- The week in security: Aussie banks targeted as mobiles drive privacy fears
- Bank trojan targets users of Bitcoin exchange Mt Gox
- Australian Information Security Association issues blunt warning as National Cyber Security Awareness Week begins
- Why don't risk management programs work?
- Yahoo Japan says 22 million user IDs may have been stolen
In Pictures: 9 iPhone and iPad apps that invade your privacy, and 1 that doesn't
Salon-Finder
What it does: Salon-Finder (free) is an iPhone app that helps salons and customers "connect, build loyalty and be pampered," according to its Facebook page. Got a broken nail? Find a salon and get it fixed. No worries. Well, there are a few things to worry about.
What are the risks: • Not compiled as a Position Independent Executable (PIE), which could expose the app to memory corruption attacks. • Sends some sensitive data in clear text (no encryption). • Can access a user's Location and Contacts Book. • Includes file paths to source code files in debug information, stored within the app's executable. These file paths often include usernames or other information related to the app developer or development company.































