CloudSEK: 50% of apps found to use API keys from three email marketing services

CloudSEK: 50% of apps found to use API keys from three email marketing services

AI cybersecurity company CloudSEK recently investigated 600 popular Android apps on Google Play and found that about 50% of the apps used API keys from the three most popular email marketing service apps.

The full name of API is application programming interface, which enables applications and services to work seamlessly with third-party websites in the background.

APIs are the types of applications that online companies and services use to collect customer contact information and manage outbound marketing campaigns, which means there's a lot of vulnerable data being transmitted via API keys.

CloudSEK investigated 600 Google Play apps using its own BeVigil security engine and found that about half of the apps used API keys from Mailchimp, Sendgrid, and Mailgun. These three API keys have vulnerabilities that can pass sensitive data to malicious third parties, thus affecting user security and becoming a target for cyber scammers.

The affected apps have been downloaded more than 54 million times, and every one of them is now potentially leaking any and all details via API keys. According to CloudSek, the vulnerability could allow malicious actors to read emails, steal customer data, access email lists, and even run email marketing campaigns as a representative of the affected businesses. This last one means that users exposed in this way will be particularly vulnerable to sophisticated phishing campaigns that will be extremely difficult to detect.

From IT Home

<<:  China Payment and Clearing Association: 2022 Mobile Payment User Questionnaire Survey Report

>>:  Canalys: Southeast Asia smartphone shipments in Q3 2022 were 23.5 million, down 4% year-on-year

Recommend

Female buttocks and thighs are cold

In daily life, some women often have cold buttock...

Cesarean section anesthesia sequelae back pain

Caesarean section is a very common method of deli...

Why does your heart skip a beat when you stay up late?

Have you ever been frightened by a sudden "s...

What's wrong with the lochia not being cleaned up after the confinement?

Whether it is a natural birth or a caesarean sect...

What is the cause of breast pain half a month before menstruation?

Breast problems are a concern for many female fri...

What is good about Luckin Coffee? Luckin Coffee ordering guide and review

Luckin Coffee is a chain store that has entered t...

Why do women have chest pain and swelling?

There are many reasons for women's chest pain...

Vaginal ulcers are like this

The female vaginal opening is a component of the ...

How to correct one big breast and one small breast

If some women have breasts of different sizes, th...

Bleeding after sex is not clean

Some female friends will experience bleeding afte...

How is ovarian cyst puncture performed?

Ovarian disease has always been one of the diseas...

How to accidentally abort a pregnancy

For many expectant mothers, pregnancy is not alwa...