Researcher Claims Hotspot Shield VPN Service Exposes You on the Internet

in #hacking7 years ago

Virtual Private Network (VPN) is one of the best solutions you can have to protect your privacy and data on the Internet, but you should be more vigilant while choosing a VPN service which truly respects your privacy.

The vulnerability, assigned CVE-2018-6460, has been discovered and reported to the company by an independent security researcher, Paulos Yibelo, but he made details of the vulnerability to the public on Monday after not receiving a response from the company.
According to the researcher claims, the flaw resides in the local web server (runs on a hardcoded host 127.0.0.1 and port 895) that Hotspot Shield installs on the user's machine

"http://localhost:895/status.js generates a sensitive JSON response that reveals whether the user is connected to VPN, to which VPN he/she is connected to what and what their real IP address is & other system juicy information. There are other multiple endpoints that return sensitive data including configuration details," Yibelo claims.

source- https://thehackernews.com/2018/02/hotspot-shield-vpn-service.html

Sort:  

Such a great information.

Mr.@zahidsun I thinks Hotspot sheld value will be expire soon.

helpful post

Informative article about VPN

As a follower of @followforupvotes this post has been randomly selected and upvoted! Enjoy your upvote and have a great day!

Good info

Your post provides information

Your post very important and useful information for all people

Your post very good

Nive post

Coin Marketplace

STEEM 0.17
TRX 0.15
JST 0.029
BTC 56512.08
ETH 2344.21
USDT 1.00
SBD 2.33