Security News > 2021 > February > SHAREit fixes security bugs in app with 1 billion downloads

SHAREit fixes security bugs in app with 1 billion downloads
2021-02-22 18:28

The security bugs impact the company's SHAREit Android app, an application that downloaded more than 1 billion times, according to Google Play Store statistics.

As Trend Micro mobile threat analysts Echo Duan and Jesse Chang found, the now-fixed security bugs can be abused by attackers for gaining access to the sensitive information stored by users on devices running vulnerable SHAREit versions.

The security flaws also expose users of unpatched SHAREit versions to man-in-the-disk attacks, allowing attackers to manipulate application resources stored on external storage via code injection.

In 2019, SHAREit patched two other security vulnerabilities that would've enabled attackers to bypass the app's authentication mechanism and download arbitrary user files from vulnerable devices.

"The security of our app and our users' data is of utmost importance to us," SHAREit added.

"We are fully committed to protecting user privacy and security and adapting our app to meet security threats."


News URL

https://www.bleepingcomputer.com/news/security/shareit-fixes-security-bugs-in-app-with-1-billion-downloads/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Billion 4 1 0 2 7 10