A security researcher revealed the flaws in the Moovit app, telling TechCrunch that the three vulnerabilities allowed him to access customer information from all over the world. Attias only tested his access from Israel, but he is certain the exploit chain would allow malicious access in cities worldwide. Additionally, no credit card information was exposed as Moovit and Moovit-Pango do not keep credit card information on file