#appsecurity — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #appsecurity, aggregated by home.social.
-
FYI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #AndroidApps #MobileAdvertising #AdFraud #PrivacyProtection #AppSecurity
-
FYI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #AndroidApps #MobileAdvertising #AdFraud #PrivacyProtection #AppSecurity
-
FYI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #AndroidApps #MobileAdvertising #AdFraud #PrivacyProtection #AppSecurity
-
FYI: Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
FYI: Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
FYI: Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
ICYMI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #Android #MobileAds #AppSecurity #AdFraud #CyberSecurity
-
ICYMI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #Android #MobileAds #AppSecurity #AdFraud #CyberSecurity
-
ICYMI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #Android #MobileAds #AppSecurity #AdFraud #CyberSecurity
-
ICYMI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #Android #MobileAds #AppSecurity #AdFraud #CyberSecurity
-
ICYMI: DoubleVerify finds dozens of Android apps a month showing ads after calls: Apps abuse Android's Display over other apps permission to fire ads when a call ends, then vanish from the recents list. Can pre-install scans catch them all? https://ppc.land/doubleverify-finds-dozens-of-android-apps-a-month-showing-ads-after-calls/ #Android #MobileAds #AppSecurity #AdFraud #CyberSecurity
-
Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
Samsung bans proxy SDKs as a quarter of Tizen apps route strangers' traffic: Mnemonic found Bright Data code inside an Editor's Choice Pac-Man game, and 42% of LG apps carry similar SDKs. CTV buyers now face a new invalid-traffic vector. https://ppc.land/samsung-bans-proxy-sdks-as-a-quarter-of-tizen-apps-route-strangers-traffic/ #Samsung #Tizen #ProxySDKs #AppSecurity #InvalidTraffic
-
@percepticon @clemensg Die offizielle Gebets-App des Papstes (Click to Pray) soll monatelang die Daten von rund 720.000 Nutzer:innen preisgegeben haben: Namen, E-Mail-Adressen und Herkunftsland waren laut Sicherheitsforscher über eine simple Schwachstelle (IDOR) abrufbar. Besonders brisant: Der Fehler wurde bereits Anfang Januar gemeldet – eine Reaktion blieb offenbar aus, und die Lücke war bei Veröffentlichung des Berichts noch offen. Bereits 2019 war die App wegen gravierender Sicherheitsmängel aufgefallen. Sensible Anwendungen brauchen Sicherheitsprüfungen – nicht nur gute Absichten.
#Datenschutz #ITSecurity #Cybersecurity #Papst #ClickToPray #AppSecurity #IDOR
-
@percepticon @clemensg Die offizielle Gebets-App des Papstes (Click to Pray) soll monatelang die Daten von rund 720.000 Nutzer:innen preisgegeben haben: Namen, E-Mail-Adressen und Herkunftsland waren laut Sicherheitsforscher über eine simple Schwachstelle (IDOR) abrufbar. Besonders brisant: Der Fehler wurde bereits Anfang Januar gemeldet – eine Reaktion blieb offenbar aus, und die Lücke war bei Veröffentlichung des Berichts noch offen. Bereits 2019 war die App wegen gravierender Sicherheitsmängel aufgefallen. Sensible Anwendungen brauchen Sicherheitsprüfungen – nicht nur gute Absichten.
#Datenschutz #ITSecurity #Cybersecurity #Papst #ClickToPray #AppSecurity #IDOR
-
@percepticon @clemensg Die offizielle Gebets-App des Papstes (Click to Pray) soll monatelang die Daten von rund 720.000 Nutzer:innen preisgegeben haben: Namen, E-Mail-Adressen und Herkunftsland waren laut Sicherheitsforscher über eine simple Schwachstelle (IDOR) abrufbar. Besonders brisant: Der Fehler wurde bereits Anfang Januar gemeldet – eine Reaktion blieb offenbar aus, und die Lücke war bei Veröffentlichung des Berichts noch offen. Bereits 2019 war die App wegen gravierender Sicherheitsmängel aufgefallen. Sensible Anwendungen brauchen Sicherheitsprüfungen – nicht nur gute Absichten.
#Datenschutz #ITSecurity #Cybersecurity #Papst #ClickToPray #AppSecurity #IDOR
-
@percepticon @clemensg Die offizielle Gebets-App des Papstes (Click to Pray) soll monatelang die Daten von rund 720.000 Nutzer:innen preisgegeben haben: Namen, E-Mail-Adressen und Herkunftsland waren laut Sicherheitsforscher über eine simple Schwachstelle (IDOR) abrufbar. Besonders brisant: Der Fehler wurde bereits Anfang Januar gemeldet – eine Reaktion blieb offenbar aus, und die Lücke war bei Veröffentlichung des Berichts noch offen. Bereits 2019 war die App wegen gravierender Sicherheitsmängel aufgefallen. Sensible Anwendungen brauchen Sicherheitsprüfungen – nicht nur gute Absichten.
#Datenschutz #ITSecurity #Cybersecurity #Papst #ClickToPray #AppSecurity #IDOR
-
@percepticon @clemensg Die offizielle Gebets-App des Papstes (Click to Pray) soll monatelang die Daten von rund 720.000 Nutzer:innen preisgegeben haben: Namen, E-Mail-Adressen und Herkunftsland waren laut Sicherheitsforscher über eine simple Schwachstelle (IDOR) abrufbar. Besonders brisant: Der Fehler wurde bereits Anfang Januar gemeldet – eine Reaktion blieb offenbar aus, und die Lücke war bei Veröffentlichung des Berichts noch offen. Bereits 2019 war die App wegen gravierender Sicherheitsmängel aufgefallen. Sensible Anwendungen brauchen Sicherheitsprüfungen – nicht nur gute Absichten.
#Datenschutz #ITSecurity #Cybersecurity #Papst #ClickToPray #AppSecurity #IDOR
-
Loupe, an open-source iOS/iPadOS app by Mysk, exposes real device fingerprinting signals—passive, permissioned, and advanced—so users can see what apps can quietly read. Nothing leaves the device unless exported. Explore the code: https://github.com/mysk-research/loupe 🔍📱 #Privacy #iOS #AppSecurity
-
Loupe, an open-source iOS/iPadOS app by Mysk, exposes real device fingerprinting signals—passive, permissioned, and advanced—so users can see what apps can quietly read. Nothing leaves the device unless exported. Explore the code: https://github.com/mysk-research/loupe 🔍📱 #Privacy #iOS #AppSecurity
-
Loupe, an open-source iOS/iPadOS app by Mysk, exposes real device fingerprinting signals—passive, permissioned, and advanced—so users can see what apps can quietly read. Nothing leaves the device unless exported. Explore the code: https://github.com/mysk-research/loupe 🔍📱 #Privacy #iOS #AppSecurity
-
Loupe, an open-source iOS/iPadOS app by Mysk, exposes real device fingerprinting signals—passive, permissioned, and advanced—so users can see what apps can quietly read. Nothing leaves the device unless exported. Explore the code: https://github.com/mysk-research/loupe 🔍📱 #Privacy #iOS #AppSecurity
-
Loupe, an open-source iOS/iPadOS app by Mysk, exposes real device fingerprinting signals—passive, permissioned, and advanced—so users can see what apps can quietly read. Nothing leaves the device unless exported. Explore the code: https://github.com/mysk-research/loupe 🔍📱 #Privacy #iOS #AppSecurity
-
See you all tomorrow at our meetup!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime.
Thank you to 7AI for hosting and sponsoring us this month!
-
See you all tomorrow at our meetup!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime.
Thank you to 7AI for hosting and sponsoring us this month!
-
See you all tomorrow at our meetup!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime.
Thank you to 7AI for hosting and sponsoring us this month!
-
See you all tomorrow at our meetup!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime.
Thank you to 7AI for hosting and sponsoring us this month!
-
See you all tomorrow at our meetup!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime.
Thank you to 7AI for hosting and sponsoring us this month!
-
Last chance to RSVP for our May meetup thanks to 7AI!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Last chance to RSVP for our May meetup thanks to 7AI!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Last chance to RSVP for our May meetup thanks to 7AI!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Last chance to RSVP for our May meetup thanks to 7AI!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Last chance to RSVP for our May meetup thanks to 7AI!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers shows us how the internet enables organized Cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Thank you to 7AI for making our May meetup possible!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us How the internet enables organized cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Thank you to 7AI for making our May meetup possible!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us How the internet enables organized cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Thank you to 7AI for making our May meetup possible!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us How the internet enables organized cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Thank you to 7AI for making our May meetup possible!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us How the internet enables organized cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Thank you to 7AI for making our May meetup possible!
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us How the internet enables organized cyber-crime
RSVP at - https://buff.ly/ydemfjY
-
Our May meetup is full but you might just get lucky and get a spot in. Make sure to RSVP to be on the waitlist.
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us how the internet enabled organized crime.
Thank you to 7AI for hosting and sponsoring us this month!
RSVP at - https://buff.ly/ydemfjY
-
Our May meetup is full but you might just get lucky and get a spot in. Make sure to RSVP to be on the waitlist.
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us how the internet enabled organized crime.
Thank you to 7AI for hosting and sponsoring us this month!
RSVP at - https://buff.ly/ydemfjY
-
Our May meetup is full but you might just get lucky and get a spot in. Make sure to RSVP to be on the waitlist.
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us how the internet enabled organized crime.
Thank you to 7AI for hosting and sponsoring us this month!
RSVP at - https://buff.ly/ydemfjY
-
Our May meetup is full but you might just get lucky and get a spot in. Make sure to RSVP to be on the waitlist.
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us how the internet enabled organized crime.
Thank you to 7AI for hosting and sponsoring us this month!
RSVP at - https://buff.ly/ydemfjY
-
Our May meetup is full but you might just get lucky and get a spot in. Make sure to RSVP to be on the waitlist.
This month's meetup we have Anshumaan Mishra who will talk about securing FastAPI Email WebApp while Will Lefevers will show us how the internet enabled organized crime.
Thank you to 7AI for hosting and sponsoring us this month!
RSVP at - https://buff.ly/ydemfjY
-
Struggling with slow and insecure mobile apps?
Discover our latest blog to know how modernizing legacy systems can significantly improve performance, strengthen security, and future-proof your applications.#MobileAppDevelopment #AppSecurity #LegacySystemModernization #DigitalTransformation #TechUpgrade #AppPerformance #ModernApps
-
OpenAI Disrupts macOS App Signing Process After Supply Chain Breach
OpenAI recently took swift action to protect its users by revoking a macOS app certificate after discovering a malicious library had been downloaded through a GitHub Actions workflow used to sign its applications. This move highlights the vulnerability of even trusted software signing processes to supply chain breaches, and the…
#SupplyChain #Macos #AppSecurity #CertificateRevocation #GithubActions
-
🔐 Android is rolling out Developer Verification for all devs
✔️ Verified identities required
✔️ Safer app ecosystem
✔️ Still supports sideloading (with warnings)A big move toward trust without losing openness 👇
https://android-developers.googleblog.com/2026/03/android-developer-verification-rolling-out-to-all-developers.html -
🔐 Android is rolling out Developer Verification for all devs
✔️ Verified identities required
✔️ Safer app ecosystem
✔️ Still supports sideloading (with warnings)A big move toward trust without losing openness 👇
https://android-developers.googleblog.com/2026/03/android-developer-verification-rolling-out-to-all-developers.html -
🤔 Oh, look! The #hackers have beaten the White House to the punch by reverse engineering their "super secure" app, revealing shocking, yet unsurprising, details: cookie tricks, GPS stalking, and #GitHub shenanigans. 🙄 And all wrapped up with a WordPress backend – because who needs national security when you have a blog to run? 😂
https://thereallo.dev/blog/decompiling-the-white-house-app #WhiteHouse #cybersecurity #reverseengineering #appsecurity #HackerNews #ngated -
🤔 Oh, look! The #hackers have beaten the White House to the punch by reverse engineering their "super secure" app, revealing shocking, yet unsurprising, details: cookie tricks, GPS stalking, and #GitHub shenanigans. 🙄 And all wrapped up with a WordPress backend – because who needs national security when you have a blog to run? 😂
https://thereallo.dev/blog/decompiling-the-white-house-app #WhiteHouse #cybersecurity #reverseengineering #appsecurity #HackerNews #ngated -
🤔 Oh, look! The #hackers have beaten the White House to the punch by reverse engineering their "super secure" app, revealing shocking, yet unsurprising, details: cookie tricks, GPS stalking, and #GitHub shenanigans. 🙄 And all wrapped up with a WordPress backend – because who needs national security when you have a blog to run? 😂
https://thereallo.dev/blog/decompiling-the-white-house-app #WhiteHouse #cybersecurity #reverseengineering #appsecurity #HackerNews #ngated -
🤔 Oh, look! The #hackers have beaten the White House to the punch by reverse engineering their "super secure" app, revealing shocking, yet unsurprising, details: cookie tricks, GPS stalking, and #GitHub shenanigans. 🙄 And all wrapped up with a WordPress backend – because who needs national security when you have a blog to run? 😂
https://thereallo.dev/blog/decompiling-the-white-house-app #WhiteHouse #cybersecurity #reverseengineering #appsecurity #HackerNews #ngated -
🤔 Oh, look! The #hackers have beaten the White House to the punch by reverse engineering their "super secure" app, revealing shocking, yet unsurprising, details: cookie tricks, GPS stalking, and #GitHub shenanigans. 🙄 And all wrapped up with a WordPress backend – because who needs national security when you have a blog to run? 😂
https://thereallo.dev/blog/decompiling-the-white-house-app #WhiteHouse #cybersecurity #reverseengineering #appsecurity #HackerNews #ngated -
What does 'we protect your data' actually mean?
Most companies: a policy.
We literally cannot read yours: that's math, not a promise.Our engineers see encrypted blobs. Nothing more. AES-256-GCM, key never leaves your device.
https://wiggwigg.ca/en/security/application-security/
#ZeroKnowledge #Privacy #InfoSec #Fediverse #CanadianTech #PrivacyCanada #IndieWeb #PasswordManager #Encryption #AppSecurity
1/3
-
What does 'we protect your data' actually mean?
Most companies: a policy.
We literally cannot read yours: that's math, not a promise.Our engineers see encrypted blobs. Nothing more. AES-256-GCM, key never leaves your device.
https://wiggwigg.ca/en/security/application-security/
#ZeroKnowledge #Privacy #InfoSec #Fediverse #CanadianTech #PrivacyCanada #IndieWeb #PasswordManager #Encryption #AppSecurity
1/3
-
What does 'we protect your data' actually mean?
Most companies: a policy.
We literally cannot read yours: that's math, not a promise.Our engineers see encrypted blobs. Nothing more. AES-256-GCM, key never leaves your device.
https://wiggwigg.ca/en/security/application-security/
#ZeroKnowledge #Privacy #InfoSec #Fediverse #CanadianTech #PrivacyCanada #IndieWeb #PasswordManager #Encryption #AppSecurity
1/3
-
Android is rolling out a new security system 🔒 for sideloading that includes developer verification, mandatory wait times, and device restarts. The goal? Disrupting scam tactics while keeping the platform open. Here's how the new flow actually works and what it means for users wanting to install apps outside official stores 📱
Read the article to learn more: https://true-tech.net/android-sideloading-security-update-2026/
#Android #Cybersecurity #Sideloading #AppSecurity #MobileSecurity
https://true-tech.net/android-sideloading-security-update-2026/
-
Android is rolling out a new security system 🔒 for sideloading that includes developer verification, mandatory wait times, and device restarts. The goal? Disrupting scam tactics while keeping the platform open. Here's how the new flow actually works and what it means for users wanting to install apps outside official stores 📱
Read the article to learn more: https://true-tech.net/android-sideloading-security-update-2026/
#Android #Cybersecurity #Sideloading #AppSecurity #MobileSecurity
https://true-tech.net/android-sideloading-security-update-2026/
-
Android is rolling out a new security system 🔒 for sideloading that includes developer verification, mandatory wait times, and device restarts. The goal? Disrupting scam tactics while keeping the platform open. Here's how the new flow actually works and what it means for users wanting to install apps outside official stores 📱
Read the article to learn more: https://true-tech.net/android-sideloading-security-update-2026/
#Android #Cybersecurity #Sideloading #AppSecurity #MobileSecurity
https://true-tech.net/android-sideloading-security-update-2026/
-
Android is rolling out a new security system 🔒 for sideloading that includes developer verification, mandatory wait times, and device restarts. The goal? Disrupting scam tactics while keeping the platform open. Here's how the new flow actually works and what it means for users wanting to install apps outside official stores 📱
Read the article to learn more: https://true-tech.net/android-sideloading-security-update-2026/
#Android #Cybersecurity #Sideloading #AppSecurity #MobileSecurity
https://true-tech.net/android-sideloading-security-update-2026/