Google paid $10M to bug hunters in 2023

Google has revealed that it paid out $10 million to over 600 bug hunters from 68 countries in 2023.

Throughout the year, Google's bug hunter community played a pivotal role in identifying and addressing thousands of vulnerabilities across various Google platforms. The company's dedication to incentivising researchers saw the introduction of several new programs and improvements to existing ones.

Among the notable developments was the launch of the Bonus Awards program,...

Microsoft’s latest Agility SDK packs cutting-edge graphics features

Microsoft has released the latest version of its Agility SDK, packed with innovative graphics features that will be showcased at the Game Developers Conference (GDC) 2024.

The SDK 1.613.0 introduces Work Graphs, Shader Model 6.8, GPU Upload Heaps, and several other enhancements aimed at empowering game developers to create more efficient, flexible, and creative experiences.

Work Graphs: Unlocking the full potential of GPUs

The highlight of the Agility SDK is Work...

Google improves Android device orientation accuracy

Google has announced a new device orientation solution for Android map developers called the Fused Orientation Provider (FOP) API in Play services. This API aims to provide more consistent and high-performance device orientation capabilities across devices.

“Device orientation, or attitude, is used as an input signal for many use cases: virtual or augmented reality, gesture detection, or compass and navigation – any time the app needs the orientation of a device in relation to...

Apple faces EU scrutiny for terminating Epic’s developer account

Apple finds itself under the European Union's microscope following its decision to terminate Epic Games’ developer account, blocking the gaming company from establishing its own app store for iPhone users in Europe. This move has reignited the ongoing feud between the two tech giants and raised concerns over potential violations of the EU's Digital Markets Act (DMA).

Epic Games – the creator of popular game Fortnite – expressed outrage after Apple abruptly ended its...

Java remains backbone of enterprise applications

Java is set to remain the stable backbone of enterprise applications, according to a new report from Perforce Software.

The 2024 Java Developer Productivity Report is based on a survey of 440 respondents across 72 countries. Among the key findings, 60 percent of respondents said their companies plan to add Java developers in the coming year, while 42 percent plan to increase their Java development tool budgets.

"These investments in tools and talent are testament to...

Google: Meta’s approach to Android 14 is a ‘blueprint’ for success 

Google has shed light on how Meta approaches tackling challenges and streamlining processes to enhance Android app development.

Following the rollout of Android 11, Meta embarked on a transformative journey, establishing the "Android OS Readiness Program." This move was prompted by identified hurdles concerning existing features such as Chat Heads and emerging requirements like scoped storage integration.

A major bottleneck in addressing these issues stemmed from...

GitHub enables secret scanning push protection by default

In response to the alarming trend of API keys, tokens, and other confidential data being inadvertently exposed, GitHub has taken further steps to fortify its platform against potential breaches.

Within the first two months of 2024, GitHub has uncovered one million leaked secrets across public repositories, averaging over a dozen incidents per minute. Such alarming figures underscore the pressing need for robust safeguards to protect users and their data.

Since August...

White House urges adoption of memory-safe programming languages

The White House Office of the National Cyber Director (ONCD) has released a new report today urging the technology industry to take steps to reduce vulnerabilities in software that leave digital systems open to cyberattacks.

The report, titled "Back to the Building Blocks: A Path Toward Secure and Measurable Software," emphasises the importance of technology manufacturers adopting memory-safe programming languages to prevent entire classes of vulnerabilities from entering the...

Python packages caught using DLL sideloading to bypass security

ReversingLabs researchers have uncovered Python packages using DLL sideloading to bypass security tools.

On 10 January 2024, Karlo Zanki, a reverse engineer at ReversingLabs, stumbled upon two suspicious packages on the Python Package Index (PyPI). These packages – named NP6HelperHttptest and NP6HelperHttper – were found to be utilising DLL sideloading, a known technique used by malicious actors to execute code discreetly and evade detection from security tools.

This...

Google releases Android 15 developer preview

Google has unveiled the initial developer preview of Android 15, showcasing a range of new features aimed at enhancing user privacy, refining advertising experiences, and improving overall device performance.

Dave Burke, Google's Vice President of Engineering, says a core focus was on advancing user privacy while maintaining personalised advertising capabilities through the latest version of Privacy Sandbox on Android. This addition aims to strike a balance between protecting user...