{"id":12237,"date":"2014-01-16T12:05:35","date_gmt":"2014-01-16T18:05:35","guid":{"rendered":"http:\/\/bucktownbell.com\/?p=12237"},"modified":"2014-01-16T12:05:35","modified_gmt":"2014-01-16T18:05:35","slug":"starbucks-mobile-app-vulnerability-puts-data-at-risk","status":"publish","type":"post","link":"http:\/\/bucktownbell.com\/?p=12237","title":{"rendered":"Starbucks Mobile App Vulnerability Puts Data At Risk"},"content":{"rendered":"<blockquote><p>According to Wood, the file, which can be found at \/Library\/Caches\/com.crashlytics.data\/com.starbucks.mystarbucks\/session.clslog, contains more than just the user\u2019s login information.<\/p>\n<p>In re-testing the vulnerability last night Wood discovered that the user\u2019s full name, address, device ID and geolocation data are all being stored in clear text as well. This information popped up after Wood reinstalled the app and monitored the session.cslog file during user signup.<\/p><\/blockquote>\n<p>via <a href=\"http:\/\/threatpost.com\/starbucks-app-stores-user-information-passwords-in-clear-text\/103649\">Starbucks Mobile App Vulnerability Puts Data At Risk | Threatpost &#8211; English &#8211; Global &#8211; threatpost.com<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>According to Wood, the file, which can be found at \/Library\/Caches\/com.crashlytics.data\/com.starbucks.mystarbucks\/session.clslog, contains more than just the user\u2019s login information. In re-testing the vulnerability last night Wood discovered that the user\u2019s full name, address, device ID and geolocation data are all &hellip; <a href=\"http:\/\/bucktownbell.com\/?p=12237\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[17],"tags":[718,1147],"class_list":["post-12237","post","type-post","status-publish","format-standard","hentry","category-technical","tag-data-security","tag-mobile-payment"],"_links":{"self":[{"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/posts\/12237","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=12237"}],"version-history":[{"count":1,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/posts\/12237\/revisions"}],"predecessor-version":[{"id":12238,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=\/wp\/v2\/posts\/12237\/revisions\/12238"}],"wp:attachment":[{"href":"http:\/\/bucktownbell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=12237"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=12237"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/bucktownbell.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=12237"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}