Security Risks In iOS And Android - InformationWeek

InformationWeek is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

IoT
IoT
Mobile
Commentary
11/30/2010
12:40 AM
Ed Hansberry
Ed Hansberry
Commentary
50%
50%

Security Risks In iOS And Android

Both Apple and Google are faced with security issues in their platforms that may put user's data at risk. The more computer-like smartphones become, the more they become at risk for having security holes and being the target of attackers to exploit those holes.

Both Apple and Google are faced with security issues in their platforms that may put user's data at risk. The more computer-like smartphones become, the more they become at risk for having security holes and being the target of attackers to exploit those holes.The security issue on iOS is with the Safari browser. An identity thief can hide the URL on the browser making it difficult for someone using an iPhone to accurately determine what site they are at. This phishing attack is worse than what is usually found on a PC. On a PC, you can generally avoid phishing by always paying attention to the URL in the browser's address bar. With the smaller screen of an iPhone, it is easier to hide the URL.

The proof-of-concept code is at Sans.org. So far there are no known public exploits and Apple has been notified of the issue, though there is no word when or if a fix will be available.

Google is also working on a patch for its Android operating system. This security hole allows a web site to get just about any data directly off of the devices SD card according to this InformationWeek article. The code can also retrieve some data from the device itself.

These and other risks are just part of the normal course of business on computing devices today. If Apple fixes its issue, it will be able to pass that to users very quickly through iTunes and remove the threat. Google though may have a harder time getting its fix into users hands. It doesn't own the update channel to the consumer. The hardware manufacturer or carrier does and they have often been slower to push updates to the consumer than Google has been at releasing updates in the first place.

This will be an interesting test to see if a security update spurs Google's partners to issue patches faster than they have issued other updates. Of course, Google has to write the patch for a number of older operating systems. They are only working on the patch for the Gingerbread release, but there are a lot of devices out there with this issue that don't run the latest. Now fragmentation isn't a nuisance, it is a potential threat to the safety of your data.

We welcome your comments on this topic on our social media channels, or [contact us directly] with questions about the site.
Comment  | 
Print  | 
More Insights
Slideshows
What Digital Transformation Is (And Isn't)
Cynthia Harvey, Freelance Journalist, InformationWeek,  12/4/2019
Commentary
Watch Out for New Barriers to Faster Software Development
Lisa Morgan, Freelance Writer,  12/3/2019
Commentary
If DevOps Is So Awesome, Why Is Your Initiative Failing?
Guest Commentary, Guest Commentary,  12/2/2019
White Papers
Register for InformationWeek Newsletters
State of the Cloud
State of the Cloud
Cloud has drastically changed how IT organizations consume and deploy services in the digital age. This research report will delve into public, private and hybrid cloud adoption trends, with a special focus on infrastructure as a service and its role in the enterprise. Find out the challenges organizations are experiencing, and the technologies and strategies they are using to manage and mitigate those challenges today.
Video
Current Issue
Getting Started With Emerging Technologies
Looking to help your enterprise IT team ease the stress of putting new/emerging technologies such as AI, machine learning and IoT to work for their organizations? There are a few ways to get off on the right foot. In this report we share some expert advice on how to approach some of these seemingly daunting tech challenges.
Slideshows
Flash Poll