• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
Cyber Security News

Government Sets Out New Rules to Enhance App Security

You are here: Home / General Cyber Security News / Government Sets Out New Rules to Enhance App Security
December 9, 2022

The UK federal government has thrown down the gauntlet to app shop operators and builders, requesting they indication up to a voluntary code of perform developed to improve consumer security and privacy.

In what it described as a “world-first” currently, the Department for Electronic, Society, Media and Activity (DCMS) stated the regulations would help to decrease consumers’ exposure to malicious and bug-ridden applications.

The code will stipulate that application shop operators and/or developers:

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


  • Share security and privacy facts in a consumer-helpful way with shoppers, such as the place user data is saved and when the app was very last up to date
  • Enable their apps to work even if a user chooses to disable optional operation and permissions, such as locale tracking
  • Have a “robust and transparent” vetting method to make sure only apps that meet a least security and privacy baseline are published
  • Deliver apparent feedback to developers when an app is not released on their retailer for security or privacy reasons
  • Have a vulnerability disclosure method, this kind of as a make contact with type
  • Ensure builders preserve their applications up to date to minimize the variety of vulnerabilities

The authorities acknowledged that numerous app keep operators and builders currently adhere to many of these principles. However, it will also glance at wherever present legislation may well need to be tweaked and/or the place regulation is needed to make improvements to security in the field.

Around the coming nine months, the DCMS will operate with businesses this sort of as Apple, Google, Amazon, Huawei, Microsoft, LG, Epic Game titles, Nintendo, Valve, Sony and Samsung to aid them apply the code.

“Apps carry a large amount of convenience to our day to day lives, but rogue apps making their way on to the largest app retailers are a security and privacy minefield – putting shoppers at enormous risk from facts theft and cons,” argued Which? director of coverage and advocacy, Rocio Concha.

“The government’s announcement of a new voluntary code is a favourable step to creating apps additional secure. The app sector should now be monitored carefully for advancements and to check out no matter if tech companies are falling small in protecting buyers.”

While built for people, the new procedures could also enhance corporate security by making sure BYOD gadgets are greater insulated from app-based mostly dangers. However, threats may persist from some third-party app shops hosted outside the UK.


Some areas of this short article are sourced from:
www.infosecurity-journal.com

Previous Post: «muddywater hackers target asian and middle east countries with updated MuddyWater Hackers Target Asian and Middle East Countries with Updated Tactics
Next Post: Security Concerns Scupper Deals for Two-Thirds of Firms Cyber Security News»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • Zero-Click Agentic Browser Attack Can Delete Entire Google Drive Using Crafted Emails
  • Critical XXE Bug CVE-2025-66516 (CVSS 10.0) Hits Apache Tika, Requires Urgent Patch
  • Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability
  • Intellexa Leaks Reveal Zero-Days and Ads-Based Vector for Predator Spyware Delivery
  • “Getting to Yes”: An Anti-Sales Guide for MSPs
  • CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems
  • JPCERT Confirms Active Command Injection Attacks on Array AG Gateways
  • Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
  • ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts— and 15 More Stories
  • 5 Threats That Reshaped Web Security This Year [2025]

Copyright © TheCyberSecurity.News, All Rights Reserved.