Information Security & Privacy Advisories



Apple Clips iOS Application - Insecure Transport


Apple iTunes Movie Trailers iOS Application - Insecure Transport


Cisco Umbrella Virtual Appliance - Undocumented Support Tunnel (CVE-2017-6679)


Apple Music Android Application - Insecure Transport (CVE-2023-32427)


Apple Music Android Application - MITM SSL Certificate Vulnerability (CVE-2022-32906)


Can You Hear Me Now? - A Brief Analysis Of iOS & iPadOS First Party App Privacy Practices


CIRA Canadian Shiel‪d iOS Application - MITM SSL Certificate Vulnerability (CVE-2021-27189)


A (Short) Tale Of Proxy Leakage


Applebot - Not Obeying robots.txt


VIPRE Password Vault iOS Application - MITM SSL Certificate Vulnerability (CVE-2020-14981)


Sophos Secure Email Android Application - MITM SSL Certificate Vulnerability (CVE-2020-14980)


Citytv Video Android & iOS Applications - Unencrypted Analytics (CVE-2020-8507)


Global TV Android & iOS Applications - Unencrypted Analytics (CVE-2020-8506)


CBC Gem Android & iOS Applications - Unencrypted Analytics (CVE-2019-19464)


Anhui Huami Mi Fit Android Application - Unencrypted Update Check (CVE-2019-19463)


Texture Canada Android & iOS Applications - Unencrypted Third Party Analytics (CVE-2019-8632)


Cisco Common Service Platform Collector - Hardcoded Credentials (CVE-2019-1723)


Qkr! with MasterPass iOS Application - MITM SSL Certificate Vulnerability (CVE-2019-6702)


Google Cardboard Android & iOS Applications - Unencrypted Third Party Analytics (CVE-2018-19111)


Norton Security for Mac - MITM SSL Certificate Vulnerability (CVE-2017-15528)


Shazam Android Application - Unencrypted Third Party Analytics


Cisco Umbrella Virtual Appliance - Hardcoded Credentials (CVE-2017-12350)


Apple Support iOS Application - Unencrypted Third Party Analytics (CVE-2017-7147)


Apple Music Android Application - MITM SSL Certificate Vulnerability (CVE-2017-2387)


Trend Micro Enterprise Mobile Security Android Application - MITM SSL Certificate Vulnerability (CVE-2016-9319)


ShoreTel Mobility Client iOS Application - MITM SSL Certificate Vulnerability (CVE-2016-6562)


Kaspersky Safe Browser iOS Application - MITM SSL Certificate Vulnerability (CVE-2016-6231)


Acer Portal Android Application - MITM SSL Certificate Vulnerability (CVE-2016-5648)


Trend Micro Mobile Security iOS Application - MITM SSL Certificate Vulnerability (CVE-2016-3664)


Panda SM Manager iOS Application - MITM SSL Certificate Vulnerability


Dell SecureWorks iOS Application - MITM SSL Certificate Vulnerability (CVE-2016-2268)


Avira Mobile Security iOS Application - Cleartext Credentials Vulnerability (CVE-2015-7732)


Webroot SecureAnywhere Mobile Protection - MITM SSL Certificate Vulnerability


Thycotic Password Manager Secret Server iOS Application - MITM SSL Certificate Vulnerability (CVE-2015-4094)


McAfee Advanced Threat Defense - Sandbox Fingerprinting & Bypass (CVE-2015-8986)


Email Attachment Extension Block / Quarantine List


TLD Block List


Research Scanning Notes


---------------------------------------------------------------

Info-Sec.CA