Kimbho app is also reportedly a copy of another chat app called Bolo.

Patanjalis Kimbho app not secure all user messages can be accessed Cyber researcher
Atom Instant Messaging Thursday, May 31, 2018 - 14:43

Hours after Baba Ramdev’s Patanjali announced the launch of WhatsApp competitor ‘Kimbho’, an instant messaging app, French security analyst has discovered serious security vulnerabilities in the app. Another techie also claimed on Twitter that Kimbho is the copy of another chat app ‘Bolo’.

The security analyst, who goes by the name Elliot Alderson on Twitter pointed out that Kimbho isn’t secure. “Hi KimbhoApp before trying to compete WhatsApp, you can try to secure your app. It's possible to choose a security code between 0001 and 9999 and send it to the number of your choice,” he tweeted.

According to him, the app developed by a woman from Appdios has to be removed from Google Play immediately because of a critical vulnerability. Interestingly, as of Thursday, the app was no longer available on Google Play, after having received 5,000 downloads. Calling it a security disaster, Elliot claimed that he could access the messages of all the users.

In the past, Elliot has reported several vulnerabilities in applications and organizations such as UIDAI (for Aadhaar), OnePlus, Paytm, PhonePe, LockheedMartin and a few banks including Reserve Bank of India (RBI) as well.

Meanwhile, a Bengaluru-based techie also took to Twitter to point out that Kimbho is seemingly a copy-paste of another application called Bolo. He posted screenshots to show that the description and screenshots in the app stores are the same.

“It is build on an app called "BOLO". Kimbho team is so dumb that they didnt even changed the OTP SMS format!! Even the description n pics used are same as Bolo app,” he Tweeted.

Interestingly, screenshots posted on Kimbho’s Twitter page also show BoloApp written on top of the messages users receive from Kimbho upon registering.

Patanjali announced the launch of Kimbho App on Wednesday, calling it a WhatsApp competitor.  

“Now Bharat will speak. After launching sim cards, baba Ramdev has launched a new messaging application called Kimbho. Now Whats App will be given a competition. Our own Swadeshi Messaging platform. Download it directly from Google Play store," Patanjali spokesperson SK Tijariwala tweeted on Wednesday.

The Kimbho app has been now taken down from the Google PlayStore. Post that, there was a Tweet on Kimbho’s Twitter page on Thursday stating, “We are facing extremely high traffic on Kimbho. We are in process of upgrading our servers and will be back shortly. Sorry for the inconvenience. Please stay tuned.”

However, the app is still available on the Apple store.

Also read: Patanjali takes on WhatsApp with Swadeshi messaging app ‘Kimbho’


Show us some love and support our journalism by becoming a TNM Member - Click here.