#kooapp

#Thread
These guys don't know how to create an application

1. No Proper Validation (It allows any 10 digit number)
2. No User Experience (Icons are clearly aligned)
3. Misrepresentation of UI (Why there is edit button near mobile number which is not working)
(1/n)
Just 5 mins of script is enough to manipulate the application
As you can see the installationId you can easily understand
(2/n)
This example code is fine enough to crash application when attacker make it more sophisticated
(3/n)
They proudly they are aatmanirbhar app and only 10% in India knows english

but why their privacy policy is only in English?

#kooapp

(4/n)
Because as per their privacy policy your account is their asset

I repeat a customer account is their asset and they can sell their assets

See Business Transfers

#kooapp

https://www.kooapp.com/privacy 
You can follow @senthilnathang.
Tip: mention @twtextapp on a Twitter thread with the keyword “unroll” to get a link to it.

Latest Threads Unrolled:

By continuing to use the site, you are consenting to the use of cookies as explained in our Cookie Policy to improve your experience.