Moonpig exposes details of 3m customers

Online greeting card service Moonpig has suspended its mobile apps following claims that a security flaw allowed access to any of its three million customer accounts.

Mobile app developer Paul Price discovered the apparent bug while examining the security settings of the code Moonpig uses in its Android and iOS applications.

He claimed that when submitting requests to the website through its app, it failed to authenticate the customers username and password.

Link to article