1 1 1 1 1 Rating 0.00 (0 Votes)

Phone number exposed via HTTP headers

If you're browsing the web on your phone or tablet on O2 UK, then the network could be exposing your phone number to every website you visit. O2 customer Lewis Peckover recently discovered that when you're browsing over 3G on O2, your handset's phone number is often included in the HTTP headers sent to each website you visit, in plain text.

HTTP headers are information exchanged between your browser and the web server before a page is loaded. In theory, the way O2 includes your phone number -- alongside more mundane information like your IP address, browser and OS -- means that any website you visit could easily find out your number. It's worth pointing out that the header used by O2 to send phone numbers -- "x-up-calling-line-id" -- isn't one that's routinely logged by web servers. However, just a couple of lines of code would allow a malicious site to find your phone number just by having you visit a website on 3G.

Lewis Peckover has set up a site to allow O2 customers to see whether they're affected. We've tried this with an O2 SIM in our Galaxy Nexus, and sure enough, there our phone number was in the list of "headers received". If you're on O2, make sure you've got Wifi disabled on your device, then click here and see if you spot your phone number among the HTTP headers.

This isn't an Android-specific problem, however due to the fact that it's a network-level issue, it'll affect Android phones just the same as any other device that's browsing over O2's data network. For this reason, just about anything that connects via HTTP over O2's network could potentially access this information. For its part, O2 says it's "investigating" the issue, and while this is a big deal for O2 customers, the fact that this is a network-level problem should mean that a fix will be relatively quick and easy to deploy.

More: Lew.io; via: ThinkBroadband

image O2 UK network security blunder exposes customers' phone numbers to websites

Read more http://feedproxy.google.com/~r/androidcentral/~3/W0LTWSsLFNU/story01.htm

Add comment

Security code
Refresh

Forum - Categories

General
  1. 0 posts
  2. 0 subcategories
Android
  1. 9 posts
  2. 6 subcategories
Android Apps
  1. 2 posts
  2. 0 subcategories
Android Games
  1. 0 posts
  2. 0 subcategories
Android Themes
  1. 2 posts
  2. 0 subcategories
Android Live Wallpapers
  1. 5 posts
  2. 0 subcategories
Android Firmware
  1. 0 posts
  2. 0 subcategories
Requests
  1. 0 posts
  2. 0 subcategories
Media
  1. 223 posts
  2. 2 subcategories
Wallpapers
  1. 0 posts
  2. 0 subcategories

Recent Discussions

Sound Of Legend - Infinity - Ringtone
513 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone
Katy Perry - Bon Appétit - Ringtone
613 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone
DJ Khaled, justin bieber - I'm the one - Ringtone
719 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone
Shawn Mendes - Theres Nothing Holdin Me Back - Rin
582 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone
Imagine Dragons - Thunder - Ringtone
1112 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone
Hannah Grace - Praise You - Ringtone
526 Hits
0 Votes
0 Replies
Posted on Tuesday, 16 May 2017
  • #Ringtone