-
New Zealand 231-9 as 'old school' West Indies exploit pace-friendly wicket
-
England spinner Jacks replaces injured Wood for second Ashes Test
-
Pope Leo to hold Beirut mass, visit port blast site
-
Australia opener Khawaja out of second Ashes Test with injury
-
Concern as India orders phone manufacturers to preload govt app
-
French talent Kroupi 'ready to suffer' to realise Premier League dream
-
New Zealand 231-9 as West Indies exploit bowler-friendly wicket
-
US Republicans sweat toss-up election in traditional stronghold
-
'Rescued my soul': Hong Kong firefighters save beloved pets
-
Suns eclipse shoddy Lakers, Mavs upset Nuggets
-
Seven footballers in Malaysia eligibility scandal 'victims': union
-
Patriots on brink of playoffs after Giants rout
-
Survivors, families seek answers to deadly Hong Kong ferry disaster
-
Race to get aid to Asia flood survivors as toll nears 1,200
-
Rugby World Cup draw: who, how and when?
-
Williamson falls for 52 as NZ reach 128-5 in West Indies Test
-
Hong Kong leader announces 'independent committee' to probe fire
-
South Korean leader calls for penalties over e-commerce data leak
-
Samsung unveils first 'special edition' triple-folding phone
-
Apple AI chief leaving as iPhone maker plays catch-up
-
Asian markets rise as US rate cut bets temper Japan bond unease
-
Weight of history against England in pink-ball Gabba Ashes Test
-
How South Korea's brief martial law upended lives
-
VR headsets take war-scarred children to world away from Gaza
-
'We chose it': PKK fighters cherish life in Iraq's mountains
-
US envoy to meet Russia's Putin for talks on ending Ukraine war
-
Pope Leo holds Beirut mass and visits site of port blast
-
'Quad God' Malinin ramps up Olympic preparations at Grand Prix Final
-
New Zealand 17-1 at lunch in rain-hit West Indies Test
-
Pacific island office enabling sanctions-busting 'shadow fleets'
-
White House gets scaled-down Christmas display amid ballroom work
-
GEN Announces New Positive Phase 1 Trial Data of the Investigational Drug SUL-238 for Alzheimer's and Other Neurodegenerative Diseases
-
White House confirms admiral ordered 2nd strike on alleged drug boat
-
Nigeria's defence minister resigns amid security crisis: presidency
-
From Honduras to Poland, Trump meddles in elections as never before
-
Trump holds Venezuela meeting as Maduro rejects 'slave's peace'
-
12 dead, dozens missing as landslide submerges boats in Peru port
-
Vardy's first Serie A double fires Cremonese past high-flying Bologna
-
Rich art: French pastry chefs auction chocolate sculptures
-
Cameroon sack coach Brys, drop goalkeeper Onana for AFCON
-
Son of Mexican crime lord 'El Chapo' pleads guilty in drug case: US media
-
Right-wing rivals for Honduras presidency in 'technical tie'
-
US upbeat on pushing Ukraine deal as envoy heads to Russia
-
European rocket puts S.Korean satellite in orbit
-
Trump to meet top national security team on Venezuela
-
US Supreme Court hears major online music piracy case
-
Pope gets rockstar welcome as he delivers message of hope to Lebanese youth
-
Iran sentences director Jafar Panahi to year in prison: lawyer
-
ICC vows to stand firm amid US sanctions
-
US to zero out tariffs on UK pharma under trade deal
| RBGPF | 1.54% | 79 | $ | |
| SCS | 0.55% | 16.38 | $ | |
| RYCEF | -2.68% | 13.83 | $ | |
| CMSC | -0.39% | 23.32 | $ | |
| GSK | -1.42% | 47.19 | $ | |
| VOD | -2.8% | 12.13 | $ | |
| RELX | -1.23% | 39.72 | $ | |
| RIO | 0.03% | 71.97 | $ | |
| NGG | -0.61% | 75.65 | $ | |
| CMSD | -0.13% | 23.29 | $ | |
| AZN | -2.44% | 90.52 | $ | |
| BCE | -0.09% | 23.49 | $ | |
| JRI | -0.15% | 13.78 | $ | |
| BCC | -1.18% | 75.13 | $ | |
| BTI | -0.91% | 58.13 | $ | |
| BP | 1.12% | 36.51 | $ |
Beijing Olympics organisers say app security flaws 'fixed'
An app that Winter Olympics attendees must use has been patched, a Chinese official told AFP Thursday, after cyber security researchers said they had found a "simple but devastating" flaw that could allow data leaks.
Next month's Games are being held in a bubble that separates participants from the rest of the population as part of China's strict zero-Covid policy.
Those taking part -- from foreign athletes, delegates and media to the army of local volunteers and officials -- have to download a health-tracking app called MY2022.
Users report their health status daily through the app which collects data including vaccination status and coronavirus test results, as well as travel and passport details.
Earlier this week researchers at the University of Toronto's Citizen Lab said they discovered the app's security flaws could allow data including health information and voice messages to leak, which could then be read by "eavesdroppers" such as Wi-Fi hotspot operators.
But a senior Chinese Olympic official said any bugs had now been fixed.
"There is definitely no data leakage," Beijing Olympics Organising Committee (BOCOG) tech chief Yu Hong told AFP, adding that the app's user and privacy guidelines were reviewed by the International Olympic Committee.
"The security loopholes have already been fixed. If they existed in earlier versions, they have been fixed in the latest version."
The app's developers have been in email contact with Citizen Lab since Wednesday, Yu added, promising that there will be "relevant discussions" on follow-up work.
Yu did not deny there may have been security flaws in previous versions of the app and she suggested that BOCOG had not been aware of them.
"During development we have continued to test and use it. When new usage conditions appear some new technological imperfections may be discovered, these can be called loopholes," she said.
- Data laws -
Citizen Lab earlier said it had notified organisers about the issues in early December but received no reply.
However, Yu said organisers never saw the request because it was sent to an old email address.
China's data security laws require that health and medical data be encrypted during transmission and storage.
The Citizen Lab report claimed that the app's inadequate encryption could violate Chinese law, as well as Google and Apple mobile software policies.
"China has a history of undermining encryption technology to perform political censorship and surveillance," researcher Jeffrey Knockel wrote in the report.
Researchers also discovered the app's Android code contained an apparently inactive blacklist of over 2,400 "politically sensitive" phrases, and that it had a separate function to report other users' speech for "politically sensitive content".
But organisers denied ever requesting these functions, and said they have asked the developer to look into it.
They added that app health data would primarily be shared with virus control authorities, after the report claimed this was unclear.
"Use of data by individuals and departments is only permitted after the IOC confirms it," Yu said.
China maintains the world's most sophisticated digital tools to monitor and censor the internet for its citizens, blocking major Western platforms such as Twitter, Facebook and YouTube.
In recent days, Olympic associations in multiple Western countries have warned athletes to leave personal devices at home and bring "burner" phones to China.
Analysts have also warned of cybersecurity risks such as data theft and surveillance targeting attendees using public Wi-Fi networks and official SIM cards provided by organisers.
However, organisers and the Chinese government have dismissed such concerns as unfounded.
"The government will not monitor individuals' phones in any form," Yu said.
The app also provides a range of daily living services for users, such as translation, weather, transport schedules and accommodation booking.
A.Gasser--BTB