<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>OnePlus Security Flaw Archives - Gizmochina</title>
	<atom:link href="https://www.gizmochina.com/tag/oneplus-security-flaw/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.gizmochina.com/tag/oneplus-security-flaw/</link>
	<description>Latest Tech News, Product Reviews and Deals</description>
	<lastBuildDate>Sat, 04 Jul 2020 16:31:55 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=5.9.9</generator>
	<item>
		<title>OnePlus fixes a security flaw in its out-of-warranty repair invoicing system</title>
		<link>https://www.gizmochina.com/2020/07/04/oneplus-fixes-a-security-flaw-in-its-out-of-warranty-repair-invoicing-system/</link>
		
		<dc:creator><![CDATA[Sudarshan Ravichandran]]></dc:creator>
		<pubDate>Sat, 04 Jul 2020 16:31:55 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Oneplus]]></category>
		<category><![CDATA[OnePlus]]></category>
		<category><![CDATA[OnePlus breach]]></category>
		<category><![CDATA[OnePlus Security Flaw]]></category>
		<guid isPermaLink="false">https://www.gizmochina.com/?p=330502</guid>

					<description><![CDATA[<img width="300" height="200" src="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-300x200.jpg?x23692" class="webfeedsFeaturedVisual wp-post-image" alt="OnePlus Logo Old" loading="lazy" style="display: block; margin: auto; margin-bottom: 5px;max-width: 100%;" link_thumbnail="" srcset="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-300x200.jpg 300w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-768x512.jpg 768w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1024x683.jpg 1024w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-696x464.jpg 696w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1068x712.jpg 1068w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-630x420.jpg 630w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old.jpg 1200w" sizes="(max-width: 300px) 100vw, 300px" /><p>As much as OnePlus is popular for its devices, it is also in the news for security breach every now and then. Once again, the company fixes a flaw in its system but there’s no evidence of exploit so far. This new security flaw was tipped by Eric Lang, a reader of Android Police on [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://www.gizmochina.com/2020/07/04/oneplus-fixes-a-security-flaw-in-its-out-of-warranty-repair-invoicing-system/">OnePlus fixes a security flaw in its out-of-warranty repair invoicing system</a> appeared first on <a rel="nofollow" href="https://www.gizmochina.com">Gizmochina</a>.</p>
]]></description>
										<content:encoded><![CDATA[<img width="300" height="200" src="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-300x200.jpg?x23692" class="webfeedsFeaturedVisual wp-post-image" alt="OnePlus Logo Old" loading="lazy" style="display: block; margin: auto; margin-bottom: 5px;max-width: 100%;" link_thumbnail="" srcset="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-300x200.jpg 300w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-768x512.jpg 768w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1024x683.jpg 1024w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-696x464.jpg 696w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1068x712.jpg 1068w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-630x420.jpg 630w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old.jpg 1200w" sizes="(max-width: 300px) 100vw, 300px" /><p><span style="font-weight: 400">As much as </span><a href="https://www.gizmochina.com/tag/OnePlus"><span style="font-weight: 400">OnePlus </span></a><span style="font-weight: 400">is popular for its devices, it is also in the news for security breach every now and then. Once again, the company fixes a flaw in its system but there’s no evidence of exploit so far.</span></p>
<p><img loading="lazy" class="size-large wp-image-315263 aligncenter" src="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1024x683.jpg?x23692" alt="OnePlus Logo Old" width="696" height="464" srcset="https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1024x683.jpg 1024w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-300x200.jpg 300w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-768x512.jpg 768w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-696x464.jpg 696w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-1068x712.jpg 1068w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old-630x420.jpg 630w, https://www.gizmochina.com/wp-content/uploads/2020/04/OnePlus-Logo-Old.jpg 1200w" sizes="(max-width: 696px) 100vw, 696px" /></p>
<p><span style="font-weight: 400">This new security flaw was tipped by </span><i><span style="font-weight: 400">Eric Lang</span></i><span style="font-weight: 400">, a reader of </span><a href="https://www.androidpolice.com/2020/07/03/oneplus-fixes-yet-another-security-flaw-that-may-have-exposed-sensitive-customer-data/https://www.androidpolice.com/2020/07/03/oneplus-fixes-yet-another-security-flaw-that-may-have-exposed-sensitive-customer-data/"><i><span style="font-weight: 400">Android Police</span></i></a><span style="font-weight: 400"> on June 30. The said publication disclosed OnePlus about the issue and received confirmation from the company on July 2 that they had fixed the vulnerability and there was no exploit.</span></p>
<p><span style="font-weight: 400">The security vulnerability was in the OnePlus’ US out-of-warranty repair invoicing system. It is run by a third-party vendor and could have only affected a small subset of US customers.</span></p>
<p><span style="font-weight: 400">It could have exposed the details of customers through their unpaid invoices for out-of-warranty repairs. But the chance of such exploit is very low and even OnePlus’ internal audit confirmed “</span><i><span style="font-weight: 400">no evidence of any purposeful attempts to access these URLs</span></i><span style="font-weight: 400">”.</span></p>
<p><span style="font-weight: 400">If it was ever exploited, then it could have revealed the following data of customers to the attacker.</span></p>
<ul>
<li style="font-weight: 400"><span style="font-weight: 400">Order number</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Phone model</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">IMEI</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Order date</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Name</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Address</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Phone number</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Email address</span></li>
<li style="font-weight: 400"><span style="font-weight: 400">Repair cost</span></li>
</ul>
<p><span style="font-weight: 400">Some of the previous infamous OnePlus security disasters include a </span><a href="https://www.gizmochina.com/2018/01/23/oneplus-confirms-credit-card-breach-impacted-40000-customers/"><span style="font-weight: 400">credit card breach</span></a><span style="font-weight: 400"> that affected 40,000 customers, </span><a href="https://www.gizmochina.com/2019/11/23/oneplus-customer-data-breached-yet-again-names-and-addresses-likely-exposed/"><span style="font-weight: 400">orders information breach</span></a><span style="font-weight: 400">, and </span><a href="https://www.gizmochina.com/2019/06/15/shot-on-oneplus-flaw/"><span style="font-weight: 400">Shot on OnePlus App flaw</span></a><span style="font-weight: 400">.</span></p>
<h6 class="related"><strong>UP NEXT: </strong><a href="https://www.gizmochina.com/2019/12/20/oneplus-to-launch-a-bug-bounty-program-users-can-earn-up-to-7000-49000-cny/">OnePlus to launch a Bug Bounty program, users can earn up to $7000 (49,000 CNY)</a></h6>
<p>&nbsp;</p>
<p>The post <a rel="nofollow" href="https://www.gizmochina.com/2020/07/04/oneplus-fixes-a-security-flaw-in-its-out-of-warranty-repair-invoicing-system/">OnePlus fixes a security flaw in its out-of-warranty repair invoicing system</a> appeared first on <a rel="nofollow" href="https://www.gizmochina.com">Gizmochina</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 21/41 objects using Redis
Page Caching using Disk: Enhanced 
Content Delivery Network Full Site Delivery via cloudflare
Database Caching 15/27 queries in 0.010 seconds using Redis
Fragment Caching 2/3 fragments using Redis

Served from: www.gizmochina.com @ 2026-08-01 12:20:41 by W3 Total Cache
-->