Get a Pentest and security assessment of your IT network.

Cyber Security

Starbucks’ iOS app storing user credentials in plain text

A Security researcher found a vulnerability (CVE-2014-0647) in STARTBUCKS v2.6.1.1 iOS mobile application, that stores your credential details and GPS locations in plain text format into the file system. A successful hack would grant the hacker access to the customer’s money on the account. The app allows the Starbucks customers to check their balance, transaction history, fund transfer, and store location, etc. An attacker just needs to connect the device to a computer and access’session.

Source: https://thehackernews.com/2014/01/starbucks-ios-app-storing-user.html

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation