Categories: Security

Security Threats Present in Android Health Apps

Health apps are undoubtedly a great way to count calories, map your runs, or keep track of medications. Unfortunately they are also a great way for hackers to run away with your private information. Following are some security risks in some of today’s most popular health apps, and what you can do to protect yourself.

Why Do Hackers Target Health Apps?

Why are hackers interested in how many calories you burned or how many miles you walked, anyway? It turns out that many of the more complex health apps also store personal information, such as your address, medical history, and social security number. Unlike credit card information, this data cannot simply be changed or cancelled if stolen — and can fetch a ton on the black market. As a result, these apps are now a hot target for cyber criminals.

Read More: Cybercrime: The Most High-Profile Targets

What Risks Are Present?

A study done by Arxan, an application protection provider, found that 86% of health apps tested contained at least two major security risks, and 96% of tested apps were found to have a lack of binary protection. This means that hackers can easily reverse engineer the app’s binary code by inserting malware (malicious software) into it, resulting in confidential data theft.

The study also found 79% of tested apps to have insufficient transport layer protection, meaning essentially that network traffic is unprotected, making sensitive data, such as passwords, susceptible to interception while being exchanged. But perhaps the most alarming finding is from an IBM Security and Ponemon Institute research paper which shows that approximately 50% of organizations do not have budgets for advancing mobile security, indicating that making apps more secure is not considered a priority.

What Can I Do?

It’s important to also note that the selling of data collected through apps is NOT regulated. Unlike the information you give to your doctor, information collected through a health or fitness app is not subject to the privacy and security regulations of the Health Insurance Portability and Accountability Act (HIPAA). As a result, many health apps do not have privacy policies.

Also be aware that data is safer when stored in an individual device, as opposed to the cloud. Be sure to read app descriptions thoroughly before downloading, so you know exactly where your data will be stored.

For maximum protection, equip your phone with top notch antivirus and antitheft protection. PSafe Total provides antivirus software that received the highest possible score in AV Testing, and protects your Android against online threats and security breaches 24/7!

PSafe Newsroom

The dfndr blog is an informative channel that presents exclusive content on security and privacy in the mobile and business world, with tips to keep users protected. Populated by a select group of expert reporters, the channel has a partnership with dfndr lab's security team. Together they bring you, first-notice news about attacks, scams, internet vulnerabilities, malware and everything affecting cybersecurity.

Recent Posts

Over 183 Million Emails and Passwords Leaked — Find Out If You Were Affected

A massive credential dump has recently come to light. According to recent reporting, over 183…

56 years ago

Deepfakes: The New Weapon of Digital Scammers

The revolution of artificial intelligence has brought countless benefits to our daily lives — from…

56 years ago

How to identify a spy app on your smartphone

In the United States, the use of spyware apps is a growing concern, affecting mobile…

56 years ago

5 trending digital scams: how AI is making fraud more dangerous

Every day, millions of mobile phone users receive malicious links through SMS, email, or social…

56 years ago

Pix Gains Momentum Abroad: Convenience and Security for Brazilian Travelers

Travel is about new experiences — and making payments without hassle is a crucial part…

56 years ago

Malicious links: what they are and how to protect yourself

Every day, millions of  cell phone users receive malicious links via SMS, email, or social…

56 years ago