Mobile software developers accidentally disclosed the data of 100 million users

Information security specialists have published a report on the analysis of applications for the Android OS. Analysis of 23 applications showed that the erroneous configuration of the cloud services associated with them allows hundreds of millions of people to gain access to all kinds of personal information.

darkreading.com

The Check Point Research (CPR) team found that 23 applications are prone to all sorts of configuration errors that give access to emails, chat messages, geolocation data, passwords and user photos. Even the developers’ own information resources were under threat.

In 13 of these applications, experts found confidential data from up-to-date databases, the storage for which was provided to developers by various cloud services synchronized with client applications. Access to some databases was not even properly secured, so researchers were able to obtain chat data and passwords by simply sending software queries to the databases.

For example, an unnamed “popular taxi app” with a similar configuration failure has been downloaded by users over 50 times. Experts were able to read chats between passengers and drivers, learned full usernames, phone numbers and addresses of departure and destination.

The team also discovered that some programs have integrated all sorts of keys that allow not only getting into the cloud, but also giving attackers the ability to send fake push notifications.

As for cloud storage, an analysis of the Screen Recorder program (more than 10 million downloads) revealed keys that give access to all records, and the iFax application contained authorization data and actually saved fax messages.

According to the researchers, the company reported the findings to Google and to all developers of “defective” applications, some of which have already released patch updates.

If you notice an error, select it with the mouse and press CTRL + ENTER.

Related Posts

Property Management in Dubai: Effective Rental Strategies and Choosing a Management Company

“Property Management in Dubai: Effective Rental Strategies and Choosing a Management Company” In Dubai, one of the most dynamically developing regions in the world, the real estate…

In Poland, an 18-year-old Ukrainian ran away from the police and died in an accident, – media

The guy crashed into a roadside pole at high speed. In Poland, an 18-year-old Ukrainian ran away from the police and died in an accident / illustrative…

NATO saw no signs that the Russian Federation was planning an attack on one of the Alliance countries

Bauer recalled that according to Article 3 of the NATO treaty, every country must be able to defend itself. Rob Bauer commented on concerns that Russia is…

The Russian Federation has modernized the Kh-101 missile, doubling its warhead, analysts

The installation of an additional warhead in addition to the conventional high-explosive fragmentation one occurred due to a reduction in the size of the fuel tank. The…

Four people killed by storm in European holiday destinations

The deaths come amid warnings of high winds and rain thanks to Storm Nelson. Rescuers discovered bodies in two separate incidents / photo ua.depositphotos.com Four people, including…

Egg baba: a centuries-old recipe of 24 yolks for Catholic Easter

They like to put it in the Easter basket in Poland. However, many countries have their own variations of “bab”. The woman’s original recipe is associated with…

Leave a Reply

Your email address will not be published. Required fields are marked *