HTC Investigating Report Its Android Devices Are Susceptible to Privacy Breach

Taiwanese cellphone maker HTC said today it is investigating a claim that its devices can leak all kinds of information to Android apps that are granted even modest permissions.
angry_android

Android Malware on the Rise

If you own an Android smartphone, you’re more than twice as likely to encounter malware today than you were six months ago.
sick-android

News Byte

Apple Patches iOS PDF Vulnerability

Responding to an alert issued last week by Germany’s Federal Office for Information Security, Apple has patched a potentially dangerous PDF-related security vulnerability in MobileSafari. This morning the company issued iOS 4.3.4, an incremental update that corrects a flaw that could have been exploited by a malicious PDF file.

News Byte

Apple Working on Patch for Security Hole in iOS

Apple said Thursday it was working on a fix for a security hole in the operating system of the iPhone and iPad. On Wednesday, German authorities warned that the iOS vulnerability, exploited through a malicious PDF file, could give criminals access to personal data. Apple didn’t specify when the software update would be ready.

Most Android Phones Open To Snooping, Report Says

A recently outlined vulnerability in Android highlights the danger of connecting mobile devices to unencrypted Wi-Fi locations as well as the slow path with which software updates make their way to smartphone owners. Although Google closed the hole in question in both the Gingerbread and Honeycomb releases of Android, the overwhelming majority of devices are still vulnerable.

Microsoft: Every Current Version of Windows Has a Gaping Hole in It

Ever heard of MHTML? No? Well, Microsoft says Internet Explorer users should turn it off for a while until the company figures out how to fix this latest vulnerability in Windows.

Voices

PayPal Races To Fix IPhone App Security Flaw

Internet-payment provider PayPal said its iPhone application contained a security flaw that could allow a hacker to access users’ accounts and has rushed out an update to correct the problem. The hole stems from the app’s failure to confirm the authenticity of PayPal’s website when communicating over the Internet–a basic lapse that the security researcher who found the flaw said would allow someone to intercept passwords from unsuspecting users.

Microsoft Proudly Presents Back-to-School Patch Collection

Microsoft is going to issue enough patches to make a quilt next week–34 in all. Come August 10, “Patch Tuesday,” the company will deliver 14 bulletins, eight of them critical. Evidently that’s a new record.

News Byte

Safari 5.0.1 Arrives With Extensions Support, Autofill Hack Fix

Another product refresh from Apple this morning–Safari 5.0.1, which adds support for third-party extensions to the browser. Debuting along with it is the Safari Extensions Gallery, a showcase of about 100 extensions from the likes of Amazon, eBay, The New York Times, MLB and Twitter. Also included in this point release, a fix for that autofill vulnerability revealed last week.

Bug Bounties for IE? What, You Think We’re Made of Money?

Security researchers looking to make a buck digging up browser vulnerabilities can ignore Internet Explorer, because Microsoft isn’t going to pay them for their work. Though Google and Mozilla recently raised the bounties they pay for bugs discovered in their browsers, their Redmond rival has no plans to follow suit.
aieeeeeeeeeeejpg

Great Moments in Password Protection