The POPS! Rebel application 5.0 for Android, in POPS! Rebel Bluetooth Glucose Monitoring System, sends unencrypted glucose measurements over BLE.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Link | Tags |
---|---|
https://github.com/actuator/rebel/blob/main/CWE-319.md | third party advisory exploit |
https://popsdiabetes.com/about-us/ | product |
https://play.google.com/store/apps/details?id=com.pops.pops | product |