Home » GEÓ Latest Geopolitical News » CYBER SECURITY: Trump 2020 Campaign App Vulnerable to Attack

CYBER SECURITY: Trump 2020 Campaign App Vulnerable to Attack

CYBER SECURITY: Trump 2020 Campaign App Vulnerable to Attack
By Iain Fraser – Consultant Editor,  GEOPoliticalMatters.com
European News & Media Centre, Málaga City
Google Indexed at 08:49 on 160620

CYBERBREACH: Trump 2020 Campaign Exposed to Attack via App

The Security Research Team at Website Planet have identified a major security vulnerability in US President Donald Trump’s mobile campaign app. The team, led by leading cybersecurity analysts Noam Rotem and Ran Locar, discovered the keys to various parts of the app, including its Twitter API.

The re-election app exposed the information below in the Android APK file:

    Twitter Application keys
    Google apps key
    Google maps key
    Branch.io (mobile analytics) keys

The “Official Trump 2020” app was developed for President Trump’s re-election campaign, available for download on iOS and Android. The app’s code revealed keys and secrets, similar to usernames and passwords, that gave access to different parts of the app, such as its Twitter API.

While the exposed keys allowed access to many parts of the app, we concluded in our investigation that user accounts remained inaccessible through this vulnerability. We did not attempt to access any user accounts on the app, as we felt the initial vulnerability was sufficient to alert the Trump campaign.

The Team concluded that an attacker would still need two additional keys (not exposed) to access any user account, including, potentially, President Trump’s. However, a malicious actorr could still use the keys to impersonate the app, and much worse. For example, using the branch.io keys, hackers could potentially access app user and usage data. More on this story

About Website Planner
Website Planet is the premier authority for web designers, developers, digital marketers, and entrepreneurs with an online presence. Offering useful tools and resources for anyone, from the beginner to the seasoned professional, we pride ourselves on our integrity and honesty. Their team of ethical security research team discovers and discloses some of the most impactful data leaks, as a free community service we perform for the web at large. Contact Website Planet

Author

  • Geopolitical Intel

    Broadcasting Daily from Gibraltar Newsroom our dedicated desk editors and newsdesk team of Professional Journalists and Staff Writers work hand in hand with our established network of highly respected Correspondents & regional/sector specialist Analysts strategically located around the Globe (HUMINT) Our individual Desk Editors all have specific subject authority as Journalists, Researchers and Analysts covering AI, Autonomous Transport, Banking & Finance Technology, Cybersecurity, GeoCrime, Defence 3.0, Energy & Renewables, BioEconomy and Transport & Logistics. Contact the NewsTeam at [email protected]

    View all posts

Leave a Reply

Your email address will not be published. Required fields are marked *

Translate »
geopoliticalmatters.com