A Security researcher found a vulnerability (CVE-2014-0647) in STARTBUCKS v2.6.1.1 iOS mobile application, that stores your credential details and GPS locations in plain text format into the file system. A successful hack would grant the hacker access to the customer’s money on the account. The app allows the Starbucks customers to check their balance, transaction history, fund transfer, and store location, etc. An attacker just needs to connect the device to a computer and access’session.
Source: https://thehackernews.com/2014/01/starbucks-ios-app-storing-user.html