Tag Archive for: ‘red

As holiday mobile commerce breaks records, retail apps display security red flags


Driven by the pandemic, many consumers rely on mobile apps to buy everything from daily essentials to holiday gifts. However, according to a recent analysis, there are some alarming security concerns among some of the top 50 Android retail mobile apps.

retail apps security

Retail mobile apps are missing basic security functionality

Most of the top 50 retail mobile applications analyzed in September 2020 did not apply sufficient code hardening and runtime application self-protection (RASP) techniques.

These security techniques protect the application against tampering or being copied and distributed by a malicious third party as fake apps. Competitors can also exploit a lack of code hardening to execute business or technical denial of service attacks, making the mobile app difficult for customers to use. Or they can create competitive third-party aggregators that weaken the brand and lead to a loss in revenue.

Nearly all of the applications in the analysis fell short across basic application hardening techniques. These included code hardening techniques such as name obfuscation, which hides identifiers in the application’s code to prevent hackers from reverse engineering and analyzing source code. In addition, encryption techniques such as string, asset/resource, and class encryption prevent malicious actors from gaining insight into sensitive information, assets, or the internal logic of applications.

Application hardening also includes RASP techniques such as root/jailbreak and emulator detection, which shows when an attacker is attempting to bypass application sandboxes and conduct unapproved actions. Nearly a quarter of apps were completely unprotected in these areas. Without adequate protection, retail mobile apps could be tampered with or even copied and turned into “fake apps.” Fake retail apps are especially risky because they can capture sensitive personally identifiable information (PII) from shoppers, such as names, credit card numbers, addresses, and more.

Consumers must be on the lookout for fake mobile apps

With the massive rise in mobile commerce, consumers must be on the lookout for telltale signs of fake mobile apps. There are a few ways to spot these apps in the…

Source…

Western Digital adds “Red Plus” branding for non-SMR hard drives

wd red family

Enlarge / The newer SMR-equipped small drives remain “Red”—while the CMR models will all become “Red Plus.” (credit: Western Digital)

Update 5:08pm ET: Pricing
Ars asked a senior Western Digital executive about pricing on the new Red and Red Plus lines. The initial answer given was “in general, we expect WD Red drives will be priced below WD Red Plus drives.” When asked to comment on how prices of the existing EFRX and EFAX models will shift in order to make Red less expensive than Red Plus, the only response was “I can only comment on the [preceding] at this time,” followed by “WD Red Plus will be available in August time period.”

Original story 7:34am ET
Last night, a Western Digital executive reached out to Ars to let us know of a blog post concerning their controversial Red drives.

The company is taking a new branding initiative to clarify the technology used in its NAS drives—in the near future, “WD Red” will exclusively mean disks using Shingled Magnetic Recording technology, and “WD Red Plus” will mean disks using Conventional Magnetic Recording.

Read 15 remaining paragraphs | Comments

Biz & IT – Ars Technica

Cyber war is US ‘red herring’ to put pressure on China – RT


RT

Cyber war is US 'red herring' to put pressure on China
RT
The US-China cyber battle is just a distraction designed by the Obama Administration to pressure China at a time when the Washington is implementing its “Pivot to Asia” foreign policy initiative, geopolitical analyst William Engdahl told RT. The
War Games: China Tests Cyberwarfare, Hacking CapabilitiesInternational Business Times
What is the 'red line' on Chinese cyber attacks?Fox News
White House: Obama to ask Xi to take cyberattack 'responsibility'UPI.com
Washington Times –The Australian –The West Australian
all 1,633 news articles »

cyber warfare – read more