HackDig : Dig high-quality web security articles

Coffee app in hot water for constant tracking of user location

A mobile app violated Canada’s privacy laws via some pretty significant overreach with its tracking of device owners. The violation will apparently not bring the app owners, Tim Hortons, any form of punishment. However, the fallout from this incident may hopefully serve as a warning to others with an app soon to launch. That’s one theory, anyway.
Publish At:2022-06-08 09:02 | Read:982 | Comments:0 | Tags:Privacy collection data EULA geofencing Mobile privacy priva

Apps removed from Google Play for harvesting user data

p>Dozens of apps were removed from the Google Play Store after they were found to be harvesting the data of device owners. The code in question—a software development kit (SDK)—was used inside apps which were downloaded over 10 million times. What happened? A wide range of Android apps were found to have this particular SDK lurking. There’s no obvious
Publish At:2022-04-12 08:52 | Read:2065 | Comments:0 | Tags:Privacy Android collection data email Mobile phone number Pl

The MITRE ATT&CK Framework: Collection

The Collection tactic outlines techniques an attacker will undertake in order to find and gather the data they need to meet their actions on objectives.I see most of these techniques as being useful for describing what a piece of malware or threat actor is up to rather than looking to them for guidance on how to mitigate and detect their actions.Mitigation a
Publish At:2020-05-24 09:52 | Read:2331 | Comments:0 | Tags:Featured Articles MITRE Framework ATT&CK collection MITRE

16,800 clean and 11,960 malicious files for signature testing and research.

Signature and security product testing often requires large numbers of sorted malicious and clean files to eliminate false positives and negatives. They are not always easy to find, but here are some that I have.Clean documents are collected from various open sources. All the copyright rights belong the the authors of each document and file. You must no
Publish At:2014-08-15 01:02 | Read:4638 | Comments:0 | Tags:collection sandbox signature testing

Announce

Share high-quality web security related articles with you:)
Tell me why you support me <3

Tag Cloud