|
|
|
|
|
by patcheudor
2396 days ago
|
|
Yup. Keep it out of the app store. I ran into BlueMail awhile back when assisting a non-profit. A number of the staff members were using it so I figured I'd take a look. It wasn't long before I found it was exposing email service authentication credentials in clear-text network communication and was sending those credentials to their own servers. I advised everyone to stop running it and banned the BlueMail agent from connecting to our mail service. I reported the vulnerabilities and never heard back. I never followed up because the app was subsequently removed, which I hope I played some small part. |
|