Cisa Adds Chinese Shopping App-Infected Android Zero
CISA Adds Chinese Shopping App-Infected Android Zero-Day to KEV Catalog Written by Ari Denial Cybersecurity & Tech Writer A Chinese e-commerce app Pinduoduo has been accused of exploiting a high-severity Android vulnerability as a zero-day to spy on its users, according to a warning issued by the U.S. Cybersecurity and Infrastructure Security Agency (CISA). The vulnerability, tracked as CVE-2023-20963 , is an Android Framework security flaw that enables attackers to elevate privileges on unpatched Android devices without user interaction....