Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Viral call-recording application Neon shuts down after leaking users’ phone numbers, recorded calls, and conversation transcripts

Viral call-recording application Neon shuts down after leaking users’ phone numbers, recorded calls, and conversation transcripts

Bitget-RWA2025/09/26 00:51
By:Bitget-RWA

Neon, a trending application that promises to record your phone conversations and compensate you for the audio—which it then sells to AI firms—has quickly climbed into the top five free iPhone apps since debuting last week.

According to data from Appfigures, the app has already attracted thousands of users and saw 75,000 downloads just yesterday. Neon promotes itself as a platform where users can earn cash by submitting call recordings to help develop and test AI systems.

However, Neon has been taken offline—at least temporarily—after a vulnerability exposed users’ phone numbers, call audio, and transcripts to anyone, as TechCrunch has learned.

TechCrunch identified this security issue during a brief evaluation of the app on Thursday. The flaw was reported to Neon’s creator, Alex Kiam (who had previously not responded to inquiries about the app), shortly after it was found. 

Later that day, Kiam informed TechCrunch that he had shut down the app’s servers and started notifying users about the pause in service, but did not fully disclose the security breach to them.

 The Neon app ceased working not long after we reached out to Kiam.

Exposed call audio and transcripts

The core issue was that Neon’s servers failed to restrict logged-in users from viewing other users’ private data.

TechCrunch registered a new account on a separate iPhone, verifying a phone number as part of the process. Using Burp Suite, a tool for analyzing network traffic, we examined the data exchanged between the app and its servers to better understand its technical operations.

After making several test calls, the app displayed a summary of recent calls and the earnings from each. Yet, our network analysis revealed information hidden from ordinary users, such as the text transcript of the call and a public web link to the audio file—accessible to anyone with the URL.

For instance, here is the transcript from a test call between two TechCrunch journalists, confirming the recording feature was functioning.

Viral call-recording application Neon shuts down after leaking users’ phone numbers, recorded calls, and conversation transcripts image 0 Image Credits:TechCrunch

But the servers could also return large quantities of other users’ call audio and transcripts.

In one instance, TechCrunch discovered that Neon’s servers could provide information about the latest calls made by users, along with public links to the raw audio and the transcript of each conversation. (The recordings only include those who have installed Neon, not the people they call.)

Additionally, the servers could be exploited to access recent call metadata from any user. This metadata included both parties’ phone numbers, the time and duration of the call, and the amount earned from each conversation.

A review of several transcripts and audio files indicates that some users may be making lengthy calls to secretly record real-life conversations for profit through the app.

App temporarily suspended

Shortly after we notified Neon about the vulnerability on Thursday, Kiam emailed users to announce the app’s suspension. 

“Protecting your data privacy is our highest priority, and we want to ensure it remains secure even as we grow quickly. For this reason, we are temporarily disabling the app to implement additional security measures,” the email shared with TechCrunch stated.

Importantly, the message did not mention the security incident or the exposure of users’ phone numbers, call audio, and transcripts to others who knew how to find them.

It remains uncertain when Neon will resume operations or if this security issue will attract scrutiny from app store operators. 

Apple and Google have yet to respond to TechCrunch’s questions about whether Neon met their developer policies. 

Still, this is not the first time an app with major security flaws has appeared on these platforms. Recently, the popular dating companion app Tea suffered a breach that leaked users’ personal details and government IDs. Well-known apps like Bumble and Hinge were also found in 2024 to be exposing users’ locations. Both app stores must routinely remove harmful apps that evade their review processes. 

When questioned, Kiam did not immediately clarify whether any security assessment was conducted before launch, or who might have performed it. He also did not specify if the company has the technical ability, such as logs, to determine if others discovered the flaw before TechCrunch or if any user data was compromised.

TechCrunch also reached out to Upfront Ventures and Xfund, which Kiam claims in a LinkedIn post have invested in Neon. As of publication, neither firm has replied to our requests for comment.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

DeFi’s $12B Liquidity Dilemma: Aqua Seeks to Transform Dormant Funds into Active Power

- DeFi faces $12B liquidity crisis with 95% capital idle due to blockchain fragmentation. - 1inch's Aqua protocol enables shared liquidity, turning wallets into self-custodial AMMs to boost capital efficiency. - Aqua's $100K bug bounties and SDK aim to refine infrastructure as DeFi borrowing hits $41B in Q3 2025. - Critics highlight DeFi's fragmentation barriers, but proponents see Aqua replicating 2019 aggregation success. - 1INCH token's $0.207 breakout could signal optimism about resolving the liquidity

Bitget-RWA2025/11/22 16:26

Fed Faces 71% Chance of Rate Cut, Underscoring the Challenge of Balancing Inflation and Employment

- Fed's December 25-basis-point rate cut odds rose to 71% as traders anticipate easing despite internal policy divisions. - Officials balance inflation risks (above 2% target) against labor market strains revealed in October meeting minutes. - Upcoming data on inflation, oil inventories, and global markets will shape final decision before December meeting. - Cryptocurrency markets show mixed signals: Bitcoin stagnates while stablecoin reserves hit record highs amid uncertainty.

Bitget-RWA2025/11/22 16:26
Fed Faces 71% Chance of Rate Cut, Underscoring the Challenge of Balancing Inflation and Employment

As Sports Wagering Surges, NCAA Strengthens Prohibition to Protect Fair Play

- NCAA reverses pro sports betting rule amid gambling scandals, maintaining a ban on collegiate athletes and staff wagering. - High-profile arrests (e.g., NBA coach Billups) and NCAA investigations into betting violations prompted the decision. - Rule rescission succeeded due to <75% support threshold, with 2/3 Division I schools opposing the change. - Major leagues like MLB and NBA also restrict prop bets, reflecting shared concerns over integrity risks in gambling-adjacent sports. - Critics argue blanket

Bitget-RWA2025/11/22 16:26
As Sports Wagering Surges, NCAA Strengthens Prohibition to Protect Fair Play

BNB News Today: BNB's Support Levels Form a Staircase as Bulls and Bears Battle at Key Points

- BNB trades near $820 as three key support levels ($853, $660, $564) become critical battlegrounds for market directionality. - Derivatives activity surges with 139% YTD options volume growth and $5.32B futures trading, highlighting leveraged positioning imbalances. - Market indecision intensifies as long liquidations exceed $8M daily, with buyers needing to defend $860 to avoid deeper correction risks. - Analysts warn $564 breakdown could trigger sustained bearish pressure, while $971 EMA breakout might

Bitget-RWA2025/11/22 16:26
BNB News Today: BNB's Support Levels Form a Staircase as Bulls and Bears Battle at Key Points