Rss.Slashdot EU Age Verification App Vulnerable to Hacking in Under 2 Minutes
Article Content
- •The EU's age verification app can be hacked in under 2 minutes, exposing security flaws.
- •Security expert Paul Moore identified critical vulnerabilities in the app's design.
- •The app aims to protect minors but raises significant concerns about online safety.
The European Commission's newly launched age verification app, aimed at protecting minors online, has been compromised by security consultant Paul Moore, who demonstrated a bypass of its security in under two minutes. The app, designed to allow users to prove their age without sharing personal data, has been criticized for fundamental design flaws that make it susceptible to attacks. Moore highlighted that the app's encryption is not securely tied to the user's identity, allowing attackers to reset PINs and bypass biometric checks easily. The app was officially announced on April 14, 2026, and is intended to support compliance with the EU's Digital Services Act. However, its vulnerabilities raise serious concerns about the safety of children online. The app's rollout comes amid increasing scrutiny of online platforms and their responsibility to protect young users. As of now, the app's security flaws have prompted calls for immediate reassessment and potential redesign.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (9)
Following this threat?
Track European Commission in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…
BlueMoon Exploit Kit Targeting Chrome and Windows by Multiple State Actors A new exploit kit named BlueMoon has been rapidly adopted by at least four espionage groups, primarily linked to China, exploiting vulnerabilities in Google Chrome and Microsoft Windows. The first observed use of BlueMoon was on August 28, 2026, by the China-aligned threat actor TA412, with subsequent adoption by…