Information Security News mailing list archives

Security researchers uncover Trump campaign app vulnerability


From: InfoSec News <alerts () infosecnews org>
Date: Thu, 18 Jun 2020 07:49:41 +0000 (UTC)

https://www.politico.com/news/2020/06/15/security-trump-campaign-app-vulnerability-319814

By Tim Starks
politico.com
06/15/2020

A team of security researchers discovered a vulnerability in the mobile app of
Donald Trump's campaign that might have allowed hackers to gain access to user
data, they said in a Monday report.

The Website Planet researchers, led by Noam Rotem and Ran Locar, said they
notified the campaign's information security team and that a fix was issued
within a few days.

The "Android Package" file exposed a set of security safeguards known as the
Twitter application keys, Google apps key, Google maps key and Branch.io keys in
the Official Trump 2020 App, the researchers found.

The researchers concluded the flaw didn't expose any user data, but that it
would have given an intruder a way in.

[...]



--
Subscribe to InfoSec News
https://www.infosecnews.org/subscribe-to-infosec-news/
https://twitter.com/infosecnews_


Current thread: