PogoWasRight.org

Menu
  • About
  • Privacy
Menu

Tracking Firm LocationSmart Leaked Location Data for Customers of All Major U.S. Mobile Carriers Without Consent in Real Time Via Its Web Site

Posted on May 18, 2018June 25, 2025 by Dissent

Brian Krebs reports:

LocationSmart, a U.S. based company that acts as an aggregator of real-time data about the precise location of mobile phone devices, has been leaking this information to anyone via a buggy component of its Web site — without the need for any password or other form of authentication or authorization — KrebsOnSecurity has learned. The company took the vulnerable service offline early this afternoon after being contacted by KrebsOnSecurity, which verified that it could be used to reveal the location of any AT&T, Sprint, T-Mobile or Verizon phone in the United States to an accuracy of within a few hundred yards.

Read more on  KrebsOnSecurity.com.

Related posts:

  • How Political Campaigns Use Your Phone’s Location to Target You
  • The Popular Family Safety App Life360 Is Selling Precise Location Data on Its Tens of Millions of Users
  • How the Federal Government Buys Our Cell Phone Location Data
Category: BreachesBusinessFeatured NewsU.S.

Post navigation

← How Rogers, Telus and Bell sell access to your location data to third-party companies
ICO newsletter: direct marketing, but no need to “reconsent” →

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • Trump administration is launching a new private health tracking system with Big Tech’s help
  • Attorney General James Takes Action to Protect Sensitive Personal Information of Tens of Millions of People
  • Searches of Your Private Data in the Cloud Amount to Illicit State Action
  • How a Tax Subpoena in Ohio Tests European Privacy Law
  • Cambodia moves to enact comprehensive data privacy law
  • White House ordered to restore Medicaid funding to Planned Parenthood clinics
  • California Attorney General Announces $1.55M CCPA Settlement with Healthline.com

RSS Recent Posts on DataBreaches.net

  • WA: Cyber-attacks problem for small hospitals
  • Florida prison data breach exposes visitors’ contact information to inmates
  • Experian Wins Appeal to Send Data Breach Victim to Arbitration
  • ICANN sends breach notice to domain registrar Webnic about failure to deal with DNS abuse compliants properly
  • Canadian cybercriminal sentenced to a year in prison for NFT theft scheme
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy