www.itunes.com download

www.itunes.com download


Reveals flaw in their iPhone app – Citibank

Citibank has acknowledged that its application for the iPhone contains security vulnerabilities that could allow hackers to steal sensitive information user bank, but it is a security problem or security issue iPhone Citibank?

Citibank, one of the largest banks in the world, admitted that the application for the iPhone who wrote (or perhaps caused by writing) was written by a hacker who accessed the phone could be drawn from the Bank User information such as account numbers, bill payment and security access codes. In a way, it is painted as a problem in the mobile security device, and even specifically as a security problem with the iPhone, when in fact, seems to be purely a problem with how much U.S. bank. UU. who should know better coded their application for the iPhone.

Creating a temporary file containing sensitive user banking information is not an intelligent way to code such an application, yet that is what the Citi programmers did. Worse, though the file was in a hidden directory and at least slightly difficult to find, they failed to erase the file when they were through with it. To add idiocy to injury, the backup process via iTunes copied that file full of sensitive information to the user’s laptop or desktop computer when they hooked their iPhone up to sync it. This is, indeed, very poor security in action, but it has nothing in it to allow the indictment of the mobile industry and its devices.

Any programmer can make mistakes regardless of the device that is intended for your code. And that’s what happened in this case, according to a report in The Wall Street Journal. Making the leap from a poorly programmed application to put the blame at the feet of mobile telephony in general and in particular Apple is ridiculous. For application programmers to write secure code. If they did not, there is little that the mobile industry or a single cell phone manufacturer can do about it.

If you enjoyed this post, make sure you subscribe to my RSS feed!

Leave a Reply