Close Menu
Hollywood News Reporter
  • Home
  • Film
  • Television
  • Box Office
  • Reality TV
  • Music
  • Horror
  • Books
  • Technology
  • Politics
  • Cover Story
  • Contact
    • About
    • Privacy Policy
    • DMCA / Copyright Disclaimer
    • Amazon Disclaimer
    • Terms and Conditions

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Check out the weather forecast

191 Prime Day Deals Picked By People Who Obsessively Test Gear

6 Fantasies Full of Lies, Loyalty and Absolutely Terrible Decisions

Facebook X (Twitter) Instagram
Hollywood News Reporter
  • Home
  • Film
  • Television
  • Box Office
  • Reality TV
  • Music
  • Horror
  • Books
  • Technology
  • Politics
  • Cover Story
  • Contact
    • About
    • Privacy Policy
    • DMCA / Copyright Disclaimer
    • Amazon Disclaimer
    • Terms and Conditions
Hollywood News Reporter
You are at:Home»Technology»It’s not all doom and gloom: When cybersecurity gave us hope in 2023
Technology

It’s not all doom and gloom: When cybersecurity gave us hope in 2023

By AdminDecember 30, 2023
Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
It’s not all doom and gloom: When cybersecurity gave us hope in 2023


A funny — but true — joke at TechCrunch is that the security desk might as well be called the Department of Bad News, since, well, have you seen what we’ve covered of late? There is a never-ending supply of devastating breaches, pervasive surveillance and dodgy startups flogging the downright dangerous.

Sometimes though — albeit rarely — there are glimmers of hope that we want to share. Not least because doing the right thing, even (and especially) in the face of adversity, helps make the cyber-realm that little bit safer.

Bangladesh thanked a security researcher for citizen data leak discovery

When a security researcher found that a Bangladeshi government website was leaking the personal information of its citizens, clearly something was amiss. Viktor Markopoulos found the exposed data thanks to an inadvertently cached Google search result, which exposed citizen names, addresses, phone numbers and national identity numbers from the affected website. TechCrunch verified that the Bangladeshi government website was leaking data, but efforts to alert the government department were initially met with silence. The data was so sensitive, TechCrunch could not say which government department was leaking the data, as this might expose the data further.

That’s when the country’s computer emergency incident response team, also known as CIRT, got in touch and confirmed the leaking database had been fixed. The data was spilling from none other than the country’s birth, death and marriage registrar office. CIRT confirmed in a public notice that it had resolved the data spill and that it left “no stone unturned” to understand how the leak happened. Governments seldom handle their scandals well, but an email from the government to the researcher thanking them for their finding and reporting the bug shows the government’s willingness to engage over cybersecurity where many other countries will not.

Apple throwing the kitchen sink at its spyware problem

It’s been more than a decade since Apple dropped its now-infamous claim that Macs don’t get PC viruses (which while technically true, those words have plagued the company for years). These days the most pressing threat to Apple devices is commercial spyware, developed by private companies and sold to governments, which can punch a hole in our phones’ security defenses and steal our data. It takes courage to admit a problem, but Apple did exactly that by rolling out Rapid Security Response fixes to fix security bugs actively exploited by spyware makers.

Apple rolled out its first emergency “hotfix” earlier this year to iPhones, iPads and Macs. The idea was to roll out critical patches that could be installed without always having to reboot the device (arguably the pain point for the security-minded). Apple also has a setting called Lockdown Mode, which limits certain device features on an Apple device that are typically targeted by spyware. Apple says it’s not aware of anyone using Lockdown Mode who was subsequently hacked. In fact, security researchers say that Lockdown Mode has actively blocked ongoing targeted hacks.

Taiwan’s government didn’t blink before intervening after corporate data leak

When a security researcher told TechCrunch that a ridesharing service called iRent — run by Taiwanese automotive giant Hotai Motors — was spilling real-time updating customer data to the internet, it seemed like a simple fix. But after a week of emailing the company to resolve the ongoing data spill — which included customer names, cell phone numbers and email addresses, and scans of customer licenses — TechCrunch never heard back. It wasn’t until we contacted the Taiwanese government for help disclosing the incident that we got a response immediately.

Within an hour of contacting the government, Taiwan’s minister for digital affairs Audrey Tang told TechCrunch by email that the exposed database had been flagged with Taiwan’s computer emergency incident response team, TWCERT, and was pulled offline. The speed at which the Taiwanese government responded was breathtakingly fast, but that wasn’t the end of it. Taiwan subsequently fined Hotai Motors for failing to protect the data of more than 400,000 customers, and was ordered to improve its cybersecurity. In its aftermath, Taiwan’s vice premier Cheng Wen-tsan said the fine of about $6,600 was “too light” and proposed a change to the law that would increase data breach fines by tenfold.

Leaky U.S. court record systems sparked the right kind of alarm

At the heart of any judicial system is its court records system, the tech stack used for submitting and storing sensitive legal documents for court cases. These systems are often online and searchable, while restricting access to files that could otherwise jeopardize an ongoing proceeding. But when security researcher Jason Parker found several court record systems with incredibly simple bugs that were exploitable using only a web browser, Parker knew they had to see that these bugs were fixed.

Parker found and disclosed eight security vulnerabilities in court records systems used in five U.S. states — and that was just in their first batch disclosure. Some of the flaws were fixed and some remain outstanding, and the responses from states were mixed. Florida’s Lee County took the heavy-handed (and self-owning) position of threatening the security researcher with Florida’s anti-hacking laws. But the disclosures also sent the right kind of alarm. Several state CISOs and officials responsible for court records systems across the U.S. saw the disclosure as an opportunity to inspect their own court record systems for vulnerabilities. Govtech is broken (and is desperately underserved), but having researchers like Parker finding and disclosing must-patch flaws makes the internet safer — and the judicial system fairer — for everyone.

Google killed geofence warrants, even if it was better late than never

It was Google’s greed driven by ads and perpetual growth that set the stage for geofence warrants. These so-called “reverse” search warrants allow police and government agencies to dumpster dive into Google’s vast stores of users’ location data to see if anyone was in the vicinity at the time a crime was committed. But the constitutionality (and accuracy) of these reverse-warrants have been called into question and critics have called on Google to put an end to the surveillance practice it largely created to begin with. And then, just before the holiday season, the gift of privacy: Google said it would begin storing location data on users’ devices and not centrally, effectively ending the ability for police to obtain real-time location from its servers.

Google’s move is not a panacea, and doesn’t undo the years of damage (or stop police from raiding historical data stored by Google). But it might nudge other companies also subject to these kinds of reverse-search warrants — hello Microsoft, Snap, Uber and Yahoo (TechCrunch’s parent company) — to follow suit and stop storing users’ sensitive data in a way that makes it accessible to government demands.



Original Source Link

Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
Previous ArticleEPITAPH PROVEN | Kirkus Reviews
Next Article Foo Fighters Albums Ranked

Related Posts

191 Prime Day Deals Picked By People Who Obsessively Test Gear

July 9, 2025

Amazon Prime Day deals on kitchen essentials include up to 50 percent off on air fryers, Instant Pots and sous vide machines

July 9, 2025

The 5 Best Prime Day Action Camera Deals for Thrill Seekers (2025)

July 8, 2025

Walmart Deals 2025 are live with a bunch of anti-Prime Day sales to shop now

July 8, 2025

13 Best Wi-Fi Routers of 2025, Tested and Reviewed

July 7, 2025

Taria & Como and Black Hole Havoc

July 7, 2025
Recent Posts

Amazon Prime Day deals on kitchen essentials include up to 50 percent off on air fryers, Instant Pots and sous vide machines

New Mystery and Thriller Books to Read | July 8

‘Superman’ To Take Flight With $200M Worldwide Opening: Box Office

Jesse Lally Shuts Down Talk Janet Caperna ‘Fled’ to Switzerland

Tariff-fueled inflation, meteor strike both rare

New Podcast Horror To World Premiere at Fantasia 2025

‘Married to Medicine’s Dr. Heavenly Kimes Is Running for Georgia State Representative

Categories
  • Books (1,486)
  • Box Office (915)
  • Cover Story (13)
  • Featured Stories (18)
  • Film (1,506)
  • Horror (1,496)
  • Music (1,540)
  • Politics (641)
  • Reality TV (951)
  • Technology (1,502)
  • Television (1,344)
  • Uncategorized (1)
Archives
Useful Links
  • About
  • Contact
  • Privacy Policy
  • DMCA / Copyright Disclaimer
  • Amazon Disclaimer
  • Terms and Conditions
Popular Posts

I Wouldn’t Be the Woman I Am Today Without Sabbath

July 4, 2025

Here are the letters that let Apple and Google ignore the TikTok ban

July 4, 2025

The Most Popular Summer Releases, According to Libby

July 4, 2025

‘Jurassic World Rebirth’ Running Cume Up To $54M+

July 3, 2025

Travis Kelce Slams His Reality Show: ‘Worst Thing I Ever Did’

July 3, 2025

Jeffries sets record for longest House floor speech

July 3, 2025

Exclusive: Supernatural Indigenous Film PROTECTORS OF THE LAND Acquired by Tubi, Watch the Trailer Now!

July 3, 2025
Categories
  • Books (1,486)
  • Box Office (915)
  • Cover Story (13)
  • Featured Stories (18)
  • Film (1,506)
  • Horror (1,496)
  • Music (1,540)
  • Politics (641)
  • Reality TV (951)
  • Technology (1,502)
  • Television (1,344)
  • Uncategorized (1)
Recent Posts
  • Check out the weather forecast
  • 191 Prime Day Deals Picked By People Who Obsessively Test Gear
  • 6 Fantasies Full of Lies, Loyalty and Absolutely Terrible Decisions
  • Broadway Box Office Stumbles During July 4th Holiday Week
  • Lil Duval Net Worth 2025: How Much Money Does He Make?
  • Trump says he will impose 50% tariff on copper imports
  • DRILLER KILLER 2 Starring Eric Roberts & Beverly Randolph and featuring Hollywood legend Denzil Washington
Our Picks

Check out the weather forecast

191 Prime Day Deals Picked By People Who Obsessively Test Gear

6 Fantasies Full of Lies, Loyalty and Absolutely Terrible Decisions

Broadway Box Office Stumbles During July 4th Holiday Week

© 2025 Hollywood News Reporter. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

Type above and press Enter to search. Press Esc to cancel.

We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
Cookie SettingsAccept All
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT