Asian Spectator

Men's Weekly

.

Global Talent Summit Week Returns to Hong Kong March 18–19, Featuring Nobel Laureate, President of Peking University and SenseTime Co-founder

Focusing on talent ecosystem in the AI-era, reinforcing Hong Kong’s position as Asia’s Premier International talent hubHONG KONG SAR - Media OutReach Newswire - 4 March 2026 - The Labour ...

Genie Networks protects VEON customers against DDoS attacks du...

TAIPEI, Taiwan, July 4, 2018 /PRNewswire-AsiaNet/-- Genie Networks, a technology leader in traffic visibility and Distributed Denial of Service (DDoS) protection, will provide the technology...

Policy Address by Hong Kong SAR’s Chief Executive John Lee: Expediting the Northern Metropolis development to expand capacity for growth, innovation and talent

HONG KONG SAR - Media OutReach Newswire - 19 September 2025 - Speeding up the large-scale Northern Metropolis development was a central theme of the 2025 Policy Address announced by Hong Ko...

Bentley Systems Announces Finalists in the Year in Infrastruct...

EXTON, Pennslyvania, Aug. 8, 2019 /PRNewswire-AsiaNet/ -- -- Winners to be selected and announced at Bentley's Year in Infrastructure 2019 Conference, October 21-24 in SingaporeBentley Syste...

JobKred, Singapore-Based AI-Powered Skills Intelligence Compan...

TOKYO, June 30, 2021 /PRNewswire-AsiaNet/ -- JobKred, a Singapore-based AI-powered Skills Intelligence Startup, is proud to announce today their expansion into Tokyo, Japan, which aims to s...

Man Wah FY2021 Revenue from Main Business Up 35% to HK$16.4 Billion Despite Harsh Market Conditions, Net Profit Rises to HK$1.92 Billion

HONG KONG, May 14, 2021 - (ACN Newswire) - Man Wah Holdings Limited ("Man Wah" or the "Group", stock code: 1999) today announced its audited annual results for the year ended 31 March 2021 ...

Early Growth Opportunity with $6M Reg D Investor Round

SUNNYVALE, California, May 10, 2018 /PRNewswire-AsiaNet/ -- - Anticipated IPO for manufacturer of opulent EV'sDubuc Motors, Inc., an early stage electric car company developing high end lux...

PolyU hosts the first China Accreditation Test for Translators and Interpreters in Hong Kong: The first Test in Hong Kong will be held in November ‧ Nurturing translation professionals through the promotion of nationally accredited qualifications

HONG KONG SAR - Media OutReach - 8 September 2022 - The Hong Kong Polytechnic University (PolyU) yesterday signed a cooperation agreement with the China Accreditation Test for Translators a...

Redress Design Award 2022 winner of Timberland prize announced amid mounting urgency faced by global sustainable fashion practices

Fashion Designers Win Spotlight For Circular Design SolutionsHONG KONG SAR - Media OutReach - 8 September 2022 - Redress, the environmental NGO promoting the reduction of fashion's waste, a...

Serious Android Flaw Identified, i-Sprint found that most of the popular apps in APAC are vulnerable

YESsafe AppProtect+ protects Android Apps against StrandHogg and other attacks

SINGAPORE - Media OutReach[1] - 3 December 2019 -StrandHogg, a serious Android flaw, has been reported by BBC News and i-Sprint has found that most of the popular Android Apps in APAC are also vulnerable. StrandHogg can be very damaging and costly to Android users.

Serious Android Flaw Identified, i-Sprint found that most of the popular apps in APAC are vulnerable

In recent news reported by BBC News[2], a Norwegian app security company, Promon, has identified a serious Android following an attack on several customer bank accounts and detected a vulnerability in the Android system.  Promon named it as StrandHogg that allows real-life malware to pose as legitimate apps, with users unaware they are being targeted.  Promon scanned top 500 popular mobile apps in the world, and they are vulnerable to StrandHogg. 

StrandHogg is unique because it can be exploited with or without root access to any Android devices, and it affects all versions of Android, including Android 10.  By taking advantage of a weakness in the multitasking system of Android to enact powerful attacks, this allows malicious apps to masquerade as any other app on the device. This exploit is based on an Android control setting called 'taskAffinity' which allows any app - including malicious ones - to assume any identity in the multitasking system they desire freely. 

 

i-Sprint[3] has also done our own investigation by sampling 100 popular Android Apps across APAC and we found that all of them are susceptible to this vulnerability.  The consequences of exploiting this vulnerability by a malware include steal of usernames and passwords, drain bank accounts, track victim's movements and location, steal private SMS messages and photos, access victim's contact list and phone logs, spy through a phone's camera and microphone.

 

i-Sprint product, YESsafe AppProtect+[4], is a Runtime Application Self-Protection (RASP) solution that helps companies to protect their iOS and Android apps by blocking attacks in real-time.  AppProtect+ proactively protects mobile apps against various risks and attacks.  AppProtect+ can prevent passive attacks (like reverse engineering, repackaging and source code modification), and respond by taking necessary measures if real-time attacks are detected during app running. Mobile apps protected by the solution can also run securely even on a highly infected mobile device

 

Albert Ching, CTO of i-Sprint, said "Our latest version has introduced a new feature for the protection of task hijacking as reported in StrandHogg.  Therefore, our existing customers are equipped with the necessary protection tool even before the announcement of the StrandHogg vulnerability.  We will continue to deliver new security features to help our customers to secure and protect their mobile apps against various attacks."

 

Dutch Ng, CEO of i-Sprint said, "As people are spending more time using their mobile devices to browse content, online shopping, transaction, etc., cyberattack cases targeting on smartphone devices are also increasing. Companies need to be more alert and diligent in ensuring their apps will not be the next victim of such vulnerability."

 

i-Sprint is currently providing a free assessment to organizations who want to find out whether their app is susceptible to StrandHogg vulnerability. For interested companies, please visit www.i-sprint.com/solutions/strandhogg[5] to participate in the free assessment.

Be proactive, be safe, secure your company app with YESsafe AppProtect+.

For enquiry, please email i-Sprint at enquiry@i-sprint.com[6].

References

  1. ^ Media OutReach (www.media-outreach.com)
  2. ^ BBC News (www.bbc.com)
  3. ^ i-Sprint (www.i-sprint.com)
  4. ^ YESsafe AppProtect+ (www.i-sprint.com)
  5. ^ www.i-sprint.com/solutions/strandhogg (www.i-sprint.com)
  6. ^ enquiry@i-sprint.com (www.media-outreach.com)

Authors: i-Sprint Innovations

Read more http://www.media-outreach.com/release.php/View/22889#Contact

Magazine

Diplomasi mendadak Prabowo jadi mediator AS - Iran: Langkah berani atau cari panggung?

(DPN)● Rencana Prabowo mediasi Amerika-Iran memicu keraguan.● Prabowo seakan ingin berperan seimbang untuk bertahan dari tekanan dari luar dan dalam negeri .● Tanpa daya tawar, media...

Masa depan padel: Antara gengsi atau turun kelas agar tren ini langgeng

● Padel sedang menjadi tren teratas aktivitas kaum urban sejak beberapa tahun terakhir.● Padel sudah menjelma sebagai validasi gaya hidup modern pemainnya.● Tren main padel akan sege...

The world’s largest climate finance deal was built to flounder: why funding fails to reach the front-line

Adopted in December 2015, the Paris Agreement commits countries to keeping global temperature rise below 2°C above pre-industrial levels. All 195 signatories set their own plans to meet this share...