FITBIT : Fitbit Gallery Vulnerability

FITBIT : Fitbit Gallery Vulnerability

Aes7

A Security Researcher Kevin Breen discovered the vulnerability through which one can upload malicious apps to the Fitbit Gallery and then can be uploaded by the fitbit users.


He uploaded an app that could bypass fitbit app store , that could steal personal data, the app bypassed the store and is there still present to download as an app through private link. The app was able to steal information such as GPS location, Heart Rate Monitor, age, height, weight,body presence. That's huge amount of data getting on to someone. Fitbit in response to this said they are going to soon fix this vulnerability.




Report Page