Beware of MyMail App

Loading

Beware of myMail. 

If you use the my.com myMail app you may be interested in this.

With most email clients for POP and IMAP your phone or pc / tablet your device will connect directly to your mail provider and retrieve or send your messages.

When you use myMail your phone connects to the myMail servers which then login to your mail provider. At first I just thought it was a proxy, for whatever reason they force you to use their proxy was beyond me but then realized it was much more than just a proxy.

I always monitor my server logs on my mail server and kept noticing a login for my ex wife’s email account every ten minutes coming from a myMail ip address.  I didn’t think much of it really because I use myMail and see connections from their “proxy” all the time. I assumed for months that she must be using it also.. Finally we talked about it and she said she doesn’t use myMail. We both checked all our devices she didn’t use it at all and it definitely was not in my myMail app.

I was really boggled and a little worried I thought maybe someone else was checking her email but it was coming from myMail servers so I didn’t really know.  I changed the password on her account and then just like it had been doing for the last year, ten minutes later myMail servers tried checking her email but this time got the failed login response and never checked it again.  There wasn’t one more single failed attempt and that put an end to the myMail servers even attempting to check her email.

I wondered why the hell would they still be checking her email a year after uninstalling myMail . She had used my myMail for a very short time and didn’t like it but yet a year later myMail servers are still checking her mail every ten minutes.

In the end I was kinda disappointed about the privacy and really wondered why this would happen. I didn’t know if they were actually keeping all her email or if it was just her account maybe got stuck in their server or some innocent scenario. I had no clue but it did bother me greatly.

I did a test. I created a brand new email account that has never been used for anything and added it to myMail. Sure enough just like it’s supposed to it logged into my server (through the myMail “proxy”) and checked my email. Then I signed out and removed the account from myMail.

Well that was a few days ago and the myMail servers are still checking my email every ten minutes.  They could be saving millions of people’s email. My problem is they shouldn’t even be accessing your email and there’s no way to know what they do with it once they have it.

Basically if you ever used myMail even for one second and didn’t like it, they have your login credentials . They obviously have your credentials stored on their server and they could have all your emails years after you stopped using it.

It’s too bad because I really do like the app and 99% of people would never realize what’s going on in the background. They just click a button and see their email. Well this is shady and I don’t think you should have to connect through their proxy and sure as hell don’t think there’s any excuse at all to be checking accounts after they’re removed and or uninstalled the app completely.

Related posts

2 thoughts on “Beware of MyMail App

  1. Jack Black

    YOUR ABSOLUTELY CORRECT!!
    They store it and sell your info. Before using myMail I was just going strait to yahoo aol etc. and on my credit report protection I’ve never ever had my email found in the dark web. Well give Neil I read this article I started to search and realized it started when I got myMail app. WOW!My email os on dark web my password also compromised. For 20 years I never had a spam that said your PayPal account needs attention or click here to go to PayPal as you have a suspended account etc. I sent it to PayPal who verified it’s a hack not them. So they have your name and everything off PayPal because you use that email for PayPal. And if your using the same password for PayPal walla!But even if you don’t still they have a lot of info just from reading your email. So I did what you did. I signed up for new email never used it and bam!Spam Mail was being thrown at me left and right. So I opened a PayPal account using this email and yep you guessed it here comes the Nigerians telling me to click on their PayPal because there’s an issue with my account there were suspicious charges etc. But I never used that PayPal account it was just a myMail test. So yes we know nothing of this company you CANT TRUST IT!Using yahoo gmail etc. strait from say your saved pages is much safer much much safer. I never used to get spam never got Nigerian princesses telling me about $20 million dollar deal. Yahoo and the big email services are 1,000 times safer. They have their own firewall anti virus etc. these are big corporations not a small market app like myMail. That’s what I’m doing next.just bookmark your email and it’s just a quick sign in and a extra few seconds of your time to sign in but a lifetime of protection. Unfortunately myMail will still have your email adress. Although they no longer can go into your account to gather info to sell to advertisers and black market because you changed your password they only will have your old emails to work with. Better then nothing.better yet if you had myMail and not many people on the old email get a new 1. How hard is it to change your eBay PayPal Amazon etc. email. It will take time and it’s worth it in the end you just protected yourself in the future. And as far as the old mail you’ll never see it and myMail will eventually realize it’s no longer active. Your not replying or signing in and less emails are coming in. They’ll move on to next victim. This is a good class action suit I wish you would start 1 I’ll work with you. I have definitive proof. All you gotta do is log in to myMail in front of a jury and let them see what goes on. Let them see the spam the log ins by my mail they’ll be caught red handed.

    1. I just noticed your comment, In the next few days I’ll do another Mymail security test and record the results and log captures to see if they are still doing this its really bad.

Leave a Comment