• Latest
  • Trending
  • All

Thousands of Android, iOS Apps Expose User Data Due to Cloud Misconfigurations: Zimperium

2 months ago

IPL Stars “Lucky” As COVID Ravages India, Says Delhi Capitals’ Chris Woakes

1 min ago

Sidhu steps up attack on Capt, questions role in sacrilege case

1 hour ago

‘Unite against BJP’: Mamata writes to Oppn leaders

3 hours ago

I beg govt to make arrangements for last rites of COVID victims in dignified manner: Kumaraswamy

3 hours ago

Haryana records 9,742 new Covid-19 cases, highest single-day spike yet

8 hours ago

Mamata to PM Modi- The New Indian Express

8 hours ago

How Long Will You Ignore Climate Crisis

9 hours ago

Need of third vaccine dose based more upon conjecture than data, say experts- The New Indian Express

19 hours ago

PM Modi To Chair 3 High-Level Meetings To Review Covid Situation, Will Address Virtual West Bengal Rally At 5 PM

22 hours ago

Apple to host virtual iPad event, may hint at new AirPods- The New Indian Express

23 hours ago

German MPs quiz Angela Merkel, ministers over Wirecard scandal

1 day ago

Sukhbir threatens protest over delayed payment to farmers

1 day ago
Friday, April 23, 2021
  • PRESS RELEASE
  • ADVERTISE
  • CONTACT
Chann Pardesi Media
  • Home
  • RadioLive
  • News
    • India
    • Punjab
    • International
    • Entertainment
  • Politics
  • Health
  • Business
  • Sports
  • Technology
  • Lifestyle
  • Video
    • All
    • Hindi Songs
    • Punjabi Songs
    Hindi Heart Touching Songs 2021 – Arijit Singh, Atif Aslam, Neha Kakkar, Armaan Malik,Shreya Ghoshal

    Hindi Heart Touching Songs 2021 – Arijit Singh, Atif Aslam, Neha Kakkar, Armaan Malik,Shreya Ghoshal

    Old Vs New Bollywood Mashup Songs 2020 | 90's Bollywood Romantic Mashup Live_Bollywood Mashup 2021

    Old Vs New Bollywood Mashup Songs 2020 | 90's Bollywood Romantic Mashup Live_Bollywood Mashup 2021

    New Hindi Song 2021 January 💖 Top Bollywood Romantic Love Songs 2021 💖 Best Indian Songs 2021

    New Hindi Song 2021 January 💖 Top Bollywood Romantic Love Songs 2021 💖 Best Indian Songs 2021

    Hindi Heart Touching Songs 2021 – Arijit Singh, Atif Aslam, Neha Kakkar, Armaan Malik,Shreya Ghoshal

    Hindi Heart Touching Songs 2021 – Arijit Singh, Atif Aslam, Neha Kakkar, Armaan Malik,Shreya Ghoshal

    Old Vs New Bollywood Mashup Songs 2020 |New Hindi Songs,Indian Love Songs Mashup_Romantic Songs 2021

    Old Vs New Bollywood Mashup Songs 2020 |New Hindi Songs,Indian Love Songs Mashup_Romantic Songs 2021

    Hindi Heart touching Song 2020 – arijit singh,Atif Aslam,Neha Kakkar,Armaan Malik,Shreya Ghoshal

    Hindi Heart touching Song 2020 – arijit singh,Atif Aslam,Neha Kakkar,Armaan Malik,Shreya Ghoshal

    New Hindi Song 2021 January 💖 Top Bollywood Romantic Love Songs 2021 💖 Best Indian Songs 2021

    New Hindi Song 2021 January 💖 Top Bollywood Romantic Love Songs 2021 💖 Best Indian Songs 2021

    Ikk Pal Kaka, Full Song, Kaka New Song, New Punjabi Song 2020, Latest New Punjabi Song 2020

    Ikk Pal Kaka, Full Song, Kaka New Song, New Punjabi Song 2020, Latest New Punjabi Song 2020

    Bollywood Romantic Love Songs 2021 💖 New Hindi Songs 2021 January💖 Bollywood Hits Songs 2021

  • Travel
  • Youtube
No Result
View All Result
Chann Pardesi Media
No Result
View All Result
ADVERTISEMENT
Home Technology

Thousands of Android, iOS Apps Expose User Data Due to Cloud Misconfigurations: Zimperium

by Chann Pardesi Team
March 5, 2021
in Technology
0
Share on FacebookShare on TwitterShare on Email
ADVERTISEMENT


Thousands of Android and iOS apps exposed user data due to commonly found cloud misconfigurations, according to a mobile security firm. The issues could allow malicious attackers to exploit the leaked information. The researchers found misconfiguration problems on apps using popular public cloud services such as Amazon Web Services, Google Cloud, and Microsoft Azure. Among other apps, a mobile wallet developed by a Fortune 500 company was spotted exposing session and payment information of users that could lead to fraud.

The researchers at Zimperium conducted an automated analysis of more than 1.3 million Android and iOS apps in which they found misconfiguration problems on 14 percent of the total testing base. In a blog post, the company noted that it detected apps that leak the entire cloud infrastructure scripts and definitions including SSH keys.

“Other types of configurations are Web server config files, installation files, and even passwords to payment kiosks,” the company said in the post.

The apps were found to expose personally identifiable information (PII) including profile pictures, personal details, and medical test data. Some apps even enabled fraud or exposed intellectual property (IP) data and internal systems.

Apps exposing PII included some medical and social media apps as well as a major game app and a fitness app. Major city transportation, online retailer, and gambling apps were also noticed enabling fraud. Further, major music, news service, mobile payments wallet, airport, hardware developer, and Asian government travel apps were found to expose IP and system details. Zimperium, however, didn’t reveal the exact name of the apps exposing data.

“During our review, we encountered several apps relying on both Google and Amazon storage that was accessible without any security. In one example, the information we were able to obtain included profile pictures and other PII information,” Zimperium said.

The researchers also found that in some cases, the misconfigurations allowed hackers to even change or overwrite data that could bring further disruption for end users.

Wired reported that a total of 11,877 Android apps and 6,608 iOS apps were exposing users’ sensitive information through common cloud misconfigurations.

The researchers contacted some app developers about the exposures, though many apps were found to have still exposed data. The response from most of the app developers reached out was also minimal.

Cloud service providers such as Amazon, Google, and Microsoft do provide ways to protect data from being exposed. However, it is the ultimate responsibility of developers and the companies that offer apps to use appropriate configurations to ensure safety of their users.

“Once you’ve closed off your cloud service to unauthorised external access, the next thing you can do is to use a service that assesses your secure software development lifecycle as part of your standard development process,” Zimperium said.

Importantly, Zimperium is one of the three mobile security companies that are a part of Google’s App Defense Alliance initiative, that is aimed to offer automated app scanning for Google Play.

Wired reported that Zimperium researchers used the same set of tools it uses for the App Defense Alliance programme to investigate cloud misconfigurations. However, instead of looking for accidental exposures, the company uses the tools for Google Play to find potentially malicious functionality.


Does WhatsApp’s new privacy policy spell the end for your privacy? We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts, Google Podcasts, or RSS, download the episode, or just hit the play button below.



Source link

Tags: AndroidappsClouddatadueExposeiOSMisconfigurationsthousandsuserZimperium
Share197Tweet123Send

Related Posts

Technology

Apple to host virtual iPad event, may hint at new AirPods- The New Indian Express

April 22, 2021
Technology

The Morning After – Engadget

April 21, 2021
Technology

UK drone startup sees.ai gets go ahead to trial beyond-visual-line-of-sight (BVLOS) flights – TechCrunch

April 20, 2021
Technology

This electric fastback is the next Audi A6 e-tron, due in late 2022

April 19, 2021
Load More
  • Trending
  • Comments
  • Latest

Counting of votes for 7 MCs, 109 councils begins in Punjab

February 17, 2021

Punjabi singer Diljaan dies in road accident near Amritsar

March 30, 2021

Cricketers T Natarajan & Shardul Thakur Receive The Mahindra Thar As Promised By Anand Mahindra, Share Pics On Social Media

April 2, 2021

IPL Stars “Lucky” As COVID Ravages India, Says Delhi Capitals’ Chris Woakes

0

Diamond (Full HD) | Gurnam Bhullar | New Punjabi Songs 2018 | Latest Punjabi Song 2018

0

DILBAR Lyrical | Satyameva Jayate |John Abraham, Nora Fatehi,Tanishk B, Neha Kakkar,Dhvani, Ikka

0

IPL Stars “Lucky” As COVID Ravages India, Says Delhi Capitals’ Chris Woakes

April 23, 2021

Sidhu steps up attack on Capt, questions role in sacrilege case

April 23, 2021

‘Unite against BJP’: Mamata writes to Oppn leaders

April 23, 2021
ADVERTISEMENT
Chann Pardesi Media

24x7 Online News From India
Chann Pardesi Media is your news, entertainment, music fashion website. We provide you with the latest breaking news and videos straight from the entertainment industry.

Categories

  • Business
  • Entertainment
  • Health
  • Hindi News
  • Hindi Songs
  • India
  • International
  • Lifestyle
  • Panjab
  • Politics
  • Punjabi Songs
  • Sports
  • Technology
  • Travel
  • Youtube
No Result
View All Result

Recent Posts

  • IPL Stars “Lucky” As COVID Ravages India, Says Delhi Capitals’ Chris Woakes
  • Sidhu steps up attack on Capt, questions role in sacrilege case
  • ‘Unite against BJP’: Mamata writes to Oppn leaders
  • Home
  • Disclaimer
  • DMCA
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact

Copyright © 2021 - Chann Pardesi Media.

No Result
View All Result
  • Home
  • Radio
  • News
    • India
    • Punjab
    • International
    • Entertainment
  • Politics
  • Health
  • Business
  • Sports
  • Technology
  • Lifestyle
  • Video
  • Travel
  • Youtube

Copyright © 2021 - Chann Pardesi Media.