x PhoneArena is looking for new authors! To view all available positions, click here.
  • Home
  • News
  • iOS apps that take your address book data: Facebook, Twitter, Instagram, Foursquare, and more

iOS apps that take your address book data: Facebook, Twitter, Instagram, Foursquare, and more

iOS apps that take your address book data: Facebook, Twitter, Instagram, Foursquare, and more
If you have an iPhone, chances are you are using either the Facebook or Twitter application. Turns out, they are among a surprisingly huge number of application that would just get all of your address book data to their servers, often without even asking your permission. That includes names of your friends and acquaintances, email addresses and even their phone numbers, according to a VentureBeat report.

How is this possible? Turns out, it’s been possible all along as iOS allows applications to easily get access to such private area as your address book and simply take it to their webservers. From there on, it’s up to the developers what they will use your contacts for.

What’s weird is that the scandal only broke a couple of weeks ago with social network Path, which was caught fetching your address book data to its own servers. Later, it apologized, but some of the most popular iOS apps are still taking your contacts data.

But this hasn’t changed much practices from the biggest apps out there - Facebook, Twitter, Instagram, Foursquare, Foodspotting, Yelp, and Gowalla were found to be all taking your address book data to their servers. In the worst case of Foodspotting, it’s transmitted over the network unencrypted so that anyone can snoop it.

Foodspotting transmits your contacts' data unencrypted over the network so anyone can snoop it. Image courtesy of VentureBeat.

Foodspotting transmits your contacts' data unencrypted over the network so anyone can snoop it. Image courtesy of VentureBeat.


Getting your contacts has been a common practice for many social apps that don’t want you to end up using their services alone. They get all of your contacts emails and sometimes phone numbers to try and connect you. Instagram has done this without even prompting the user. After the Path scandal, the app is now issuing the following mesage, prompting you to tap “allow”:

“In order to find your friends, we need to send address book information to Instagram’s servers using a secure connection.”

The biggest problem is though that those third-party apps, even though they’re promising not to keep your address data, could just like Path be storing it. There’s no way to check as we don’t have access to their databases. So, if they are and there’s a security breach as we’ve seen so often in the past, all of your contacts information leak out.

Finally, while application makers can and should be careful with the data, they point a finger back at Apple as the origin of the problem.

“I felt like iOS had given me far too much access to Address Book without forcing a user prompt. It felt a bit dirty,” Instapaper creator Marco Arment said in a blog post explaining how his app uses address book data. “Apple can, and should, assure users that no app can read their contact data without their knowledge and explicit permission.”

We wouldn’t blame you for feeling like your privacy is threatened after reading this. In the meantime, we’re still waiting for an official statement from Apple about the issue - hopefully it’s going to get addressed soon.

source: VentureBeat

6 Comments
  • Options
    Close




posted on 15 Feb 2012, 05:40

1. protozeloz (Posts: 5371; Member since: 16 Sep 2010)


It's why the permission model is the best ever, you know what apps can use certain permissions and for much more advanced users even block some permission on certain apps

posted on 15 Feb 2012, 06:10 2

2. Droid_X_Doug (Posts: 5605; Member since: 22 Dec 2010)


Sounds like there definitely will be another release of iOS 5 before the iPhone 5 starts to ship.

Agreed about the permissions model superiority. Unless an app is explicitly permitted access, it don't get the access.

posted on 15 Feb 2012, 08:54

3. cellphonator (Posts: 298; Member since: 29 Oct 2011)


It's like an 'in house spyware'. Shame on them.

posted on 15 Feb 2012, 12:07

4. rcrider4 (Posts: 118; Member since: 14 Nov 2011)


Definitely needs a system like location services, where you can tell an app if it can access you adress book, and see a list where you can toggle them on and off.

posted on 15 Feb 2012, 13:14

5. rcrider4 (Posts: 118; Member since: 14 Nov 2011)


And look at that. Engadget reported that apple is planning to do exactly what I said:http://www.engadget.com/2012/02/15/iphone-address-book-issue-prompts-response-apple-access-to-cont/

posted on 17 Feb 2012, 12:47 1

6. cellgeek82 (Posts: 518; Member since: 20 Dec 2009)


There should be a permission model when it comes to government lol.

-The president is requesting access to your rights. Allow?

-The president is requesting access to your health care. Allow?

-Congress wants access to your beliefs and morals. Allow?

-The House has voted for a pay freeze. Allow?

Ok, that was my troll moment HAHA!

Want to comment? Please login or register.

Latest stories