The San Francisco Chronicle reports:
A recently released app, billed by Fox News as “Yelp for conservatives,” has been removed from app stores after security flaws that left users’ personal information vulnerable were made public.
“63red Safe” is meant to be a review site of businesses and restaurants from the perspective of conservatives, “helping insure [sic] you’re safe when you shop and eat!” read the app’s description in the Google Play store, prior to its removal.
The app is touted by 63red Safe founder and lifelong Republican Scott Wallace, who likened the app to a political “fire inspector,” in an interview with the Daily Beast.
Hello conservative friends,
Last time we discussed, I got access to the @DonaldDaters database in less than 5 minutes. Follow me in this thread and I will show you how I got access to the @63red database and obtained all the details of their users even quicker
⬇️⬇️⬇️ https://t.co/xZtdkrJObO
— Elliot Alderson (@fs0c131y) March 12, 2019
This app uses a language called @reactnative. Get the original source of the app is super easy. Because he is nice, the developer of the hardcoded his credentials in the source code… twice… pic.twitter.com/DWwAvagSs5
— Elliot Alderson (@fs0c131y) March 12, 2019
TL;DR: No lost passwords, no breach of database, no data changed, minor problem fixed. We’re angry by the attempt, FBI notified.https://t.co/v59DExCI0F
— 63red (@63red) March 12, 2019
You guys called the FBI on a security researcher who browsed your DB bc you all used a sketchball API and didn’t do your homework well enough to know the dev’s password was exposed? He was even nice enough to not change any of your entries… What’s the matter with you all?
— H E X A (@hexadecim8) March 12, 2019