compliance

AppWizard
August 12, 2026
Apple has reinstated Telegram to its App Store after a temporary removal due to the discovery of child sexual abuse material. Telegram responded by removing the offending content and banning the user responsible, which helped recover the value of the Gram token that had initially dipped by approximately 6.4%. The incident underscores the scrutiny messaging platforms face regarding illegal content, with Telegram currently under scrutiny in Russia, France, and Australia for alleged facilitation of illegal activities and extremist content.
Winsage
August 10, 2026
Microsoft is offering Extended Security Updates (ESUs) for Windows Server 2016, which will provide critical security patches until January 2030, after the end of extended support on January 12, 2027. Organizations can enroll their Windows Server 2016 instances via Azure Arc to receive these updates without migrating to Azure. The ESUs are available through a pay-as-you-go pricing model, allowing flexibility for on-premises servers and other cloud platforms. By using Azure Arc, organizations gain access to Azure management tools for improved visibility and compliance. IT administrators should connect eligible systems to Azure Arc to manage ESU enrollment and compliance effectively. ESUs are intended as a temporary solution while businesses modernize applications and plan migrations to supported platforms.
AppWizard
August 10, 2026
Google Play has introduced its first third-party app store, Aptoide, following a ruling from a long-standing antitrust lawsuit involving Epic Games. Users in the U.S. can now download Aptoide directly from the Google Play Store, which reflects the court's mandate after Epic's victory in 2023. The ruling included remedies such as reducing developer fees, allowing apps to be mirrored across different app stores, permitting alternative payment systems, and mandating the inclusion of third-party app stores in Google Play. Aptoide offers a user-friendly installation process without sideloading warnings and claims to have access to 1.9 million apps and 295,000 games. Developers can opt out of sharing their apps with Aptoide, but many may choose to use this additional distribution channel.
AppWizard
August 5, 2026
Advertising companies provide software development kits (SDKs) for mobile app monetization, which often automatically transmit users' location data to ad systems and location data brokers, raising privacy concerns. Many developers and users may be unaware of this data sharing. When developers allow SDKs to collect location data, it poses risks beyond targeted ads, including potential misuse by agencies like ICE and global surveillance. Location data brokers harvest precise movements of individuals, often without their consent, through mobile applications. Some apps directly collaborate with data brokers, while others leak data through advertising SDKs during real-time bidding (RTB) auctions. An incident in 2025 revealed that many apps unknowingly contributed to a location data broker's database. Developers must understand their SDKs' location-sharing practices to mitigate risks. Advertising SDKs can collect location data automatically once users grant permission, without specific permissions for the SDKs themselves. Precise location data can be collected when apps have location permissions, leading to potential privacy violations. Several SDKs have been identified as collecting location data by default, increasing the risk of unintentional data leaks. The Electronic Frontier Foundation (EFF) found that four advertising SDKs collect users' location data by default when location permissions are granted. InMobi encourages location sharing for higher revenue, while BidMachine updated its documentation after EFF's inquiry, confirming precise location data collection. Verve's SDK also collects location data by default but presents a cautious narrative in its Play Store guidance. Huawei's SDK recommends obtaining location permissions to enhance revenue, with default location sharing occurring if permissions are granted. Location data can be shared without users' knowledge or meaningful consent, complicating informed consent issues. The focus on four SDKs does not imply that others adequately protect location data, as many have faced criticism for similar practices. Studies indicate that SDKs often encourage increased data collection through design and documentation, leading to minimal control for developers over data transmission. The EFF's analysis highlights that advertising SDKs incentivize location data sharing through default settings and unclear documentation. Developers should assess third-party SDKs and disable unnecessary data collection. Regulators must hold developers accountable for unlawful data sharing, while legislators should enact laws to protect location privacy and address online behavioral advertising, which drives data tracking.
Winsage
August 3, 2026
Microsoft is updating Secure Boot certificates for Windows 11 PCs, as the previous certificates are 15 years old and nearing expiration. Users can check their certificate status easily. An advisory was issued in early September regarding changes for Windows Insider channels, particularly affecting the Experimental and Beta channels, with a deadline for certificate updates set for August 11, 2026. The Release Preview builds will not be affected by this update requirement. Users in the impacted channels must update to specific builds to obtain the new certificates, or they may stop receiving updates after the deadline. The minimum build requirements for each channel are outlined, and users can check their current Windows 11 Insider build by using the winver command. Microsoft has confirmed that these updates will not impact activation or licensing status.
Search