Lumension® Endpoint Intelligence Center

Intelligence Center » News Archive » Exercise-tracking app not QUITE fit for purpose

Exercise-tracking app not QUITE fit for purpose


The Register - (International) A researcher identified and reported a direct object reference vulnerability in the MyFitnessPal app that allowed users' personal information, including location and dates of birth, to be accessed by any user. The vulnerability was closed 2 days after being reported.


Note: This news synopsis is taken from the DHS Daily Open Source Infrastructure Report, a daily [Monday through Friday, except US Federal holidays] summary of open-source published information concerning significant critical infrastructure issues; a 10-day archive of the DOSIR can be found at:

Last Updated: 27 May 2016 10:21:47