Ring Doorbell App Caught Sharing User Data to Analytics and Marketing Companies

Ring Doorbell App used to monitor your home through your smartphones, PC or Tablets. Every device includes a lens, a built-in microphone, and a speaker.

So with the app you can watch and speak to the person at your home from anywhere, also it helps to detect motions.

Ring Doorbell App Data Sharing

According to the investigation by EFF, the Ring Doorbell android app shares the customer personally identifiable information with third-party trackers.

The data shared are such as private IP addresses, persistent identifiers, names, mobile network carriers and sensor data on the devices of paying customers.

The data shared with Four main analytics and marketing companies that include branch.io, mixpanel.com, appsflyer.com, and facebook.com.

By having these bits of information the analytics companies combine them to make a whole picture of the user device.

The data shared by the app to AppsFlyer is more alarming, it shares data include magnetometer, gyroscope, and accelerometer and current calibration settings.

Ring also sharing the data with Google crash logging service Crashalytics. It uses HTTPS encrypted traffic which makes analysis job difficult.

Also, it has an app-level certificate pinning to ensure the is the issuance of certificates or mismanagement in the certificate chain.

Researchers managed to inject the code in runtime with Frida framework, “that the certificate provided by our mitmproxy instance would be accepted as valid”.

EFF said that by “leveraging an image of the secure home while profiting from a surveillance network which facilitates police departments’ unprecedented access into the private lives of citizens, as we have previously covered.”

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

3 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago