University researchers created a browser-based JavaScript that leverages a phone’s smart device sensor data to steal PINs.

Samsung Tizen Security ‘Feels like 2005’
A researcher at the Security Analyst Summit described the insecure state Samsung’s Tizen operating system.

Baseband Zero Day Exposes Millions of Mobile Phones to Attack
A previously undisclosed baseband vulnerability impacting Huawei smartphones, laptop WWAN modules and IoT components was revealed Thursday at the Infiltrate Conference

Chrome Security Team Tackles ‘Friendly Fire’ To Keep Browser Safe
Justin Schuh, lead engineer of Chrome Security, said ensuring browser security for Chrome users is a balancing act juggling OEM pressures, questionable certificate authorities and quashing third-party software incompatibility issues.

Trump Signs Repeal of ISP Privacy Rules
President Trump signed a resolution to complete the overturning of internet privacy protections that would have prevented ISPs from tracking you online without first asking users to opt-in.

Android Variant of Notorious Pegasus Spyware Found
Researchers say a variant of the notorious surveillance software called Pegasus has been targeting Android users allowing third parties to take screenshots, capture audio, read email and exfiltrate data from targeted phones.

Verizon Rebuts Critics of Data-Collecting App
The Electronic Frontier Foundation retracted a blog post today highly critical of Verizon and the upcoming rollout of an app called AppFlash made by Evie Labs.

Experts Doubt Hackers’ Claim Of Millions Of Breached Apple Credentials
Security experts say they are skeptical that a group called Turkish Crime Family actually possess a cache of hundreds of millions of Apple iCloud account credentials.

Adware Apps Booted from Google Play
More than a dozen apps removed from Google Play store after it was determined they were overly aggressive adware.

Threatpost News Wrap, March 27, 2017
The latest Wikileaks dump of Apple hacking tools, the LastPass vulnerabilities, and a new Android security report are discussed.