Hundreds of Android and iOS apps are still vulnerable to FREAK attacks

From InfoWorld: Hundreds of Android and iOS apps are still vulnerable to a dangerous attack revealed two weeks ago that can compromise encrypted data, a security vendor said Tuesday.

The apps have not yet been patched against the FREAK attack, short for Factoring attack on RSA-EXPORT Keys, which was revealed by researchers on March 3.

The unpatched apps, which were not identified, are in categories including finance, communication, shopping, business, and medicine, computer security company FireEye said in a blog post Tuesday.

The findings highlight how even some of the most publicized and severe flaws can take quite a bit of time to get fixed. That poses risks for people using apps whose developers are not quick to patch them.

View: Article @ Source Site