THREAT OPS › Threat News › Vatican’s Click To Pray app exposed personal data from 700,000 users
Vatican’s Click To Pray app exposed personal data from 700,000 users
<p class="wp-block-paragraph">A prayer app launched by Pope Francis in 2019 contained a security flaw that exposed the personal information of hundreds of thousands of users before it was finally fixed this year.</p>
<p class="wp-block-paragraph">The app, Click To Pray, was <a href="https://lamachi.com/portfolio/click-to-pray/" rel="noreferrer noopener nofollow" target="_blank">developed</a> by
MITRE ATT&CK techniques
- VulnerabilitiesT1588.006
Indicators of compromise
- https://lamachi.com/portfolio/click-to-pray/url
- https://bobdahacker.com/blog/click-to-prayurl
- https://web.archive.org/web/20191019115157/https:/fidusinfosec.com/clicktopray-erosary-account-takeover/url
- https://vaticanstate.va/en/news/566-pontifical-commission-of-vatican-city-state-promulgates-general-regulation-on-the-protection-of-personal-data.htmlurl