Security vulnerabilities discovered in new European age verification app
The European Commission, led by President Ursula von der Leyen, recently introduced an open-source age verification application intended to restrict minors' access to social media. Following the release of the code, cybersecurity experts identified significant flaws in the system. Cyber security consultant Paul Moore reported that he successfully bypassed the app's protections in under two minutes. Additionally, ethical hacker Baptiste Robert noted the possibility of bypassing biometric security mechanisms. Cryptography researcher Olivier Blazy highlighted a functional flaw where an adult's authenticated device could be used by a minor to gain unauthorized access. The researchers further criticized the app for storing sensitive user data on devices without adequate encryption. While the Commission initially described the tool as technically ready for deployment, these findings have prompted widespread concern regarding its security and privacy standards.