GM! Have a beautiful and productive day.
kris
kris@nostrsec.net
npub15a8n...hd0k
Avocations in long distance trail running & privacy technology.
Current & past vocations in information security & cloud engineering - *nix grey beard
GM ☕
Good night. I’d like to go back to here for a while. But the sound of summer warm rain will do. #outdoors


Long #runstr Sunday. Have a good week all.


An example of the risk around 3rd party keyboard apps. #cybersecurity report:
In this report, we analyze the security of cloud-based pinyin keyboard apps from nine vendors–Baidu, Honor, Huawei, iFlyTek, OPPO, Samsung, Tencent, Vivo, and Xiaomi–and examine the transmission of users' keystrokes for vulnerabilities. Our analysis confirms critical vulnerabilities in eight of the nine apps, in which we could exploit that vulnerability to completely reveal the contents of users’ keystrokes while in transit. We notified all affected vendors and, in most cases, the vendors updated the apps to address the vulnerabilities.
source Citizenlab:

GitHub
reports/2024-04-not-so-silent-type.pdf at main · citizenlab/reports
A mirror of various Citizen Lab research reports in PDF - citizenlab/reports