security initiatives

AppWizard
February 3, 2025
Google blocked 2.3 million Android app submissions to the Play Store in 2024 due to policy violations that posed risks to users. The company also banned 158,000 developer accounts for attempting to introduce harmful applications, including malware and spyware. The number of blocked apps increased from 2,280,000 in 2023 and 1,500,000 in 2022, aided by AI assistance in 92% of human reviews. Google prevented 1.3 million apps from gaining excessive permissions and upgraded Google Play Protect, which scanned over 200 billion apps daily and identified over 13 million new malware apps from outside Google Play. The Google Play SDK index added 80 trusted SDKs, and the Play Integrity API adoption led to an 80% reduction in abuse from untrusted sources. Google's untrusted APK installation blocking system expanded to several countries and thwarted 36 million installation attempts of 200,000 unique apps from reaching 10 million Android devices.
Tech Optimizer
November 1, 2024
EnterpriseDB (EDB) is pursuing Federal Risk and Authorization Management Program (FedRAMP) Authorization to enhance its secure and compliant solutions for over 1,500 enterprise customers, including government organizations like the Department of Defense (DoD) and the Department of Justice (DOJ). EDB aims to support national security initiatives and facilitate the development of sovereign data and AI solutions. To expedite the FedRAMP authorization process, EDB will use the Game Warden platform from Second Front Systems, which allows applications to inherit pre-approved security controls. This collaboration aims to provide federal agencies with advanced technology while adhering to stringent security standards. EDB Postgres AI is designed to meet enterprise-grade demands for various workloads and will accommodate Controlled Unclassified Information (CUI) and National Security Systems (NSS)-based workloads.
AppWizard
August 21, 2024
Google's bug bounty program for Android apps, the Google Play Security Reward Program (GPSRP), will conclude on August 31, 2024. Launched in 2017, the program incentivized researchers to find security vulnerabilities in popular Android applications, initially targeting select developers with rewards up to ,000 for critical issues. In 2019, it expanded to all apps with over 100 million downloads, increasing potential payouts to 0,000. The decision to end the program is due to a decline in actionable vulnerabilities reported, attributed to improvements in Android OS security. Google will continue investing in other security initiatives, such as the Android Vulnerability Rewards Program (AVRP). Researchers are encouraged to submit findings before the program ends, with reports due by September 15 and final decisions by September 30.
AppWizard
August 20, 2024
Google will conclude the Google Play Security Reward Program on August 31, 2024, after nearly seven years of operation since its launch in October 2017. The decision to end the program is attributed to improvements in the security of the Android operating system and a decrease in actionable vulnerabilities reported by researchers. Reports submitted before the conclusion date will be triaged by September 15, with reward decisions finalized by September 30. In the previous financial year, Google blocked 2.28 million privacy-violating applications and banned 333,000 malicious developer accounts. The termination of the program raises concerns about the potential decrease in motivation for researchers to report vulnerabilities, which could lead to increased future vulnerabilities on the platform.
Winsage
August 15, 2024
Microsoft is introducing a new file-sharing feature for Windows PCs and Android devices, similar to Apple’s AirDrop, through Phone Link and the Link to Windows app. Users can share files by selecting a file on their PC, right-clicking to choose “Share,” and selecting Phone Link. Windows notifications for Phone Link must be enabled to monitor transfer progress, and a notification will confirm successful sharing. This feature is currently rolling out to Windows Insiders in the Release Preview Channel, with a wider release planned. Requirements include a PC with Windows 10 (May 2019 update or later) or Windows 11, an Android smartphone running version 9.0 or above, and specific app versions for Link to Windows and Phone Link. Additionally, Microsoft has linked security initiatives to employee performance reviews, indicating that contributions to security efforts may affect salary increases and promotions. The company has expanded its Secure Future Initiative to include all employees in security performance metrics. Microsoft has also removed advertisements from the latest version of Skype and improved AI image creation tools, along with introducing automatic sign-in with OneAuth.
Search