Home / Vulnerability Database / Android : HTTP usage
Android
Android : HTTP usage
Classification
OWASP Mobile Top 10 2016
OWASP Top 10 2017
OWASP Top 10 2021
OWASP MASVS
OWASP ASVS
CWE/SANS Top 25 2021
Overview
Using HTTP rather than HTTPS allows “the man in the middle” attack. This can lead to a complete confidentiality loss of the transferred data.
Using HTTPS, which is based on HTTP and SSL / TLS, helps to protect the transferred data against unauthorized access and modification. It is recommended to use HTTPS for all cases of data transfer between the client and the server, in particular, for the login page and all pages that require authentication.
References
MEDIUM
DerScanner Severity Score
Do you want to fix Android : HTTP usage in your application?
See also
Android
Android : Debug mode on
Android
Android : Error handling: generic exception
Android
