App stores code of practice proposed to protect users from malicious apps

4 May 2022, 12:44

An app store
Technology stock. Picture: PA

App stores across devices would be required to boost security standards to better protect consumers under proposed new rules.

App stores on smartphones, games consoles, TVs and other devices could be asked to commit to a new code of practice setting out baseline security requirements, under new proposals put forward by the Government.

The Department for Digital, Culture, Media and Sport (DCMS) has asked for views from the tech sector on the plans.

They propose placing new security and privacy requirements on app developers as well as app stores, including compelling stores to have a vulnerability reporting process for every app and requiring more transparency from apps as to why they want access to personal information such as contact lists or a user’s location.

The plans come in response to a report from the National Cyber Security Centre (NCSC), which warns that personal data and finances are at risk because of fraudulent apps containing malicious software or poorly-developed apps which can be compromised by hackers.

DCMS said that despite the UK app market being worth £18.6 billion, there are few rules governing the security around the apps and the stores which host them – although all the major app stores do have their own terms of service and content rules.

“Apps on our smartphones and tablets have improved our lives immensely – making it easier to bank and shop online and stay connected with friends,” cyber security minister Julia Lopez said.

“But no app should put our money and data at risk. That’s why the Government is taking action to ensure app stores and developers raise their security standards and better protect UK consumers in the digital age.”

The NCSC said the proposed code of practice would help reduce the risk of malicious apps reaching consumers.

“Our devices and the apps that make them useful are increasingly essential to people and businesses and app stores have a responsibility to protect users and maintain their trust,” NCSC technical director Dr Ian Levy said.

“Our threat report shows there is more for app stores to do, with cybercriminals currently using weaknesses in app stores on all types of connected devices to cause harm.

“I support the proposed code of practice, which demonstrates the UK’s continued intent to fix systemic cybersecurity issues.”

DCMS said its call for views would be open until the end of June, with a response to the feedback then published later this year.

By Press Association

More Technology News

See more More Technology News

Person on laptop

UK cybersecurity firm Darktrace to be bought by US private equity firm

Mint Butterfield is missing in the Tenerd

Billionaire heiress, 16, disappears in San Francisco neighbourhood known for drugs and crime

A woman’s hand presses a key of a laptop keyboard

Competition watchdog seeks views on big tech AI partnerships

A woman's hands on a laptop keyboard

UK-based cybersecurity firm Egress to be acquired by US giant KnowBe4

TikTok�s campaign

What next for TikTok as US ban moves step closer?

A laptop user with their hood up

Deepfakes a major concern for general election, say IT professionals

A woman using a mobile phone

Which? urges banks to address online security ‘loopholes’

Child online safety report

Tech giants agree to child safety principles around generative AI

Holyrood exterior

MSPs to receive cyber security training

Online child abuse

Children as young as three ‘coerced into sexual abuse acts online’

Big tech firms and financial data

Financial regulator to take closer look at tech firms and data sharing

Woman working on laptop

Pilot scheme to give AI regulation advice to businesses

Vehicles on the M4 smart motorway

Smart motorway safety systems frequently fail, investigation finds

National Cyber Security Centre launch

National Cyber Security Centre names Richard Horne as new chief executive

The lights on the front panel of a broadband internet router, London.

Virgin Media remains most complained about broadband and landline provider

A person using a laptop

£14,000 being lost to investment scams on average, says Barclays