The Executive Yuan yesterday said 98 government-made applications render their users highly vulnerable to hacking, adding that it would pull the apps from circulation if improvements are not made by the middle of the month.
Only 20 apps out of a total of 144 made by the Executive Yuan’s subordinate agencies passed all tests conducted by its evaluators, an Executive Yuan inventory report to the Legislative Yuan Internal Administration Committee said.
Of the remaining apps, 23 were found to have four to six vulnerabilities and 101 have one to three vulnerabilities, the report said.
The 98 apps that failed the tests pose a “high informational security risk” and the National Development Council last month instructed agencies to improve them before the middle of this month.
Those that fail to meet the deadline are to be pulled, Executive Yuan sources said.
The apps that posed a low risk should be improved before the end of July, sources added.
Apps with six vulnerabilities include the following: Tienkena’s Attack (進擊的鐵克納) by the National Science and Technology Museum, Mobile Water Manager (行動水管家) by Taiwan Water Corp (台灣自來水), Taiwan Railways eTicket (台鐵e訂通) by the Taiwan Railways Administration, Foreign Workers’ Little Assistant (外籍勞工小幫手) by the Workforce Development Agency and Accounting Mobile Go (統計隨身GO) by the Directorate-General of Budget, Accounting and Statistics.
During the budget review for this fiscal year, lawmakers on the Internal Administration Committee passed a resolution that said the Executive Yuan must review its apps for potential vulnerabilities that could compromise state secrets or users’ privacy or financial information.
According to the executive’s report, information security evaluations were conducted on the 144 apps that are available for download by 73 of its agencies.
The evaluations were performed according to the Industrial Bureau’s “guidelines for evaluating basic informational security of mobile applications,” it said, adding that the apps were tested on 10 to 16 protocols, including on their management of sensitive data, connection security and the validity of digital certificates.
The most common security issues were related to storage of sensitive data, vulnerabilities in software, invalid certificates for servers and others, the report said.
The National Development Council is to draft new standards for information security, which all future government-made apps must meet before distribution, the Executive Yuan said.
In addition, the Industrial Bureau is to incorporate informational security evaluation services into contracting guidelines for all agencies, it said.
Taiwan is stepping up plans to create self-sufficient supply chains for combat drones and increase foreign orders from the US to counter China’s numerical superiority, a defense official said on Saturday. Commenting on condition of anonymity, the official said the nation’s armed forces are in agreement with US Admiral Samuel Paparo’s assessment that Taiwan’s military must be prepared to turn the nation’s waters into a “hellscape” for the Chinese People’s Liberation Army (PLA). Paparo, the commander of the US Indo-Pacific Command, reiterated the concept during a Congressional hearing in Washington on Wednesday. He first coined the term in a security conference last
Prosecutors today declined to say who was questioned regarding alleged forgery on petitions to recall Democratic Progressive Party (DPP) legislators, after Chinese-language media earlier reported that members of the Chinese Nationalist Party (KMT) Youth League were brought in for questioning. The Ministry of Justice Investigation Bureau confirmed that two people had been questioned, but did not disclose any further information about the ongoing investigation. KMT Youth League members Lee Hsiao-liang (李孝亮) and Liu Szu-yin (劉思吟) — who are leading the effort to recall DPP caucus chief executive Rosalia Wu (吳思瑤) and Legislator Wu Pei-yi (吳沛憶) — both posted on Facebook saying: “I
The Ministry of Economic Affairs has fined Taobao NT$1.2 million (US$36,912) for advertisements that exceed its approved business scope, requiring the Chinese e-commerce platform to make corrections in the first half of this year or its license may be revoked. Lawmakers have called for stricter enforcement of Chinese e-commerce platforms and measures to prevent China from laundering its goods through Taiwan in response to US President Donald Trump’s heavy tariffs on China. The Legislative Yuan’s Finance Committee met today to discuss policies to prevent China from dumping goods in Taiwan, inviting government agencies to report. Democratic Progressive Party Legislator Kuo Kuo-wen (郭國文) said
The Ministry of Economic Affairs has fined Taobao NT$1.2 million (US$36,900) for advertisements that exceeded its approved business scope and ordered the Chinese e-commerce platform to make corrections in the first half of this year or its license would be revoked. Lawmakers have called for stricter supervision of Chinese e-commerce platforms and more stringent measures to prevent China from laundering its goods through Taiwan as US President Donald Trump’s administration cracks down on origin laundering. The legislature’s Finance Committee yesterday met to discuss policies to prevent China from dumping goods in Taiwan, inviting government agencies to report on the matter. Democratic Progressive Party