According to FireEye researchers, a large number of iOS and Android apps are still vulnerable to the FREAK bug despite the patches that have been released.
The FireEye states that Android has the biggest problem, with over 10% of its apps vulnerable to the attack.
Researchers scanned nearly 11,000 Android apps that have more than a million downloads each and found that over 1,000 were still vulnerable because they use an open SSL library to connect to HTTPS servers.
“The 1228 apps have been downloaded over 6.3 billion times. Of these 1228 Android apps, 664 use the OpenSSL library that Android typically uses, and the remaining 564 have their own OpenSSL library. All of these OpenSSL versions are vulnerable to FREAK.”
When it comes to Apple's iOS, things are certainly not much better. Over 14,000 popular iOS apps were examined, and 5.5% of them connected to vulnerable HTTPS servers.
You can read the security company's entire report here.

