An annual study to assess the scope of vulnerabilities and threats to organizations identified relevant encryption errors that often plague mobile phone applications.
According to HP's Cyber Risk Report 2013, 46% of Android and iOS apps use encryption incorrectly, leaving user data vulnerable to theft or misuse.
More than 180 iOS and Android apps were tested in the HP study, and it found that developers either completely forgot to encrypt sensitive information before storing it on the device or often relied on weak algorithms to secure the data. A small fraction of apps (8%) that had encryption errors last year were affected by incomplete certificate validation.
📧
Subscribe to the SecNews Newsletter
