Twitter Android: a flaw allowed to take control of an account

At the end of December, during the Christmas and New Year celebrations, the social network played Santa Claus in its own way by publishing a major update for its Android application:

" Prior to the fix, a malicious person could gain access to information (such as Private Messages, Protected Tweets and location data) from the Twitter app, through a complicated process involving the insertion of malicious code into storage areas of the application to which access is restricted. If there is no evidence that malicious code has been inserted into the application or that this vulnerability has been exploited, we cannot be entirely sure ".

People who could have been exposed were directly informed via " specific instructions via the Twitter application or by email ". Obviously, it is more than recommended to update if it is not already done.

