Widespread Exposure of API Keys Imperils the Mobile App Ecosystem

Discussion in 'mobile device security' started by guest, Sep 20, 2021.

  1. guest

    guest Guest

    Payment API Bungling Exposes Millions of Users’ Payment Data
    September 20, 2021
    https://threatpost.com/payment-api-exposes-payment-data/174825/
    CloudSEK: Exposed Payment Integration API Keys Imperil Millions of Users’ Transaction Details and PII
     
  2. guest

    guest Guest

    Over 3,200 apps leak Twitter API keys, some allowing account hijacks
    August 1, 2022

    CloudSEK: How Leaked Twitter API Keys Can be Used to Build a Bot Army
    (PDF): https://cloudsek.com/download/20147/
     
    Last edited by a moderator: Aug 8, 2022
  3. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,126
    Location:
    U.S.A. (South)
    That says all we need to know. Pure incompetence-script kiddies :p
     
  4. guest

    guest Guest

    Thousands of Algolia API Keys Could Expose Users' Data
    By Alessandro Mascellino @a_mascellino - November 21, 2022
    CloudSEK: Protected: Hardcoded Algolia API Keys Could be Exploited by Threat Actors to Steal Millions of Users’ Data
    Apps with over 3 million installs leak 'Admin' search API keys
    By Bill Toulas @billtoulas - November 21, 2022
     
    Last edited by a moderator: Nov 21, 2022
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.