frogg / Steal-Phone-Number

☎️💨🤯 I have found an exploit that allows every app to steal a users phone number without asking for any permissions.
https://twitter.com/frederikRiedel/status/970362794934788097
96 stars 6 forks source link

Dosen't work in Brazil #1

Open CavalcanteLeo opened 6 years ago

CavalcanteLeo commented 6 years ago

Dunno if it is because i have a brazilian number +55 or the bug has been fixed

CavalcanteLeo commented 6 years ago

Can't find the classes "ng-binding ng-scope", so, it's not entering in the loop

frogg commented 6 years ago

Right now this is only implemented for my mobile provider "Deutsche Telekom" (in Germany).

Does your provider offer a page to check your mobile data usage (for me that's pass.telekom.de)?

CavalcanteLeo commented 6 years ago

i have no ideal, but i will check it out, maybe they have

fthdgn commented 6 years ago

Some operators also includes phone number on HTTP headers. I found a website which claim to detect this headers. It seems like my operator does not share my phone number. http://www.mulliner.org/pc.cgi

frogg commented 6 years ago

Good call @fthdgn! I also found this article online relating to that: https://www.pcworld.com/article/192570/article.html

It's almost 8 years old so I hope providers have already fixed this…but you never know.

cherishloveyou commented 6 years ago

absolute,this is not iPhone's bug. It is the Telekom's web bug

frogg commented 6 years ago

@cherishloveyou yep, that's what I've always been telling people. This is not related to iOS or WebKit at all, it's a privacy issue with Telekom. Seboslaw had a great explanation for that on Twitter: https://twitter.com/seboslaw/status/970769247986216960