Several EA Sports FIFA 22 players have been hacked

Several EA Sports FIFA 22 players claim to have been hacked, they say to have lost access to their personal EA and email accounts. A growing number of EA Sports FIFA 22 players reported that their EA accounts were hacked, including famous streamers such as Jamie Bateson (AKA Bateson87), NickRTFM, Trymacs, TisiSchubecH and FUT FG. […]

The post Several EA Sports FIFA 22 players have been hacked appeared first on Security Affairs.

January 10, 2022
Read More >>

Android:backupAgent with android:allowBackup is an security issue?

Hello everyone,

I am learning mobile pentesting and I like it. I was investigating the ‘AndroidManifest.xml’ file and I saw that android:allowBackup is set to true. I heard this was a vulnerability itself due sensitive information you can backup, see:

If backup flag is set to true, it allows an attacker to take the backup of the application data via adb even if the device is not rooted. Therefore applications that handle and store sensitive information such as card details, passwords etc.

But in this ‘AndroidManifest.xml’ there is a ‘android:backupAgent’. Will this still be a vulnerability?

Kind regards,

GroundbreakingTea

submitted by /u/GroundbreakingTea195
[link] [comments]

January 10, 2022
Read More >>