Asian Spectator

Times Advertising

Aspire Secures Securities and Asset Management Licences from Hong Kong’s Securities and Futures Commission

Regulatory milestone paves the way for launch of Aspire Yield, enabling businesses to earn attractive returns on idle cash balancesHONG KONG SAR - Media OutReach Newswire - 15 April 2026 - Aspire, th...

Guangzhou to offer wisdom for aviation and globalization as Wo...

GUANGZHOU, China, Sept. 11, 2018 /Xinhua-AsiaNet/-- Guangzhou, a pioneer of reform and opening up in southern China that boasts a unique flying culture, is about to host, in five days, a glo...

Glass Egg - a Virtuos Studio announces expansion into Dalat, Vietnam

Virtuos is set to become the largest game development company in Vietnam as Glass Egg aims to grow its Dalat team to 50 with local talent by the end of 2023, building upon its success in HCM...

IKEUCHI Launches New Fogging Device for Quick, Easy and Effect...

OSAKA, Japan, Jan. 12, 2021 /Kyodo JBN-AsiaNet/ -- H. IKEUCHI & CO., LTD., a leading manufacturer of industrial and commercial spray nozzles, headquartered in Japan, has launched full-sc...

Introducing CARNEGIE HALL+

NEW YORK, Dec. 10, 2021 /PRNewswire-AsiaNet/ -- - CARNEGIE HALL LAUNCHES NEW PREMIUM SUBSCRIPTION VIDEO ON-DEMAND CHANNEL PROVIDING VIEWERS WITH INSTANT ACCESS TO UNFORGETTABLE PERFORMANCES ...

EY honors Andrew Forrest with 2018 EY Entrepreneur Of The Year...

MONACO, June 15, 2018 /PRNewswire-AsiaNet/ -- Andrew Forrest, Chairman of Minderoo Foundation, has been honored by the EY Entrepreneur Of The Year(TM) (EOY) Global Alumni Council with the 20...

Sitecore Named a Strong Performer in B2C Content Marketing Pla...

SAN FRANCISCO, May 7, 2019 /PRNewswire-AsiaNet/ -- -- Sitecore received highest possible score in the "market differentiation strategy" criterionSitecore(R) ( https://c212.net/c/link/?t=0&am...

Bupa Hong Kong Champions Inclusivity as Official Healthcare Partner for the China Hong Kong Paralympic Committee

HONG KONG SAR - Media OutReach Newswire - 28 August 2024 - Championing health, equality, and inclusion, Bupa Hong Kong is proud to announce its role as the Official Healthcare Partner for t...

InEight's focus on standardization and benchmarking in softwar...

SCOTTSDALE, Ariz., Sept. 21, 2022 /PRNewswire-AsiaNet/ -- -- Latest developments to InEight's construction project management platform introduce new design management and benchmarking practi...

Serious Android Flaw Identified, i-Sprint found that most of the popular apps in APAC are vulnerable

YESsafe AppProtect+ protects Android Apps against StrandHogg and other attacks

SINGAPORE - Media OutReach[1] - 3 December 2019 -StrandHogg, a serious Android flaw, has been reported by BBC News and i-Sprint has found that most of the popular Android Apps in APAC are also vulnerable. StrandHogg can be very damaging and costly to Android users.

Serious Android Flaw Identified, i-Sprint found that most of the popular apps in APAC are vulnerable

In recent news reported by BBC News[2], a Norwegian app security company, Promon, has identified a serious Android following an attack on several customer bank accounts and detected a vulnerability in the Android system.  Promon named it as StrandHogg that allows real-life malware to pose as legitimate apps, with users unaware they are being targeted.  Promon scanned top 500 popular mobile apps in the world, and they are vulnerable to StrandHogg. 

StrandHogg is unique because it can be exploited with or without root access to any Android devices, and it affects all versions of Android, including Android 10.  By taking advantage of a weakness in the multitasking system of Android to enact powerful attacks, this allows malicious apps to masquerade as any other app on the device. This exploit is based on an Android control setting called 'taskAffinity' which allows any app - including malicious ones - to assume any identity in the multitasking system they desire freely. 

 

i-Sprint[3] has also done our own investigation by sampling 100 popular Android Apps across APAC and we found that all of them are susceptible to this vulnerability.  The consequences of exploiting this vulnerability by a malware include steal of usernames and passwords, drain bank accounts, track victim's movements and location, steal private SMS messages and photos, access victim's contact list and phone logs, spy through a phone's camera and microphone.

 

i-Sprint product, YESsafe AppProtect+[4], is a Runtime Application Self-Protection (RASP) solution that helps companies to protect their iOS and Android apps by blocking attacks in real-time.  AppProtect+ proactively protects mobile apps against various risks and attacks.  AppProtect+ can prevent passive attacks (like reverse engineering, repackaging and source code modification), and respond by taking necessary measures if real-time attacks are detected during app running. Mobile apps protected by the solution can also run securely even on a highly infected mobile device

 

Albert Ching, CTO of i-Sprint, said "Our latest version has introduced a new feature for the protection of task hijacking as reported in StrandHogg.  Therefore, our existing customers are equipped with the necessary protection tool even before the announcement of the StrandHogg vulnerability.  We will continue to deliver new security features to help our customers to secure and protect their mobile apps against various attacks."

 

Dutch Ng, CEO of i-Sprint said, "As people are spending more time using their mobile devices to browse content, online shopping, transaction, etc., cyberattack cases targeting on smartphone devices are also increasing. Companies need to be more alert and diligent in ensuring their apps will not be the next victim of such vulnerability."

 

i-Sprint is currently providing a free assessment to organizations who want to find out whether their app is susceptible to StrandHogg vulnerability. For interested companies, please visit www.i-sprint.com/solutions/strandhogg[5] to participate in the free assessment.

Be proactive, be safe, secure your company app with YESsafe AppProtect+.

For enquiry, please email i-Sprint at enquiry@i-sprint.com[6].

References

  1. ^ Media OutReach (www.media-outreach.com)
  2. ^ BBC News (www.bbc.com)
  3. ^ i-Sprint (www.i-sprint.com)
  4. ^ YESsafe AppProtect+ (www.i-sprint.com)
  5. ^ www.i-sprint.com/solutions/strandhogg (www.i-sprint.com)
  6. ^ enquiry@i-sprint.com (www.media-outreach.com)

Authors: i-Sprint Innovations

Read more http://www.media-outreach.com/release.php/View/22889#Contact

Magazine

Jerat algoritma: AI perburuk beban ganda ojol dan kurir perempuan di Indonesia

● Sistem AI mengeksploitasi tenaga kerja informal melalui ekstraksi data dan pengalihan risiko kepada mereka.● Algoritma merugikan perempuan karena mengabaikan realitas beban domestik, isu...

Narasi “kebangkitan batu bara” bermunculan efek perang Iran, tapi data menunjukkan fakta sebaliknya

● Di tengah krisis energi global, data menunjukkan penggunaan batu bara dan gas justru turun, sementara energi terbarukan meningkat.● Tren penurunan ekspor baru bara di Indonesia sudah ter...

Krisis ojol: Promo selalu mencekik pengemudi, jam-jam padat malah bikin rugi

● Masyarakat makin sering mengeluhkan langkanya ojol di waktu-waktu tertentu.● Padahal seharusnya upah yang didapat para ojol meningkat jika melihat meroketnya tarif yang dibebankan kepada...