{"id":31035,"date":"2015-09-06T12:53:08","date_gmt":"2015-09-06T19:53:08","guid":{"rendered":"https:\/\/www.casino.org\/news\/?p=31035"},"modified":"2015-09-05T12:54:49","modified_gmt":"2015-09-05T19:54:49","slug":"gambling-apps-compromise-corporate-security-says-veracode-study","status":"publish","type":"post","link":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/","title":{"rendered":"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0"},"content":{"rendered":"
\"Gambling
Social casino apps are compromising corporate mobile environments and exposing companies to increased risk of cyberattacks, according to Veracode. (Image: computerworld.com)<\/figcaption><\/figure>\n

The gambling apps installed by a company\u2019s employees could be putting its security systems at risk, according to a new report by cloud-based app security firm, Veracode.<\/p>\n

After scanning thousands of such apps installed on mobile devices used for work, the company found that the \u201caverage global enterprise has multiple apps installed on its mobile environment,\u201d with some environments found to contain \u201cas many as 35.\u201d<\/p>\n

Veracode tested 11 different \u201cgambling apps,\u201d all of which were, in fact, free-to-play social casino<\/a> apps, as opposed to real-money online casino apps, although, unhelpfully, the study itself does not highlight the distinction between the two.<\/p>\n

However, the risks uncovered certainly highlight the need for regulation of the social casino industry and a similar study of the regulated real-money online gambling apps, compared with unregulated, would certainly be a welcome follow up research project.<\/p>\n

Malicious Software<\/b><\/h2>\n

\u201cMany of these apps contain adware as well as critical vulnerabilities, such as weak encryption, enabling cyberattackers to gain access to contacts, emails, call history, and phone locations as well as to record phone conversations,\u201d warned Veracode.<\/p>\n

One \u201cpopular casino app\u201d\u00a0is able to check if a device is rooted or jailbroken; ie, whether an iPhone, for example, has been altered to circumvent the restrictions imposed by its own operating system.<\/p>\n

This, says Veracode, means the app has the ability to disable anti-malware software on the device, as well as view cached information, like passwords and user identity details, and this renders the device vulnerable to hackers.<\/p>\n

Veracode also found that a popular slots app uses inadequate, unencrypted HTTP protocol, and had the potential to install malicious software.<\/p>\n

Meanwhile, it said, \u201cfree apps typically incorporate advertising software development kits (SDKs) that monetize by sending user data such as identity and location to advertising servers located around the world.\u201d<\/strong><\/p><\/blockquote>\n

Corporate Data at Risk<\/b><\/h2>\n

No one app is specifically named and shamed in the study; instead, Veracode opted for a guilt-by-association approach: Big Fish Casino, Gold Fish Casino Slots, GSN Casino, Heart of Vegas, Hit it Rich Casino Slots, Jackpot Party Casino, Slot Machines House of Fun, Slots Pharaohs Way, Texas Poker, Wonderful Wizard of Oz and Zynga<\/a> Poker, were all analyzed, the company said.<\/p>\n

And while Veracode is not accusing the creators of these specific apps of attempting to destabilize corporate systems, it urges companies to take caution at a time when \u201ccybercriminals and nation-states are \u2026 constantly looking to exploit insecure apps in order to steal corporate intellectual property, track high-profile individuals and\/or dissidents, and insert aggressive adware for monetary gain.\u201d<\/p>\n

\u201cLike it or not, corporate users are installing risky apps on their mobile devices, thereby increasing the attack surface and putting corporate data at risk as well as compromising the security of high-profile employees such as executives,\u201d said Theodora Titonis, VP of mobile security at Veracode.<\/p>\n","protected":false},"excerpt":{"rendered":"

The gambling apps installed by a company\u2019s employees could be putting its security systems at risk, according to a new report by cloud-based app security firm, Veracode. After scanning thousands of such apps installed on mobile devices used for work, the company found that the \u201caverage global enterprise has multiple apps installed on its mobile […]<\/p>\n","protected":false},"author":42,"featured_media":31036,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[19,20],"tags":[],"acf":[],"yoast_head":"\n\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0<\/title>\n<meta name=\"description\" content=\"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.\" \/>\n<meta name=\"robots\" content=\"noindex, follow\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0\" \/>\n<meta property=\"og:description\" content=\"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/\" \/>\n<meta property=\"og:site_name\" content=\"Casino.org\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Casino.OrgNews\" \/>\n<meta property=\"article:published_time\" content=\"2015-09-06T19:53:08+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2015-09-05T19:54:49+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg\" \/>\n\t<meta property=\"og:image:width\" content=\"300\" \/>\n\t<meta property=\"og:image:height\" content=\"225\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Casino.org Staff Writer\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Casino_Org\" \/>\n<meta name=\"twitter:site\" content=\"@Casino_Org\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Casino.org Staff Writer\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/\",\"url\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/\",\"name\":\"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0\",\"isPartOf\":{\"@id\":\"https:\/\/www.casino.org\/news\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg\",\"datePublished\":\"2015-09-06T19:53:08+00:00\",\"dateModified\":\"2015-09-05T19:54:49+00:00\",\"author\":{\"@id\":\"https:\/\/www.casino.org\/news\/#\/schema\/person\/8c48bf89dc86da77b4d856c7b3b78d77\"},\"description\":\"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage\",\"url\":\"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg\",\"contentUrl\":\"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg\",\"width\":300,\"height\":225,\"caption\":\"Social casino apps are compromising corporate mobile environments and exposing companies to increased risk of cyberattacks, according to Veracode. (Image: computerworld.com)\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"News\",\"item\":\"https:\/\/www.casino.org\/news\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"iGaming\",\"item\":\"https:\/\/www.casino.org\/news\/internet-gaming\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.casino.org\/news\/#website\",\"url\":\"https:\/\/www.casino.org\/news\/\",\"name\":\"Casino.org\",\"description\":\"Latest Casino and Gaming News\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.casino.org\/news\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.casino.org\/news\/#\/schema\/person\/8c48bf89dc86da77b4d856c7b3b78d77\",\"name\":\"Casino.org Staff Writer\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.casino.org\/news\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/0853bd574da5b217483afb1fbbee33a5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/0853bd574da5b217483afb1fbbee33a5?s=96&d=mm&r=g\",\"caption\":\"Casino.org Staff Writer\"},\"url\":\"https:\/\/www.casino.org\/news\/author\/corg-staff-writer\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0","description":"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.","robots":{"index":"noindex","follow":"follow"},"og_locale":"en_US","og_type":"article","og_title":"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0","og_description":"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.","og_url":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/","og_site_name":"Casino.org","article_publisher":"https:\/\/www.facebook.com\/Casino.OrgNews","article_published_time":"2015-09-06T19:53:08+00:00","article_modified_time":"2015-09-05T19:54:49+00:00","og_image":[{"width":300,"height":225,"url":"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg","type":"image\/jpeg"}],"author":"Casino.org Staff Writer","twitter_card":"summary_large_image","twitter_creator":"@Casino_Org","twitter_site":"@Casino_Org","twitter_misc":{"Written by":"Casino.org Staff Writer","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/","url":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/","name":"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0","isPartOf":{"@id":"https:\/\/www.casino.org\/news\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage"},"image":{"@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage"},"thumbnailUrl":"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg","datePublished":"2015-09-06T19:53:08+00:00","dateModified":"2015-09-05T19:54:49+00:00","author":{"@id":"https:\/\/www.casino.org\/news\/#\/schema\/person\/8c48bf89dc86da77b4d856c7b3b78d77"},"description":"Cyber-security company Veracode finds prevalent critical vulnerabilities in social casino apps.","breadcrumb":{"@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#primaryimage","url":"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg","contentUrl":"https:\/\/www.casino.org\/news\/wp-content\/uploads\/2015\/09\/android_primary2-100586098-carousel.idge_.jpeg","width":300,"height":225,"caption":"Social casino apps are compromising corporate mobile environments and exposing companies to increased risk of cyberattacks, according to Veracode. (Image: computerworld.com)"},{"@type":"BreadcrumbList","@id":"https:\/\/www.casino.org\/news\/gambling-apps-compromise-corporate-security-says-veracode-study\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"News","item":"https:\/\/www.casino.org\/news\/"},{"@type":"ListItem","position":2,"name":"iGaming","item":"https:\/\/www.casino.org\/news\/internet-gaming\/"},{"@type":"ListItem","position":3,"name":"\u201cGambling Apps\u201d Compromise Corporate Security, Says Veracode Study\u00a0"}]},{"@type":"WebSite","@id":"https:\/\/www.casino.org\/news\/#website","url":"https:\/\/www.casino.org\/news\/","name":"Casino.org","description":"Latest Casino and Gaming News","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.casino.org\/news\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.casino.org\/news\/#\/schema\/person\/8c48bf89dc86da77b4d856c7b3b78d77","name":"Casino.org Staff Writer","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.casino.org\/news\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/0853bd574da5b217483afb1fbbee33a5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/0853bd574da5b217483afb1fbbee33a5?s=96&d=mm&r=g","caption":"Casino.org Staff Writer"},"url":"https:\/\/www.casino.org\/news\/author\/corg-staff-writer\/"}]}},"_links":{"self":[{"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/posts\/31035"}],"collection":[{"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/users\/42"}],"replies":[{"embeddable":true,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/comments?post=31035"}],"version-history":[{"count":0,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/posts\/31035\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/media\/31036"}],"wp:attachment":[{"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/media?parent=31035"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/categories?post=31035"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.casino.org\/news\/wp-json\/wp\/v2\/tags?post=31035"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}