More Than 80% of Mobile Apps Have Encryption Flaws, Study Finds

Found on eWEEK on Saturday, 05 December 2015
Browse Hardware

More than 80 percent of mobile devices have encryption flaws, while an application written in any of a trio of scripting languages—including PHP, ColdFusion and Classic ASP—are more likely to have serious flaws.

Many companies' security programs have become more mature, but a large number of smaller software startups have cropped up, with novice programmers in many cases, Wysopal said.

"These things are easy to fix, but they are so pervasive it goes to show that the mobile developers are really ignorant about how to write good crypto code," he said.

Maybe it would be a decent idea to make them liable for bad practices. Bugs can always happen, but neglecting established and known security approaches should not happen. Obviously it is common practice to produce insecure toys which are a security nightmares.