Anonymous bulletin board app Yik Yak is revealing its users’ exact locations


Yik Yak, an app that acts as a local anonymous message board, makes it possible to find users’ precise locations and unique IDs, Motherboard reports. A researcher who analyzed Yik Yak data was able to access precise GPS coordinates of where posts and comments came from, accurate within 10 to 15 feet, and says he brought his findings to the company in April.

First launched in 2013, Yik Yak was popular on college campuses, where it was often used to gossip, post updates, and cyberbully other students. After waning relevance and failed attempts at content moderation, the app shut down in 2017, only to rise from the dead last year. In November, the company said it had passed 2 million users.

Motherboard spoke with David Teather, a computer science student based in Madison, Wisconsin, who raised the security concerns to Yik Yak and went on to publish his findings in a blog post. The app shows posts from nearby users but displays only approximate location, such as “around 1 mile away,” up to five miles, to give users a sense of where in their nearby community updates are coming from.

Though Yik Yak promises anonymity, Teather points out that combining GPS coordinates and user IDs could de-anonymize users and find out where people live since many are likely to be using it from home and the data is accurate to within 10 to 15 feet. That combination of information could be used to stalk or watch a particular person, and Teather mentions that the risk could be higher for people living in rural areas where homes are more than 10 to 15 feet apart because a GPS location could narrow a user down to one address.

As Motherboard reports, the data is accessible to researchers like Teather, who know how to use tools and write code to extract information — but the risk was real enough to prompt Teather to bring it to Yik Yak’s attention.

“Since user ids are persistent it’s possible to figure out a user’s daily routine of when and where they post YikYaks from, this can be used to find out the daily routine of a particular YikYak user,” Teather writes. He listed other ways the data could be abused, like finding out where someone lives, monitoring users, or breaking into someone’s home when they’re not there.

Yik Yak did not respond to a request for comment from The Verge.

According to Motherboard, the latest version of the app released by Yik Yak no longer exposes precise location and user IDs, but Teather says he can still retrieve that information using previous versions of the app.

“If YikYak did take this more seriously they would restrict these fields from being returned and break older versions and force users to upgrade to a newer version of the app,” he wrote in the blog post.





Source link

Related articles

Pompliano’s ProCap Buys $386M Bitcoin After $1B SPAC Deal

Crypto entrepreneur Anthony Pompliano’s agency ProCap made its first Bitcoin buy simply days after revealing that it plans to go public later this 12 months. The Bitcoin monetary providers agency, ProCap BTC, mentioned on...

India’s GoKwik raised a small $13M spherical for a hefty leap in valuation

GoKwik, an Indian startup that provides a set of built-in e-commerce merchandise, has raised a small spherical of $13 million, which it calls a “development” spherical, that has boosted its valuation to $450...

Verizon will provide you with an iPhone 16 Plus (or 4) with no trade-in – this is how

Lastly, the gadget's digital camera has had some stable upgrades and would impress any demographic. It could not have the Professional's digital camera features, but it surely's nonetheless as succesful...

Revolut Names Béatrice Cossa-Dumurgier Western Europe CEO in Banking License Drive

Revolut has appointed Béatrice Cossa-Dumurgier because the CEO of its newly established Western Europe headquarters in Paris, signaling the fintech’s intent to strengthen its presence within the area and pursue a full banking license in France.The...

Meet Mu, the small language mannequin in command of Microsoft’s Settings AI agent

In short: Small language fashions are typically extra compact and environment friendly than LLMs, as they're designed to run on native {hardware} or edge units. Microsoft is now bringing yet...
spot_img

Latest articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

WP2Social Auto Publish Powered By : XYZScripts.com