WRITE UP – finAPI (Open Banking API) oauth credentials exposed in plain text in Android app
Introduction: Hi everyone It’s been a while since my last post but I’m back, I want to tell you a short story about a REDACTED bug bounty program and why you can always check the basic payloads because you will be surprised that sometimes will work. (Never save creds in plain text inside of android […]