reveals That Marvel Has 'Scanned' Her Likeness

When you hear that you’re getting a “body scan,” you probably assume it’s tied to a medical procedure—not that your entire physical likeness is being quietly archived for potential future use in the Marvel Cinematic Universe.

But that’s allegedly what happened to MCU star Kat Dennings, who casually dropped the revelation while addressing her status in Avengers: Doomsday.

Keep ReadingShow less
SZA; Cher
Leon Bennett/The Recording Academy/Getty Images; Johnny Nunez/The Recording Academy/Getty Images

SZA Defends Cher After Her Awkward 'Luther Vandross' Mix-Up During The Grammys

From Chappell Roan's daring red carpet look, to Sabrina Carpenter getting teary-eyed at missing out on six Grammys, to memorable stage performances, the 2026 Grammys left us with a lot to talk about!

But one of the funniest moments had to be Cher's presentation of the Record of the Year.

Keep ReadingShow less
Nancy Mace
Kevin Dietsch/Getty Images

Nancy Mace Dragged After Damning Profile Reveals The Lengths She Went To Be 'Hottest Woman In Congress'

South Carolina Republican Representative Nancy Mace is getting dragged after a damning New York Magazine profile revealed she forced staffers to create burner Reddit accounts to boost her standing in a "hottest women in Congress" forum.

According to sources, Mace was so "obsessed" with monitoring her online reputation that she "instructed" one staffer to “go on Reddit forums about the ‘hottest women in Congress’ to boost her standing in the rankings and comment where needed.”

Keep ReadingShow less
Chappell Roan attends the 68th GRAMMY Awards in sheer and revealing gown.
Gilbert Flores/Billboard via Getty Images

Chappell Roan's NSFW Dress On The Grammys Red Carpet Has Fans Doing A Double-Take

Awards season is the time to dabble in the most daring of looks—something Chappell Roan and her team took very seriously.

At this weekend’s 68th Grammy Awards ceremony, Roan earned nominations for Record of the Year and Best Pop Solo Performance for "The Subway," her hit single released in late July. One of her fellow nominees in both categories was Sabrina Carpenter, who lost the Best New Artist race to Roan in 2025.

Keep ReadingShow less
Ben Bankas; Renée Good's photo on protest sign
@benbankas2/Instagram ; Scott Olson/Getty Images

'Anti-Woke' Comedian's Shows Canceled After Backlash To His Disgusting Jokes Mocking Renée Good

The acronym FAFO, and the phrase associated with it, has been getting a workout lately.

MAGA voters are whining about the policies of the administration of Republican President Donald Trump adversely affecting them. MAGA politicians are whining about the backlash they're experiencing for enabling Trump.

Keep ReadingShow less