Recent Posts

Pages: 1 ... 7 8 [9] 10
81
Apple / Tim Cook is stepping down as Apple CEO, John Ternus to take over
« Last post by javajolt on April 21, 2026, 02:27:37 PM »
Tim Cook to retire as Apple CEO in September 2026, with John Ternus stepping in after a historic era of growth with big shoes to fill.

We have been hearing for the past few months that Apple is preparing for CEO Tim Cook's retirement. Rumors had noted that the next CEO would be John Ternus, Senior VP of Hardware Engineering, but that the transition may not happen in 2026. Well, the rumors were partially true, as Cook is indeed stepping down from his role, and it is happening later this year after all.

Apple has announced that Tim Cook will be retiring as Apple CEO on September 1, 2026. Until that time, he will work with Ternus to ensure a smooth transition. After that date passes, Cook will take on the role of executive chairman, the current non-executive chairman Arthur Levinson will become lead independent director, and Ternus will also join the board of directors. All these changes have been unanimously approved by the current board.

Cook is quoted as saying:

Quote
It has been the greatest privilege of my life to be the CEO of Apple and to have been trusted to lead such an extraordinary company. I love Apple with all of my being, and I am so grateful to have had the opportunity to work with a team of such ingenious, innovative, creative, and deeply caring people who have been unwavering in their dedication to enriching the lives of our customers and creating the best products and services in the world. John Ternus has the mind of an engineer, the soul of an innovator, and the heart to lead with integrity and with honor. He is a visionary whose contributions to Apple over 25 years are already too numerous to count, and he is without question the right person to lead Apple into the future. I could not be more confident in his abilities and his character, and I look forward to working closely with him on this transition and in my new role as executive chairman.

John Ternus certainly has big shoes to fill as the successor to Cook. As a reminder, Tim Cook became Apple CEO back in 2011 following Steve Jobs' rapid decline in health. Cook had already been at Apple since 1998, but after becoming CEO, he took the company from a market cap of $350 billion to $4 trillion. Its revenue for the fiscal year of 2025 was $416 billion, which is almost 4x the $108 billion reported in 2011. This is spearheaded by the launch of new devices and categories such as Apple Watch, AirPods, iCloud, Apple Pay, Apple TV, and Apple Music, along with continued innovation with the iPhone.

Meanwhile, Ternus is also an Apple veteran who joined the firm in 2001. He steadily rose to the ranks of VP of Hardware Engineering in 2013 and then SVP of the same division in 2021, at which point he also became a member of the executive team. He is also credited as being "instrumental" in the launch of several generations of iPhone, iPad, AirPods, Mac, Apple Watch, and more. It will be interesting to see how quickly he settles into his new role as Apple's head honcho.

source
82
The UK regulator is cracking down on Telegram and teen chat apps over illegal content, with potential fines reaching 10% of global revenue.

The UK digital regulator, Ofcom, has launched enforcement action against Telegram after evidence suggested child sexual abuse material (CSAM) was being shared on the platform. The investigation is happening under the Online Safety Act and will look to see whether the platform is meeting its obligations to stop CSAM from being shared.

The regulator also revealed that it was opening investigations into Teen Chat and Chat Avenue to see whether they were meeting their duties to protect children from being groomed by predators.

Under the OSA, platforms facilitating user-to-user services must tackle the sharing of CSAM content. Ofcom said that it works with law enforcement agencies to identify platforms that are being used by offenders to share CSAM. Most recently, it received evidence from the Canadian Centre for Child Protection about the alleged existence and sharing of CSAM on Telegram.

It has decided to launch the investigation on the back of this report. If Ofcom finds the company has broken the law, it can require Telegram to take specific actions to come into compliance. It can also impose fines of 18 million pounds or 10% of qualifying worldwide revenue, whichever is higher. If it continues not to comply, it could ask a court to block Telegram in the UK or require payment providers and advertisers to withdraw their services from the platform.

Commenting on this development, Suzanne Cater, Director of Enforcement at Ofcom, said:

Quote
“Child sexual exploitation and abuse causes devastating harm to victims, and making sure sites and apps tackle this is one of our highest priorities. It’s why we work so closely with partners in law enforcement and child protection organisations to identify where these harms are occurring and hold providers to account where they’re failing to meet their obligations.

“Progress has undeniably been made, particularly with file-sharing services, which are too often used to share horrific child sexual abuse imagery. But this problem extends to big platforms too, and teen-focused chat services are too easily being used by predators to groom children. These firms must do more to protect children, or face serious consequences under the Online Safety Act.”

source
83
Social Media / Ofcom investigates Telegram and teen chat sites
« Last post by javajolt on April 21, 2026, 02:07:29 PM »
Enforcement action launched after evidence suggests child sexual abuse material being shared on Telegram and teen chat sites being used by predators to groom children

Ofcom has launched an investigation into Telegram under the UK’s Online Safety Act, to examine whether it is complying with its duties to prevent child sexual abuse material being shared.

The UK’s online safety watchdog has also opened investigations into Teen Chat and Chat Avenue to examine whether they are meeting their duties to prevent children from the risk of being groomed by predators.

Additionally, we have provided updates on file-sharing services that are now either using hash-matching technology to detect and swiftly remove child sexual abuse material (CSAM) or have taken steps to prevent people in the UK from accessing their sites. 

Quote
Suzanne Cater, Director of Enforcement at Ofcom, said: “Child sexual exploitation and abuse causes devastating harm to victims, and making sure sites and apps tackle this is one of our highest priorities. It’s why we work so closely with partners in law enforcement and child protection organisations to identify where these harms are occurring and hold providers to account where they’re failing to meet their obligations.

“Progress has undeniably been made, particularly with file-sharing services, which are too often used to share horrific child sexual abuse imagery. But this problem extends to big platforms too, and teen-focused chat services are too easily being used by predators to groom children. These firms must do more to protect children, or face serious consequences under the Online Safety Act.”

CSAM on Telegram

It is illegal in the UK to share or be in possession of CSAM. Under the UK’s Online Safety Act, providers of ‘user-to-user’ services are required to assess and mitigate the risk of this horrific crime being perpetrated on their platforms.[1]

We work closely with law enforcement agencies and other organisations to identify platforms that are particularly susceptible to being used by offenders for the sharing of image-based CSAM.

We received evidence from the Canadian Centre for Child Protection regarding the alleged presence and sharing of child sexual abuse material on Telegram, and carried out our own assessment of the platform. In light of this, we have decided to open an investigation to examine whether Telegram has failed, or is failing, to comply with its duties in relation to illegal content. 

Grooming on teen chat sites

The sexual exploitation and abuse of children online has devastating consequences for those affected. Online grooming crimes against children can include coercing a child to send sexual images of themselves, sexual extortion, and arranging in-person sexual abuse of a child.

Ofcom works with child protection agencies to identify services that present particular risks of grooming. This work has raised concerns about the risk to children on two chat services called Teen Chat and Chat Avenue, which have open chatrooms, private messaging, profile creation and media sharing functionalities.

Ofcom has engaged with representatives of the providers of these services to try and address these concerns. However, we remain unsatisfied as to whether they are providing adequate protection to UK children from the risk of grooming.

We have therefore opened investigations into whether the providers of Teen Chat and Chat Avenue are taking appropriate steps to assess and mitigate the risk of UK users encountering illegal content and activity, including grooming. The investigation into Chat Avenue will also consider whether the provider is taking adequate steps to prevent children from encountering harmful content, including pornography, on the site.

CSAM is being tackled on file-sharing services

When duties under the Act came into effect last year, we immediately launched enforcement action to assess the safety measures being taken by file-sharing providers to prevent offenders from disseminating CSAM on their services.

As part of this work, we became concerned that the provider of file-sharing service [color=blue[Pixeldrain[/color] had not taken appropriate measures to assess and mitigate this risk.

In response to us raising our concerns with them, the provider of Pixeldrain made material improvements to its Illegal Content Risk Assessment and implemented perceptual hash matching – an automated tool that can detect and swiftly remove CSAM.

We have also today closed our investigation into file-sharing service Yolobit, which has taken steps to make itself unavailable to people in the UK.

This follows on from five other file-sharing providers taking steps to make their services unavailable to UK users after we launched enforcement proceedings against them, and two other services deploying hash matching as a direct result of our action.

Ofcom’s investigation process

The Online Safety Act sets out the process Ofcom must follow when investigating a company and deciding whether it has failed to comply with its legal obligations.[2]

Our first step is to gather and analyse evidence to determine whether a breach has occurred. If, based on that evidence, we consider that a compliance failure has taken place, we will issue a provisional decision to the company, who will then have an opportunity to respond to our findings in full, as required by the Act, before we make our final decision.

We will provide updates on our investigations as soon as possible.

Enforcement powers

If we find that a company has broken the law, we can require it to take specific steps to come into compliance or to remedy harm caused by the breach. We can also impose fines of up to £18 million or 10% of qualifying worldwide revenue, whichever is greater.

In the most serious cases of ongoing non-compliance, we can make an application to a court for ‘business disruption measures’, through which a court could impose an order requiring payment providers or advertisers to withdraw their services from a platform, or requiring internet service providers to block access to a site in the UK.

UK jurisdiction

As in other industries, companies that provide an online service to people in the UK must comply with UK laws. The Online Safety Act is concerned with protecting people in the UK. It does not require platforms to restrict what people in other countries can see.



1. User-to-user services are where people may encounter content – including images, videos, messages or comments – that has been generated, uploaded or shared by other users. Schedule 6 of the Online Safety Act explains the child sexual exploitation and abuse offences that are priority offences under the Act.

2.    Our Online Safety Enforcement Guidance can be found here.

3.    More information on jurisdiction is available here.

source
84


Microsoft has released out-of-band (OOB) updates to fix issues affecting Windows Server systems after installing the April 2026 security updates.

As Microsoft confirmed last week, some admins may experience failures when installing the KB5082063 security update on Windows Server 2025 devices.

Additionally, this month's Patch Tuesday cumulative updates are causing some Windows servers with domain controller roles to enter a restart loop due to crashes of the Local Security Authority Subsystem Service (LSASS).

Microsoft also warned that this issue may also occur when setting up new domain controllers (or even on existing ones) if the server processes authentication requests very early during startup.

To address these two known issues, Microsoft has released emergency updates for the following affected Windows Server versions:

   ■ Windows Server 2025: KB5091157 (OS Build 26100.32698)

   ■ Windows Server, version 23H2: KB5091571 (OS Build 25398.2276)

   ■ Windows Server 2022: KB5091575 (OS Build 20348.5024)

   ■ Windows Server 2019: KB5091573 (OS Build 17763.8647)

   ■ Windows Server 2016: KB5091572 (OS Build 14393.9062)

   ■ Windows Server 2025 Datacenter: Azure Edition: Hotpatch KB5091470 (OS Build 26100.32704)

   ■ Windows Server 2022 Datacenter: Azure Edition: Hotpatch KB5091576 (OS Build 20348.5029)

"The Windows Server 2025 OOB update (KB5091157) addresses both the installation failure issue and the domain controller restart issue," Microsoft explained. "OOB updates released for other supported Windows Server versions address only the domain controller restart issue."

On Wednesday, Microsoft also warned admins that some Windows Server 2025 devices will boot into BitLocker recovery and prompt users to enter a BitLocker key after installing the KB5082063 Windows security update.

Additionally, last week, it finally addressed a bug that has been plaguing Windows servers since September 2024, causing devices running Windows Server 2019 and Windows Server 2022 to upgrade to Windows Server 2025 "unexpectedly."

Since the start of the year, Microsoft has also released emergency updates to resolve a Bluetooth device visibility bug and patch security vulnerabilities in the Routing and Remote Access Service (RRAS) management tool that affect hotpatch-enabled Windows 11 Enterprise devices.

Two other sets of out-of-band updates addressed broken sign-ins with Microsoft accounts and update installation issues affecting the March 2026 non-security preview update.

source
85


Windows never had a consistent design language. It’s largely due to how it’s built, but also because Microsoft doesn’t really stick to one idea or even a framework. However, things might soon get better, as Microsoft confirmed it’s going after every design element in the OS, including the “Installing Windows 11” screen, which rarely appears.

If you can’t recall the “Installing Windows 11” screen, take a look at the screenshot below.



The above “Installing Windows 11” screen appears only when you try to reinstall the operating system using the Media Creation Tool or setup.exe found in an ISO file. Now, the interface isn’t necessarily bad, and it’s actually a non-issue, but it’s one of the UIs that doesn’t align with Windows 11’s overall design direction.

Microsoft has already confirmed that it’s focused on the design aspect of Windows 11 and is going after all UI elements. But you wouldn’t expect the company to address less-used UI surfaces like the “Installing Windows 11” screen, right? Well, to my surprise, Microsoft’s design director says the company also has plans to redesign the Windows installation screen.

“This screen is on our craft list. It’s very rarely seen, so we’ve prioritized other UI craft projects above it, but we’ll get there,” March wrote in a post on X.

It might not sound like a big deal, but it’s actually a very interesting move. Microsoft has never truly cared about the design of core components, let alone less-used UI surfaces like the “Installing Windows 11” screen.

Windows 11 still has a lot of legacy UI features

Windows 11’s design has definitely gotten better over time, but you can still run into legacy components. For example, you can come across a Windows 8-era interface on the lock screen or inside Windows Settings. In fact, you might also end up in a Windows 3.1-era dialog if you use Control Panel.


Windows 3.1 UI in Windows 11

Of course, the biggest problem is that most of the advanced features depend on Control Panel and legacy dialogs, so until Microsoft figures out a plan to ditch Control Panel, we’re not really moving forward.

Microsoft previously confirmed that it’s looking into fixing various design elements of Windows Settings before removing Control Panel. Also, it’s not just about the design, but also the user experience. It takes fewer clicks in Control Panel to perform the same task as Windows Settings, and Microsoft is aware of the problem.


Microsoft confirms it’s migrating all Control Panel settings to the Windows 11 Settings app, but there
are roadblocks


Another issue is that Microsoft can’t upset power users by removing Control Panel when Settings is not in the best shape.

For example, the Control Panel includes many network and printer drivers and settings that haven’t been migrated to Windows Settings yet. This is because Microsoft is being careful, as it fears the migration process could break multiple features and disrupt the experience for power users, especially enterprises or developers using old endpoints.

“We’re doing it carefully because there are a lot of different network and printer devices & drivers we need to make sure we don’t break in the process,” says the Microsoft Design lead.

Either way, I’m hopeful that Microsoft can turn things around and finally bring a more consistent design to Windows 11. What do you want Microsoft to fix in Windows 11 UI? Let me know in the comments below, and we’ll forward it to Microsoft.

source
86
Microsoft / Microsoft says it’s finally focusing on Windows 11’s design
« Last post by javajolt on April 21, 2026, 01:25:34 AM »
Starting with Settings (Control Panel’s replacement)


Microsoft is bringing design improvements to Windows 11 Settings and UI in the April update

Microsoft’s Partner Director of Design, March Rogers, announced on X that they are focusing on fixing the designs of various elements, pages, and settings in Windows 11. While March acknowledges that there is a lot more work to do, he is still excited to see the design updates coming to Windows 11 in April.

Those include improvements to Settings pages, account dialogues, Narrator working with Copilot, Pen settings, and voice typing to rename files and folders in File Explorer. Windows Latest already covered all the new features that came with the Windows 11 March Optional Update, and some of these design updates are already present in it.


March Rogers posted on X announcing some of the design updates coming to Windows 11 in April

Either way, it doesn’t, in the slightest, take away the momentum of Microsoft’s plans to bring more design changes and fixes to Windows 11 Settings pages.

But what gets me more excited is the software giant finally starting to care more about DESIGN.

Steve Jobs once famously criticized Microsoft for not caring about how their products look and feel, “The only problem with Microsoft is they just have no taste. They have absolutely no taste.”, and 30 years later, it still holds.


Steve Jobs, Co-founder, Apple Computer

Although the rest of the quote continues to say Microsoft doesn’t think of original ideas, I downright disagree with that (even for 1996).

But I completely concede Microsoft’s indifference to aesthetics in their products.

This doesn’t mean that Microsoft is incapable of good design. If you look at some of their posters and ads involving graphical representations of Windows and the Office suite, the attention to detail is impeccable. I always wished for Windows to look as good as the ads suggested, and now it seems that Microsoft has plans to fulfill those wishes…



Microsoft’s design lead promises redesigned Settings pages in Windows 11

From the very first version of Windows, Microsoft has always preferred a substance over style approach. While it worked for power users back then, the world has come to a point where the majority of users prefer to have form over function, something Apple is famous for.

It is understandable, because unlike 3 decades ago, humans do more work with apps and tools that have GUIs and aesthetics, rather than a text-based or Command-Line Interface.

To make matters worse, Windows still doesn’t have a consistent UI framework, which is essentially forcing developers to make Web Apps for Windows 11, while many of them have native apps for macOS. It’s a shame because macOS has way less market share than Windows.

Anyway, the announcement from Microsoft’s Design lead, despite being minor tweaks, has the potential to make Windows 11 feel more aesthetic and consistent. Here are some of the changes coming to Windows 11 in the April update:

Redesigned Settings pages

The Settings pages in Windows 11 are cluttered, to be honest, with a lot more information crammed into pages. Much of it can be removed if Microsoft decides to polish the Settings app based on user feedback. Fortunately, the redesigned Settings pages coming in 2026 will fix some of this mess.


Windows 11 Settings pages are crammed with too much information and settings

Account dialogs updated with dark mode

Open the Windows Settings app, go to Accounts, and try to add a new user via Other Users. You’ll see the Account dialog box. But if your PC is in Dark Mode, you’d expect this dialogue box to also be the same theme as your PC. Unfortunately, it’s not the case. Microsoft is now fixing it and soon Account dialog boxes will also be in Dark mode.


Microsoft Account dialogue box is in light mode, despite the system preference being set to dark mode

Narrator working with Copilot on all devices

Narrator is a brilliantly capable accessibility feature, and getting Copilot integration on more devices is a positive development.



Polished Pen settings page

The Pen settings page hasn’t seen an update in over years. Now that 2-in-1 PCs with Pen support are on the rise, it makes sense to clean it up a bit.


Windows 11 Pen & Windows Ink Settings page. Source: Tablet Pro via YouTube

Voice Typing to rename files in File Explorer

If you’ve already installed the March update, you can rename files in the File Explorer using your voice, which is a very welcome update, and I already use it to edit some of my old screenshots.



Microsoft’s new interest in better design throughout Windows, combined with their renewed efforts to increase the number of native apps in the OS, has what it takes to make for a coherent experience for Windows users, and considering that it’s just April so far, 2026 looks to be a great year for Windows users.

source
87
The malicious 24H2 update download website is able to evade detection from anti-virus and other boot-time security on Windows 11.

Neowin readers are well aware of how legit Windows 11 updates can break important features and functions like Start menu Search and PC reset option; however, malicious forged ones can be even more deadly. One such fake Microsoft support website has been tricking users into installing a malicious “Windows update” that silently steals sensitive data, according to new research published by Malwarebytes.

The cybersecurity firm notes that the campaign is being carried out by a convincing phishing site hosted on a typosquatted domain designed to mimic official Microsoft support pages. The attack targets Windows users mainly in France by offering what appears to be a legitimate cumulative update for Windows 11 24H2. Coincidentally, the French government just decided to dump Windows in favor of Linux, and although likely unrelated, we wonder if that has any connection.

According to the researchers, the site "microsoft-update[.]support" presents a familiar UI and color scheme, complete with a fake knowledge base (KB) reference and a prominent "Download the update" button. Users who click it receive an 83MB installer file labeled “WindowsUpdate 1.0.0.msi,” that appears indeed authentic at first glance. Observant ones will notice in the image below, that the update being delivered, "KB5034765", was actually released back in February 2024 for Windows 11 23H2 and 22H2, not for 24H2.

The attack also uses trustworthy technologies to mask the real intent. The installer is built using WiX Toolset, a widely used open-source framework, and deploys an Electron-based app, effectively a Chromium browser shell, to execute the payload. This layered approach helps the malware evade antivirus detection. Malwarebytes notes zero detections recorded across dozens of security engines at the time of analysis as the executable itself is clean.

Once executed, the installer launches a Visual Basic script that triggers the Electron app, which in turn spawns a disguised Python process. This process installs multiple packages commonly associated with data theft, including tools for encryption, system inspection, and deep Windows API access. The malware then begins harvesting sensitive data as Malwarebytes found it can extract browser-stored credentials, Discord tokens, and capture payment-related information.

To maintain persistence, the malware has devised several things in its favor including a registry entry disguised as an actual Windows security component and a startup shortcut pretending to be a Spotify app .lnk launcher. This approach ensures the malware survives system reboots with minimal suspicion.

Users are advised to install updates only through official Windows Update settings or trusted Microsoft domains. You can also follow Neowin as we cover these updates and link to official, secure Microsoft sites only, or reputable third-party apps. Any standalone update downloads from an unfamiliar website should be treated as suspicious and with extreme caution. You can find more technical details in the original blog post here on Malwarebytes' website.

source
88
Huawei Pura X Max is here to rival Galaxy Wide Fold and iPhone Ultra.



Huawei has launched a series of foldable phones with a conventional design over the past few years, establishing a strong presence in this market segment alongside Samsung. The Pura X Max is Huawei’s latest foldable phone, set to be officially unveiled on April 20. However, ahead of the official announcement, the company has already offered a closer look at the device and its distinctive design.

Huawei’s official Weibo account has shared images of the Pura X Max, showcasing its design and color options. While most foldable phones follow a tall-and-skinny form factor, the Huawei Pura X Max adopts a wider passport-style design, offering a fresh take on foldable smartphones.

At first glance, the Pura X Max resembles a mini tablet thanks to its wide foldable design. The camera bump on the rear panel is also quite noticeable. Huawei has yet to reveal the official specifications of the device; however, based on previous leaks, it is expected to feature a 7.5-inch main display and a 5.3-inch outer screen. The outer screen could be a drawback for some users, as most foldable phones nowadays feature outer displays of at least 6-inches. Promotional images also show the device in four color options.

In terms of hardware, the Pura X Max is rumored to be powered by the Kirin 9030 chipset, paired with either 12GB or 16GB of RAM. The phone is already available for preorder in China, with the official unveiling scheduled for April 20.

The Huawei Pura X Max introduces a new form factor to the foldable smartphone market and appears well-positioned to challenge upcoming devices such as the Galaxy Wide Fold and Apple’s first foldable iPhone, rumored to be called the iPhone Ultra. So far, Samsung’s foldables have largely followed a conventional design, but the company is reportedly working on a wide-style foldable. Similarly, rumors surrounding Apple’s first foldable iPhone suggest a wider display format.

The Galaxy Wide Fold is expected to launch on July 22, while the iPhone Ultra is rumored to be unveiled alongside the iPhone 18 Pro and iPhone 18 Pro Max at Apple’s September event.

Huawei has yet to announce the global availability of the Pura X Max, in any case the company remains banned in the US market, meaning the US-based customers would have to bypass carriers and retail stores in order to purchase the device, and even then have to worry about being blocked by Google services.

source
89
Microsoft confirms Office LTSC 2021 support ends October 2026, urging businesses to move to Microsoft 365 or LTSC 2024.



Microsoft is shutting down several of its products this year, including, but not limited to, the Access Database Compare tool, Publisher, and Outlook Lite on Android. Now, Microsoft has reminded customers that another suite of apps is set to retire this year, and also suggested an alternative.

Office LTSC 2021 suite and the standalone applications that it comprises of are facing the chopping block on October 13, 2026. As is common in these scenarios, these pieces of software will continue to function but they will not receive any security fixes, patches for bugs, or technical support from Microsoft. What this also means is that if you face any sort of issue, such as a break in compatibility, you are not guaranteed any assistance from Microsoft.

The Redmond tech giant has suggested multiple upgrade paths for small businesses and large enterprise organizations. For the former entities, those with fewer than 300 seats, the following are viable alternatives as long as you are OK with being connected to the cloud:

   • Microsoft 365 Business Premium

   • Microsoft 365 Business Standard

   • Microsoft 365 Apps for business

Meanwhile, larger organizations should consider the following:

   • Microsoft 365 E3

   • Office 365 E3

   • Microsoft 365 Apps for enterprise


These Microsoft 365-powered versions of Office applications offer better security, management capabilities, and compliance. In addition, it also includes Copilot integration, can be installed on multiple devices per user, and dynamic updates that keep you always updated.

However, for those who are more comfortable with the on-premises variant of Office and want to continue down that path, Office LTSC 2024 is still an option. This is the most recent version of on-prem Office for commercial LTSC customers and also includes new versions of Visio and Project. Do choose your migration path carefully though, because Office LTSC 2024 will reach end of support on October 9, 2029.

source
90
Saying 'user credentials and financial data were exposed to risk' An outdated SDK carries a dangerous flaw


(Image credit: Shutterstock / tomeqs)



   • Microsoft found EngageLab SDK flaw affecting 50 million Android devices

   • Vulnerability let apps bypass sandbox and access private data

   • At least 30 million installs were crypto apps, patched in v5.2.1



Roughly 50 million Android devices were using apps with vulnerabilities that allowed threat actors to access private data stored on those devices, experts have warned. Many of those installations were cryptocurrency apps, which only made the problem bigger.

Security researchers from Microsoft said they identified an “intent redirection vulnerability” in EngageLab SDK, a popular software development kit that helps build user engagement features such as push notifications or in-app messaging.

"This flaw allows apps on the same device to bypass Android security sandbox and gain unauthorized access to private data," Microsoft wrote in its report.

Removing vulnerable apps

Intent is a mechanism in Android, used for communication between apps (or between multiple components inside a single app). It acts as a message object carrying data and instructions, allowing a component to request an action from another (such as opening an activity, or triggering a function).

While any app can send an intent, whether it’s accepted depends on the identity and permissions of the sending app.

Microsoft did not say which apps contained the vulnerable SDK but said that at least 30 million of the downloads fell on cryptocurrency apps. The bug was discovered in April 2025, in version 4.5.4. It was patched in November the same year, in version 5.2.1.

All of the apps built with the bugged SDK were removed from Google’s Play Store, it was said.

Microsoft also stated that it found no evidence of malicious actors discovering this flaw beforehand and using it as a zero-day in real-life attacks. However, developers are urged to update the SDK to the newest version as soon as possible.

"This case shows how weaknesses in third‑party SDKs can have large‑scale security implications, especially in high‑value sectors like digital asset management," Microsoft said. "Apps increasingly rely on third‑party SDKs, creating large and often opaque supply‑chain dependencies. These risks increase when integrations expose exported components or rely on trust assumptions that aren’t validated across app boundaries."

source
Pages: 1 ... 7 8 [9] 10