Digital Media Net - Your Gateway To Digital media Creation. News and information on Digital Video, VR, Animation, Visual Effects, Mac Based media. Post Production, CAD, Sound and Music
Annual report reviews the state of security of 100 top Android and iOS Financial Services Applications – reveals serious vulnerabilities in cryptographic key protection, communications channels and other security breaches – showing the industry needs to do far better in the face of a massive transition to digital banking and financial services in the wake of COVID-19 lockdowns.
SAN FRANCISCO–(BUSINESS WIRE)–#IntertrustTech—Intertrust, the pioneer in digital rights management (DRM) technology and leading provider of application security solutions, released their annual 2020 Security Report on US Financial Mobile Apps today, revealing that over 70% of U.S. financial services apps have at least one serious vulnerability that could lead to a breach of financial data. The report investigated 100 publicly available U.S. mobile financial services apps across a range of categories, including banking, investment, and mobile payment, to uncover the most critical financial mobile app threats.
82% of the apps in the study failed one or more cryptographic tests with cryptographic key protection and management issues posing one of the more pervasive and serious threats. Even if app developers use robust cryptography standards, they can fail to protect keys in their apps, allowing hackers to peel away the code and expropriate the key. This means that for financial apps, the encryption they rely on can be easily broken by cybercriminals, potentially exposing confidential payment and customer data and putting the application code at risk for analysis and tampering.
The study’s overall findings suggest that while the COVID-19 pandemic is accelerating the world’s shift to digital channels and innovative technologies like mobile contactless payments, mobile financial application security is not keeping up.
“The troubling results of this analysis indicate that mobile financial app developers still need to pay closer attention to secure coding practices,” said Bill Horne, general manager of the Secure Systems product group at Intertrust. “The good news is that application shielding strategies and technologies are available that can help financial organizations improve the overall security of their applications.”
The Intertrust Security Report on U.S. Financial Mobile Apps presents the results of an audit of 100 iOS and Android mobile applications of U.S. financial organizations, conducted by a third-party expert. All 100 apps were analyzed using an array of static application security testing (SAST) and dynamic application security testing (DAST) techniques based on OWASP (Open Web Application Security Project) mobile app security guidelines.
Highlights from the security report include:
Financial service organizations interested in Intertrust’s application shielding solution for the finance industry can find more information here.
About Intertrust
Intertrust provides trusted computing products and services to leading global corporations–from mobile, consumer electronics and IoT manufacturers, to service providers and enterprise software platform companies. These products include the world’s leading digital rights management (DRM), software tamper resistance, and technologies to enable private data exchanges for various verticals including energy, entertainment, retail/marketing, automotive, fintech, and IoT. Founded in 1990, Intertrust is headquartered in Silicon Valley with regional offices in London, Tokyo, Mumbai, Bangalore, Beijing, Seoul, Riga, and Tallinn. The company has a legacy of invention, and its fundamental contributions in the areas of computer security and digital trust are globally recognized. Intertrust holds hundreds of patents that are key to Internet security, trust, and privacy management components of operating systems, trusted mobile code and networked operating environments, web services, and cloud computing.
Contacts
Thomas Morelli
intertrust@sparkpr.com
US: +1 (206) 218-3984
LOS ANGELES--(BUSINESS WIRE)--Griffin Gaming Partners and BIT ODD a groundbreaking gaming studio based in Finland,…
Coppell, Texas-based Alford Media, an event services company with more than 220 corporate events worldwide…
TORRANCE, CA, NOVEMBER 13, 2024 —Marshall Electronics introduces the new CV630-BI (in black) and CV630-WI…
ANAHEIM, CA, NOVEMBER 13, 2024 – Eastern Acoustic Works (EAW®) has been chosen as a…
SCOTLAND, UK, NOVEMBER 13, 2024 ― Singer Paolo Nutini’s world tour recently wrapped after 130…