Blog | G5 Cyber Security

Millions of sensitive records exposed by mobile apps leaking back-end credentials

Thousands of mobile applications implement cloud-based, back-end services that lets anyone access millions of sensitive records created by users. German researchers found that many of them include their primary BaaS access keys inside their apps. Many of those credentials were reused in multiple apps from the same developer and, in total, they provided access to over 18.5 million records containing 56 million data items. The records included car accident information, birthdays, contact information, telephone numbers, pictures, valid email addresses, purchase data, private messages, baby growth data and even whole server backups.”]

Source: https://www.csoonline.com/article/3005495/millions-of-sensitive-records-exposed-by-mobile-apps-leaking-back-end-credentials.html

Exit mobile version