Business
Bugs in ride-hailing app Moovit could have allowed hackers to take free rides

San Francisco, Aug 14
A security researcher found serious vulnerabilities in the ride-hailing app Moovit that could have allowed hackers to compromise users’ accounts and their financial information to get free rides.
Omer Attias who is a security researcher at SafeBreach, spotted three bugs in Movie which allowed him to collect new user’s registration information from all over the world.
The bugs could have allowed him to take over other people’s accounts, and consequently their credit cards, to pay for his own rides, reports TechCrunch.
“We can fully impersonate accounts, without disconnecting them. It’s crazy, we actually have the ability to perform all the operations on behalf of different accounts, including ordering train tickets,†Attias was quoted as saying in the report.
Attias, in fact, created a custom interface that allowed him to take over other people’s accounts with just a few taps.
Moovit is an Israel-based mobility-as-a-service provider and journey planner app. It has been owned by Intel through the Mobileye subsidiary since 2020.
It claims to serve 1.7 billion riders in 3,500 cities across 112 countries.
The company, however, said there is no evidence that malicious hackers found and exploited these bugs.
“Moovit was aware of and rectifying the issue when it was reported, and took immediate steps to finish correcting the issue,†a company spokesperson was quoted as saying in the report.
The vulnerabilities have long since been fixed and no customer action is required, the spokesperson added.
In May 2020, Moovit was acquired by Intel for $900 million and has integrated with Mobileye. In October 2022, Moovit was acquired by Mobileye from Intel as part of Mobileye's IPO.

1 hour ago
Indian Overseas Congress Expresses Deep Shock and Sorrow at the Sudden Passing of Harbachan Singh, the Secretary-General.

4 hours ago
US H-1B visa fee unlikely to dent IT companies’ margins significantly: Report

5 hours ago
US again clarifies Trump's H-1B proclamation, says existing visa holders not impacted

5 hours ago
Former X executive defends H-1B workers, slams anti-immigrant posts on X

5 hours ago
In new geopolitical context of US Tariffs, Brazil calls for closer ties with India

6 hours ago
U.S. H-1B visa policy raises concerns; China introduces ‘K Visa’ to attract young professionals

7 hours ago
‘Shield Seniors’ app against online fraud; Indian student wins TIME magazine award

8 hours ago
Khalistani extremist and close aide of terrorist Pannun arrested in Canada

8 hours ago
Piyush Goyal in Washington for India-US trade talks

9 hours ago
Armed robbers loot over Rs 1 crore from HDFC Bank in Jharkhand’s Madhupur

9 hours ago
No relief by SC for Jacqueline Fernandez in the Rs 200 crore money laundering case

9 hours ago
SC to examine PIL for enhanced transparency in Air India crash probe

11 hours ago
Hindus seek “Hindu Mandir” at JFK Airport