The consultancy firm Emerge Tools analyzed the Intesa Sanpaolo bank’s app. In his code he found two curious files: a recording of a burp and an image of a model. But now a new file has popped up: it could contain a customer’s data.
The Intesa Sanpaolo app included a file named Rutto. It was an MP3 and in fact when you opened it you could listen to it for a few moments the sound of a burp. Or at least, that’s the information published by Emerge Toolsa mobile app consultancy. On their profiles they also publish analyzes of popular apps to show how they work and, of course, make yourself one good advertising as industry experts.
The analysis of the Intesa Sanpaolo app started from its own dimensions. The app weighs approx 700 MBit is not at the levels of other apps such as social networks and obviously photo apps but according to Emerge Tools there is still room for reduce space occupied in the memory of our smartphone. However, others emerged from this research two elements.
In the app there was the file burp.mp3. The file was obviously useless, and it certainly didn’t change the weight of the app but it’s not clear if it was there signature of a developer or simply revenge. A text file also appeared in the app which, once decoded, became the face of a model. In the new update Intesa Sanpaolo has removed both of these files. Not only that. He also took some away a third which however is even stranger.
The Intesa Sanpaolo “rutto.mp3” file: what it is and how it ended up on the bank’s app
The new file that emerged from the cleaning of the Intesa Sanpaolo app
Also according to Emerge Tools, the app reacted immediately with a new update which led to the removal of three files. The first two are the now famous rutto.mp3 and the model file. The third file instead it was blacked out from Emerge Tools who don’t give many other details about X: they only say that the file was heavy 406.8 Kb.
From here the counter-analyses started. According to the software engineer Matteo Contrini the mysterious file would be a MAVa digital bulletin containing all of a customer’s data. Its origin is unclearjust as it is unclear why the file was inside the app.
To understand. If the Emerge Tools analysis were confirmed, this would mean that all the users who had downloaded it on their smartphone were in possession, without their knowledge, of this file. There is no answer at the moment. Among the many who are trying to reconstruct its origins there are two hypotheses. The first, prevalent one, is that of trial payment ended up clumsily inside the app. The second, minority, is that it is a residue of an old data breach.

