ASE Labs
Welcome Guest. Please register or log in now. There are 44 people online (0 Friends).
  • Home
  • Articles
  • News
  • Forum
  • Register/Login
You are at ASE Labs » News » Alert!!! Security hole found in PayPal's iPhone application

Alert!!! Security hole found in PayPal's iPhone application

Poster: Daniel Doty
Posted on November 5, 2010 at 8:03:31 AM
Summery:

Quote

A security research firm has discovered several security problems with PayPal’s iPhone app, warning that hackers can use man-in-the-middle attacks to steal sensitive user data.


Even though it has been reported fixed by PayPal, I am not so sure I would continue using the PayPal application on the iPhone. People may want to wait this one out, and make sure that it is okay to use.

Here is a blurb from the article:

Quote

According to an audit of the app by Chicago-based viaForensics, the vulnerability stems from the app’s failure to confirm the authenticity of PayPal’s website when communicating over the Internet.

Without that confirmation, a hacker could electronically step between a user and PayPal, pretend to be the PayPal website and gather usernames and passwords. The hacker would need to be in the same physical location as the user or have gained access to the same Wi-Fi network.

In practice, that could mean setting up a Wi-Fi hotspot in a location, such as a train station, and waiting for someone to use the network for a PayPal transaction on their iPhone app. It would be a fishing expedition, but the equipment and software needed is commonly available.


To read more, and find out more on this security issue, jump over to ZDNet and read the rest of the article.
 
Print This Entry
Tags News iphone hacked zdnet security issue
Related Articles
  • Happy Birthday USA!
  • Mexican Drug Cartels Selling Counterfeit Windows For Profit
  • Happy New Year!
  • Merry Christmas
  • Gawker Media Has Been Compromised
Login
Welcome Guest. Please register or log in now.
Forgot your password?
Navigation
  • Home
  • Articles
  • News
  • Register/Login
  • Shopping
  • ASE Forums
  • Anime Threads
  • HardwareLogic
  • ASE Adnet
Latest News
  • Welcome to the new server
  • Gmail Gets Optional Preview Pane
  • HBO Go on Consoles
  • HP Touchpad Update
  • Happy System Administrator Day!
  • Apple Releases OS X 10.7 Lion
  • More Android Apps Found to be Malware
  • This Weeks News
  • Happy Birthday USA!
  • Windows Phone Gets Angry Birds, Custom Rings Coming To Mango
Latest Articles
  • Sapphire Edge HD4 Mini PC
  • Logitech G710+ Mechanical Gaming Keyboard
  • EnerPlex Kickr IV And Jumpr Solar Power Pack
  • Kingston Wi-Drive
  • Kingston SDX10V/128GB SDXC Memory
  • In-Win K1 All In One Convertible Case
  • Kingston MobileLite G3 USB3 SDXC Card Reader
  • Synology DS712+ Network Application Server
  • Rapoo Wireless Touchpad Keyboard E9080
  • Netgear NeoTV NTV200 Streaming Player
Latest Topics
  • Pokemon: The Ongaku Region
  • Random Fact of the Day
  • What are you listening to now?
  • Hoe lang zal Pandora Jewelry Boom Last?
  • Ein Pandora iPhone App macht Einschließlich, die Ihre eigenen Rattling
  • The calling of the crisis meeting Thursday
  • Cameron spoke after a crisis meeting
  • Prime Minister David Cameron said Britain
  • uhhmmm.. hi..
  • The mayor of Moore, which bore the brunt
  • The meeting comes as security was increased
  • Prime Minister David Cameron will convene
  • P A R A S Y T E [A Samurai's Story]
  • We Are C A R E E R S [64th Hunger Games!]
Advertisement
Advertisement
Affiliate Reviews
  • AMD RadeonSI Gallium3D Begins Simple CL Demos at Phoronix
  • Intel Shows Off GNOME3-Based Tizen Shell at Phoronix
  • Wine 1.5.31 Pulls In New Gecko Release at Phoronix
  • NVIDIA GeForce Chips Comparison Table at Hardware Secrets
  • Deep Cool M6 2.1 Speaker System ad Laptop Cool Review at Pro-Clockers
  • Microsoft Announces Mice with Windows 8 Start Button Built-in at Hardware Secrets
  • EVGA GTX 780 Superclocked w/ ACX Cooler 3 GB Review at techPowerUp!
  • Linux Desktop Security Could Be A Whole Lot Better at Phoronix
  • KDE 4.11 Will Be The Last Major KDE4 Workspaces Feature Release at Phoronix
  • New NVIDIA Linux Driver Supports The GeForce GTX 780 at Phoronix
  • Chrome 28 To Offer More Speed Improvements at Phoronix
  • NVIDIA Announces the GeForce GTX 780 Video Card at Hardware Secrets
  • Digia Announces "Boot To Qt" Project at Phoronix
  • X.Org Libraries Hit By Round Of Security Issues at Phoronix
Press Release
  • KingsIsle Expands Pirate101 With Two New Worlds
  • Hamilton Watches to Close the Cannes Film Festival with Zulu by Jerome Salle
  • =?ISO-8859-1?Q?Supermicro=AE_Announces_the_Highest_Density_Server?= =?ISO-8859-1?Q?_Solutions_with_Coming_Intel=AE_Haswell_Processors?=
  • Game-Changer Beamforming Microphone Array Takes Another Leap Ahead and Now Features Tabletop and Wall Mode Capabilities
  • IGXE Successfully Launches Shopping Mall Mode: A New Era Is Coming
  • Got Words? New Word Game "Words in a Pic" Tops Global Mobile Charts
  • Infor Announces Cloud Initiative Using Amazon Web Services to Tackle Big Data With Amazon Redshift
  • HP's New MFPs Deliver Increased Productivity With Reduced Costs
  • CompanionLink Injects Business Companion for Verizon's Galaxy S4
  • Walmart Statement on Hisense Sero 7 Tablet Launch
Home - ASE Publishing - About Us
© 2010 Aron Schatz (ASE Publishing) [Queries: 17 (8 Cached)] [Rows: 296 Fetched: 39] [Page Generation time: 0.22943496704102]