
-
Puppet ban in Indonesian capital threatens buskers
-
White and Tupou to start for Wallabies in third Lions Test
-
Fritz beats rain, Carballes Baena, to advance in Toronto
-
Laos braced for blow of Trump tariff threat
-
United cruise over Bournemouth in Premier League US friendly
-
Most markets down as Fed holds and Trump announces fresh tariffs
-
McLaughlin-Levrone, Lyles headline US championships
-
Too much too young?: Swimming's dilemma over 12-year-old schoolgirl
-
Swiatek cruises, Osaka battles, Bouchard says goodbye in Montreal
-
China manufacturing sinks again in July as US trade talks stall
-
Vatican embraces social media 'digital missionaries'
-
'Silent killer': the science of tracing climate deaths in heatwaves
-
Seoul breaks century-long record with 22 'tropical nights' in July
-
Wallabies scrum-half Nic White calls time on career
-
Terrified by Trump raids, LA's undocument migrants hide at home
-
Tale of love, passion behind Mexico's 'boundary-pushing' Quintonil
-
Clock ticks on US tariff hikes as Trump broadens blitz
-
England and India set for final push in gripping Test series
-
Canada intends to recognize Palestinian state at UN General Assembly: Carney
-
Trump says US to impose 15% tariff on South Korean goods
-
Brazil Central Bank holds interest rate as tariffs loom
-
Ex-NBA star Arenas arrested on charges of hosting illegal poker games
-
Brazil Central Bank holds interest rate after seven straight hikes
-
Shelton ends Mannarino jinx in Toronto
-
Swiatek cruises, Osaka battles through in Montreal
-
Meta beats expectations sending share price soaring
-
Gaza civil defence says 30 killed in food queue by Israeli fire
-
Microsoft quarterly profits soar on AI and cloud growth
-
Airbus first-half profit climbs 85% to $1.7 bn
-
TikTok launches crowd-sourced debunking tool in US
-
'Ours forever': would-be Israeli settlers march on Gaza
-
Trump punishes Brazil with tariffs, sanctions over trial of ally Bolsonaro
-
US sprinter Kerley out of US trials
-
Ukraine will fix anti-graft law, minister tells AFP ahead of crucial vote
-
Tata Motors to buy Italy's Iveco for $4.4 bn
-
From skies over Gaza, Jordanian crew drops lifeline to civilians
-
US Fed holds firm against Trump pressure as divisions emerge
-
Michael Jackson's dirty sock sells for over $8,000 in France
-
Turkish city calls for help after heat tops 50C
-
Renault names Provost CEO after De Meo exit
-
Le Court makes history for Africa at women's Tour de France
-
Canada central bank holds rate steady citing US tariff 'threats'
-
Henry puts New Zealand in control of 1st Test against Zimbabwe
-
Stocks edge higher, dollar gains before tech earnings, Fed decision
-
Palestine Action wins bid to challenge terror ban in London court
-
EU urged to act on forests' faltering absorption of carbon
-
India secures return of ancient Buddhist gems
-
Stokes braced for 'emotional' tribute to late England batsman Thorpe
-
France's Luc Besson resurrects new 'romantic' Dracula
-
Trump hits India with 25% tariff and 'penalty' over Russia ties
SCU | 0% | 12.72 | $ | |
RBGPF | 0.52% | 74.42 | $ | |
CMSD | -0.26% | 23.06 | $ | |
SCS | -1.74% | 10.33 | $ | |
CMSC | -0.04% | 22.6 | $ | |
NGG | -0.47% | 70.19 | $ | |
RYCEF | -3.05% | 13.1 | $ | |
RELX | -0.27% | 51.78 | $ | |
BCC | -1.47% | 84.89 | $ | |
RIO | -4.67% | 59.49 | $ | |
BTI | 0.73% | 53.16 | $ | |
GSK | 3.34% | 38.97 | $ | |
JRI | 0.38% | 13.11 | $ | |
AZN | 3.41% | 76.59 | $ | |
BCE | -0.55% | 23.53 | $ | |
VOD | -0.45% | 11.06 | $ | |
BP | -2.2% | 32.25 | $ |

Mandatory Chinese Olympics app has 'devastating' encryption flaw: analyst
An app all attendees of the upcoming Beijing Olympics must use has encryption flaws that could allow personal information to leak, a cyber security watchdog said Tuesday.
The "simple but devastating flaw" in the encryption of the MY2022 app, which is used to monitor Covid and is mandatory for athletes, journalists and other attendees of the games in China's capital, could allow health information, voice messages and other data to leak, warned Jeffrey Knockel, author of the report for Citizen Lab.
The International Olympic Committee responded to the report by saying users can disable the app's access to parts of their phones and that assessments from two unnamed cyber security organizations "confirmed that there are no critical vulnerabilities."
"The user is in control over what the... app can access on their device," the committee told AFP, adding that installing it on cellphones isn't required "as accredited personnel can log on to the health monitoring system on the web page instead."
The committee said it had asked Citizen Lab for its report "to understand their concerns better."
Citizen Lab said it notified the Chinese organizing committee for the Games of the issues in early December and gave them 15 days to respond and 45 days to fix the problem, but received no reply.
"China has a history of undermining encryption technology to perform political censorship and surveillance," Knockel wrote.
"As such, it is reasonable to ask whether the encryption in this app was intentionally sabotaged for surveillance purposes or whether the defect was born of developer negligence," he continued, adding that "the case for the Chinese government sabotaging MY2022's encryption is problematic."
The flaws affect SSL certificates, which allow online entities to communicate securely.
MY2022 doesn't authenticate SSL certificates, meaning other parties could access the app's data, while data is transmitted without the usual encryption SSL certificates have, Knockel wrote.
While the app is transparent about the medical information it collects as part of China's efforts to screen Covid-19 cases, he said "it is unclear with whom or which organization(s) it shares this information."
MY2022 also contains a list called "illegalwords.txt" of "politically sensitive" phrases in China, many of which relate to China's political situation or its Tibetan and Uighur Muslim minorities.
These include keywords like "CCP evil" and Xi Jinping, China's president, though Knockel said it was unclear if the list was being actively used for censorship purposes.
Because of these features, the app may violate both Google and Apple policies around smartphone software, and "also China's own laws and national standards pertaining to privacy protection, providing potential avenues for future redress," he wrote.
T.Bondarenko--BTB