Uber Said to Ignore Bug in Its Two-Factor Authentication

Advertisement
By Indo-Asian News Service | Updated: 22 January 2018 17:12 IST

Ride-hailing app Uber has reportedly ignored a security flaw -- discovered by a New Delhi-based security researcher -- that can allow an attacker to hack into user accounts via bypassing its two-factor authentication feature.

"Two-factor authentication is a vital part of protecting online accounts that adds a second layer of security on top of your username and password -- which can be stolen -- by sending a code by text message to your phone which only you would have access to," tech website ZDNet reported late on Sunday.

Advertisement

"That two-factor code can be bypassed, making the second layer of security protection effectively useless," security researcher Karan Saini was quoted as saying by ZDNet.

The security bug works by exploiting a weakness in how the app authenticates a user when they log in to the platform, thereby letting the user log in to an account and easily defeat the two-factor prompt, without entering the correct code.

Advertisement

Uber reportedly said the security bug "is not a particularly severe" issue.

"This isn't a particularly severe report and is likely expected behaviour," Rob Fletcher, Security Engineering Manager at Uber, said in his correspondence with Saini about the bug report.

Advertisement

Uber began testing two-factor authentication on its systems in 2015 but the company has yet to widely push the security feature to its users.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Uber, Apps, India
Advertisement

Related Stories

Popular Mobile Brands
  1. Portronics Launches Vayu Nano Tyre Inflator in India at This Price
  2. New OTT Releases This Week: Dhurandhar: Raw and Uncut, Desi Bling, System, and More
  3. Oura Ring 5 Could Launch on This Date With a Redesigned Look
  4. Meta Launched Reddit-Style Forum App: All You Need to Know
  5. Motorola Edge 70 Pro+ Will Launch in India Soon in These Three Colourways
  6. MacBook Pro OLED Panels Might Enter Mass Production Next Month
  1. Mysterious Stacked Rocks Spotted by NASA Perseverance Rover on Mars
  2. Meta Launches Forum App as a Reddit-Like Platform for Discussions With AI-Powered Assistant for Admins
  3. Xiaomi 17T Series Teased to Arrive in Two Display Variants; Colour Options Revealed Ahead of Debut
  4. Honor Magic 9 Series Could Feature 8,000mAh Batteries; Tipster Leaks Camera, Display Upgrades
  5. Google Might Sell Over 2 Million Android XR-Powered Smart Glasses This Year: Report
  6. Google's Pixel Glow Feature for the Google Pixel 11 May Have Accidentally Leaked During Google I/O 2026
  7. iQOO 16 Global and Indian Debut Seemingly Confirmed as Handset Gets Listed on IMEI Database: Report
  8. Motorola Edge 70 Pro+ Camera Details Confirmed, WIll Arrive in Three Colourways
  9. Oppo Reno 16 Bags BIS, TUV SUD and TDRA Certifications That Hint at Imminent Global Debut
  10. Infinity Ward Working on Next Call of Duty, Says It's Making 'Definitive Modern Warfare' Title
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.