World exclusive! - Thousands of HTC phone user details exposed online
Mobile phone comparison site www.mobilesplease.co.uk has found that the phone records of HTC customers have been exposed online.
The personal details found included the names and addresses of the HTC customers in question together with the serial number and IMEI number of the mobile phone they own. If these details fell into the wrong hands then customers could become the victims of fraud such as phishing scams.
The vulnerable web address were numbered sequentially and if each contained consumer information then over 25 million records were exposed. When www.mobilesplease.co.uk tested a sample of around 50 web addresses all contained data and around 30% contained personal details of individual customers.
These details were available by typing a simple website address into any browser on any computer. The website address in question does not belong to HTC but to a third party contractor who carries out certain customer services on behalf of HTC.
A member of staff at www.mobilesplease.co.uk said "A malicious person with limited technical knowledge could have written a simple program in 30-60 minutes to harvest these records. Then they could do what they like with them."
www.mobilesplease.co.uk has since contacted HTC who have now got their contractor to secure the website concerned. HTC have declined to comment on the matter.
For more information please contact ben.pusey [at] justsayplease.co.uk