Security News

Storj DCS now helps developers build on the decentralized cloud with ease
2021-04-22 01:00

Storj announced a new multi-tenant, S3-compatible gateway that enables developers to easily take advantage of the unsurpassed privacy and security benefits of Storj DCS. The new Storj DCS product replaces the company's Tardigrade offering and delivers a new onboarding experience, lower pricing, and added features so developers can start building on the decentralized cloud with ease. The update also includes new features like multi-part upload that improve performance when storing large objects on Storj DCS. "Developers love the simplicity of the cloud but are increasingly finding themselves conflicted with the privacy and security shortcomings of centralized cloud storage providers," says Ben Golub, Storj Executive Chairman and CEO. "New technologies and approaches like decentralization and the Storj DCS multi-tenant gateway mean developers can have better ownership and control of their data at a lower cost and without any extra effort, so they can build more secure and private applications."

1Password targets developers with Secrets Automation, acquisition of SecretHub
2021-04-13 20:53

Password specialist 1Password has acquired SecretHub, a secrets management platform aimed at IT engineers, and made a new service called Secrets Automation, previously in beta, generally available. Secrets Automation uses a Connect Server, delivered as a Docker container, which users deploy in their environment.

PHP Developers Share Update on Recent Breach
2021-04-08 12:09

The developers of the PHP scripting language have shared an update on the recently disclosed breach in which attackers planted malicious code. Php.net server and it was apparently designed to allow an attacker to remotely execute arbitrary PHP code.

Tips for robotics developers
2021-03-30 20:38

KODA advising CTO John Suit discusses the skills and languages that are important for developers who want to build software and systems for modern robots.

Why it's time the Android developers rethink WebView
2021-03-23 17:53

Even back in the early days, WebView was problematic because, with a JavaScript bridge enabled, a webpage viewed in WebView could execute code as the WebView application itself. There's the app itself, there are the Android subsystems, there are the apps that depend on WebView, there are the developers who might make use of JavaScript, which then depends on a third-party server that may or may not use SSL properly.

CTO.ai serverless platform simplifies adoption of Kubernetes for developers
2021-03-22 03:00

CTO.ai announced the launch of its serverless Kubernetes platform that makes it easy for developers to deploy and manage their cloud native applications. This powerful, yet easy-to-use, platform makes product delivery teams more efficient and eliminates the complexity experienced by developers when applications are deployed on top of a self-managed Kubernetes cluster.

DFRobot launches Gravity series hardware modules used by developers worldwide
2021-03-22 02:00

DFRobot Gravity series is a set of professional open-source hardware modules. Till now, the Gravity series has been used by more than 1 million developers worldwide and used in a broad range of applications, like AI, environmental monitoring, IoT, smart homes, etc.

Hackers Infecting Apple App Developers With Trojanized Xcode Projects
2021-03-20 08:44

Cybersecurity researchers on Thursday disclosed a new attack wherein threat actors are leveraging Xcode as an attack vector to compromise Apple platform developers with a backdoor, adding to a growing trend that involves targeting developers and researchers with malicious attacks. Dubbed "XcodeSpy," the trojanized Xcode project is a tainted version of a legitimate, open-source project available on GitHub called TabBarInteraction that's used by developers to animate iOS tab bars based on user interaction.

iOS app developers targeted with trojanized Xcode project
2021-03-19 14:41

"We recently became aware of a trojanized Xcode project in the wild targeting iOS developers thanks to a tip from an anonymous researcher. The malicious project is a doctored version of a legitimate, open-source project available on GitHub," SentinelOne researchers have warned. The trojanized Xcode project in question is TabBarInteraction, which offers iOS developers features for animating the iOS Tab Bar based on user interaction - though the researchers have been quick to note that the code in the Github project is currently clean, and that the developer is not implicated in any way with the malware operation.