Security News > 2024 > May > Qantas app exposed sensitive traveler details to random users

Qantas app exposed sensitive traveler details to random users
2024-05-01 13:21

Qantas Airways confirms that some of its customers were impacted by a misconfiguration in its app that exposed sensitive information and boarding passes to random users.

Earlier today, several users of the Qantas app reported on social media that they could view other users' travel details, including personally identifiable information, boarding passes for upcoming flights, and other account information.

Qantas quickly responded to the reports and confirmed an unintentional exposure of sensitive information possibly caused by recent system changes.

The airline recommended that customers log out from their 'Frequent Flyer' account on the Qantas app and remain vigilant about scams on social media.

"The issue was isolated to the Qantas app with some frequent flyers able to see the travel information of other customers, including name, upcoming flight details, points balance and status," explained Qantas in its announcement.

Users of the Qantas app, which has over one million downloads on the Google Play store, are recommended to remain vigilant for scams using this incident as a lure.


News URL

https://www.bleepingcomputer.com/news/security/qantas-app-exposed-sensitive-traveler-details-to-random-users/