Re: [Full-disclosure] [CVE-2014-0647] Insecure Data Storage of User Data Elements in Starbucks v2.6.1 iOS mobile application

2014-01-18 Thread Daniel Wood
Friday, January 17, 2014 Updated Security Review for the new Starbucks v2.6.2 mobile iOS application After publishing my vulnerability report on the Starbucks v2.6.1 mobile iOS application, I have been in continuous communication with Starbucks. As you know, Starbucks released an updated

[Full-disclosure] [CVE-2014-0647] Insecure Data Storage of User Data Elements in Starbucks v2.6.1 iOS mobile application

2014-01-14 Thread Daniel Wood
Title: [CVE-2014-0647] Insecure Data Storage of User Data Elements in Starbucks v2.6.1 iOS mobile application Published: January 13, 2014 Reported to Vendor: December 2013 (no direct response) CVE Reference: CVE-2014-0647 Credit: This issue was discovered by Daniel E. Wood