logo

YONO SBI App Vulnerability Enables Man-in-the-Middle Attacks

ID: ca94a3d1-e10d-5d74-80b3-19a73f3c16b5

STIX ID: report--ca94a3d1-e10d-5d74-80b3-19a73f3c16b5

Feed Name: Cyber Press

Threat Score
70/100

Date Published: 2025-07-02

Date Updated: 2026-04-19

Author: AnuPriya

...
...

**Executive summary:** A critical misconfiguration in the YONO SBI Android app (version 1.23.36) enables cleartext network traffic (android:usesCleartextTraffic="true"), exposing sensitive banking data to interception, tampering, and MITM attacks; the issue is cataloged as CVE-2025-45080 and remediation advises disabling cleartext traffic and enforcing HTTPS/network security config.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.