Dozens of popular iPhone apps are sharing the location data of millions of mobile devices with third-party data monetization firms, according to a group of security researchers called GuardianApp (via TechCrunch).

The apps in question are mostly news, weather, and fitness apps that require access to location data to work properly, but then share that data to earn money.

locationdatacollection
According to security researchers, the apps send both precise location and other sensitive customer data to data monetization companies "at all times, constantly" sometimes without customers being aware of the location data collection. The information is used for purposes like creating databases for ad targeting.

Researchers used tools to monitor network traffic to discover apps collecting Bluetooth LE data, GPS longitude and latitude, WiFi SSIDs, accelerometer information, battery charge percentage, location arrival/departure timestamps, and more.

While the apps say that personally identifiable information is not included in the data collection, one of the researchers, Will Strafach, told TechCrunch that latitude and longitude coordinates can provide information on a person's home or work. Many customers who agree to provide apps with location data may not be aware of the extent of the information being collected and shared.

Apps that were found to be collecting location info and sending it to data monetization firms include ASKfm, NOAA Weather Radar, Homes.com, Perfect365, C25K 5K Trainer, Classifieds 2.0 Marketplace, GasBuddy, Photobucket, Roadtrippers, Tapatalk, and more, with a full list available on the site.

The data is being sent to companies that include Reveal, Sense360, Cuebiq, Teemo, Mobiquity, and Fysical. These companies denied wrongdoing, suggested customers were able to opt out at any time, and said that developers are required to inform customers about the data collection.

Some of the apps in question do indeed have clear data collection notices when opening them up for the first time, but data monetization firms do not make sure apps are following disclosure policies and not all do.

"None of these companies appear to be legally accountable for their claims and practices, instead there is some sort of self-regulation they claim to enforce," said Strafach.

iPhone users who want to avoid having their location data shared with data monetization firms should be wary of the third-party apps they install that are using location services. Limiting ad tracking in Privacy settings by going to Privacy > Advertising is recommended.

GuardianApp also suggests users use a generic name for router SSIDs and turn off Bluetooth functionality when Bluetooth is not in use.

Top Rated Comments

fumi2014 Avatar
83 months ago
I didn't think Apple allowed this sort of thing.
Score: 16 Votes (Like | Disagree)
zorinlynx Avatar
83 months ago
The best way to be able to still use some of these apps (like Pay By Phone parking) that need your location to work well, but not share your location all the time, is to make sure Location Privacy is set to "While Using".

Any app that tries to keep using your location in the background when set to "While Using" will pop up a big blue banner saying "<app> is currently using your location." You can then remove the offending app, or at least kill it. Waze has this issue, but I suspect it's a longstanding bug and not intentional.
Score: 11 Votes (Like | Disagree)
Apple_Robert Avatar
83 months ago
I don't use any of the apps in question.

The linked article would carry more weight, if it was more than an advertisement for Guardian's new VPN app.
Score: 10 Votes (Like | Disagree)
MikeAnd Avatar
83 months ago
The best way to be able to still use some of these apps (like Pay By Phone parking) that need your location to work well, but not share your location all the time, is to make sure Location Privacy is set to "While Using".
Yes, at the risk of stating the obvious, for most apps there is a huge difference between granting Location Services access "While Using" versus "Always." For example, I do use GasBuddy, but I'm not too concerned about it because I set Location Services to "While Using," and I only fire it up once a month. There are virtually no third-party apps on my phone that I grant "Always" access to.

You can then remove the offending app, or at least kill it. Waze has this issue, but I suspect it's a longstanding bug and not intentional.
Ironically, the Waze UI is so bad that "just kill the app (and relaunch it from scratch)" is my default technique for navigating through the app.
Score: 7 Votes (Like | Disagree)
S.B.G Avatar
83 months ago
Would you mind explaining all this in a bit more detail? Not familiar with much of what you’re talking about.
Only for Linux!?
More like a Question, can this be done by running Linux in a VM on my Mac and then use that one to set the DNS.
This seems to me a bit geeky if you ask me.
I do have a second generation Raspberry Pi, would that work, is there any non geeky way to set this up, most of the time if you go to those sites explaining this stuff makes it too hard for non geeks.
I am by no means a dummy but networking is not easy at all.

Yup, I too would like to know more about it, seems like you need some kind f Linux distribution to get this to work.
Pi-Hole can be set up on Linux or Raspbian. If you use Linux, don't run it on Ubuntu LTS 18.04 because it isn't yet supported.

I've tested and run it on a Raspberry Pi (Raspbian OS), Ubuntu 16.04 LTS on a Dell Optiplex 990 and I've run it in a VM (virtual machine) under Ubuntu in VMware Fusion on a Mac Mini. Currently I'm just using the Raspbery Pi as the DNS server, or Pi-Hole.

All you have to do once set up is to tell your WiFi router/access point and/or firewall to use the IP address of the Pi-Hole for it's DNS. You can also manually set each device, phone, tablet, PC, laptop et al. to point to the Pi-Hole for it's DNS.

Once you get it setup then you can add curated blocklists to the 'gravity service' of Pi-Hole and it imports all those domains on the list into your Pi-Hole for blocking. You can also blacklist and whitelist domains as needed too. There will always be some false-positives or sites that are blocked that you don't want blocked and once you square off those rough edges its smooth sailing.

Here are some sites that I get most of my block lists from:

* https://firebog.net/
* https://blog.cryptoaustralia.org.au/2017/11/15/favourite-block-lists-cryptoaustralia/
* https://github.com/StevenBlack/hosts
* https://discourse.pi-hole.net/t/to-completely-block-facebook-blocklist-facebook-domains/8141

Here is the Raspbery Pi hardware I'm using. https://www.amazon.com/gp/product/B01D92SSX6/ref=oh_aui_search_detailpage?ie=UTF8&psc=1

I'm happy to answer more questions if you have them. I love the Pi-Hole and never want to be on the Internet again without it.

Here is a video on the setup process.
Score: 6 Votes (Like | Disagree)
macfacts Avatar
83 months ago
So privacy on iOS is fake
Score: 6 Votes (Like | Disagree)

Popular Stories

Generic iOS 19 Feature Mock Light

iOS 19 Leak Reveals All-New Design

Friday January 17, 2025 2:42 pm PST by
iOS 19 is still around six months away from being announced, but a new leak has allegedly revealed a completely redesigned Camera app. Based on footage it obtained, YouTube channel Front Page Tech shared a video showing what the new Camera app will apparently look like, with the key change being translucent menus for camera controls. Overall, the design of these menus looks similar to...
2024 iPhone Boxes Feature

Apple Changes Trade-In Values for iPhones, iPads, Macs, and More

Thursday January 16, 2025 6:45 am PST by
Apple today adjusted estimated trade-in values for select iPhone, iPad, Mac, and Apple Watch models in the U.S., according to its website. Some values increased, while others decreased. The changes were not too significant, with most values rising or dropping by $5 to $50. We have outlined some examples below: Device New Value Old Value iPhone 15 Pro Max Up to $630 U ...
2024 App Store Awards

Apple Explains Why It Removed TikTok From the App Store in the U.S.

Sunday January 19, 2025 6:58 am PST by
Apple on late Saturday removed TikTok from the App Store in the U.S., and it has now explained why it was required to take this action. Last year, the U.S. passed a law that required Chinese company ByteDance to divest its ownership of TikTok due to potential national security risks, or else the platform would be banned. That law went into effect today, and companies like Apple and Google...
Generic iOS 18

Everything New in iOS 18.3 Beta 3

Thursday January 16, 2025 12:39 pm PST by
Apple provided the third beta of iOS 18.3 to developers today, and while the betas have so far been light on new features, the third beta makes some major changes to Notification Summaries and also tweaks a few other features. Notification Summary Changes Apple made multiple changes to Notification Summaries in response to complaints about inaccurate summaries of news headlines. For...
iOS 19 Roundup Feature

iOS 19 Rumored to Be Compatible With These iPhones

Saturday January 18, 2025 10:28 am PST by
iOS 19 will not drop support for any iPhone models, according to French website iPhoneSoft.fr. The report cited a source who said iOS 19 will be compatible with any iPhone that can run iOS 18, which would mean the following models: iPhone 16 iPhone 16 Plus iPhone 16 Pro iPhone 16 Pro Max iPhone 15 iPhone 15 Plus iPhone 15 Pro iPhone 15 Pro Max iPhone 14 iPhon...
iPad Pro vs iPhone 17 Air Feature

Here's How Thin the iPhone 17 Air Might Be

Friday January 17, 2025 3:38 pm PST by
For the last several months, we've been hearing rumors about a redesigned version of the iPhone 17 that Apple might call the iPhone 17 "Air," or something along those lines. It's going to replace the iPhone 17 Plus as Apple's fourth iPhone option, and it will be offered alongside the iPhone 17, iPhone 17 Pro, and iPhone 17 Pro Max. We know the iPhone 17 Air is going to be super slim, but...
apple power beats pro 2

Powerbeats Pro 2 Coming Soon: Apple to Announce Them 'Imminently'

Sunday January 19, 2025 8:25 am PST by
In September, Apple said that it would be launching Powerbeats Pro 2 in 2025, and it appears the wireless earbuds are coming very soon. Powerbeats Pro 2 images found in iOS 18 code In his Power On newsletter today, Bloomberg's Mark Gurman said the Powerbeats Pro 2 are "due imminently." In addition to Apple filing the Powerbeats Pro 2 in regulatory databases last month, Gurman said Apple is...
mail categories macos

Apple's Redesigned Mail App is Expanding to the Mac — Here's When

Sunday January 19, 2025 6:02 am PST by
Apple plans to expand the iPhone's redesigned Mail app to the Mac starting with macOS 15.4, according to Bloomberg's Mark Gurman. The first macOS 15.4 beta should be made available in the coming weeks, and Apple has previously suggested that the iOS 18.4, iPadOS 18.4, and macOS 15.4 series of software updates will be released to the public in April. The revamped Mail app debuted on all...