YONO SBI App Vulnerability Enables Man-in-the-Middle Attacks
ID: ca94a3d1-e10d-5d74-80b3-19a73f3c16b5
STIX ID: report--ca94a3d1-e10d-5d74-80b3-19a73f3c16b5
Feed Name: Cyber Press
Threat Score
**Executive summary:** A critical misconfiguration in the YONO SBI Android app (version 1.23.36) enables cleartext network traffic (android:usesCleartextTraffic="true"), exposing sensitive banking data to interception, tampering, and MITM attacks; the issue is cataloged as CVE-2025-45080 and remediation advises disabling cleartext traffic and enforcing HTTPS/network security config.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
