Share

Related Links

Related Stories

  • ISF details top ten future IT security threats
    Cybercrime is at the top of the Information Security Forum's (ISF) Threat Horizon list for 2011, which highlights the growth of `crimeware as a service' offered by criminal gangs, along with infiltration into organisations to carry out insider attacks.
  • ISF infosecurity standards incorporated into Acuity’s software
    The Information Security Forum (ISF) and London-based services and software provider, Acuity Risk Management, have signed an intellectual property (IP) licensing agreement to integrate ISF’s Standard of Good Practice for Information Security into Acuity’s STREAM risk and compliance management software.
  • Free mobile apps are not 'free' of malware, warns IEEE experts
    Institute of Electrical and Electronics Engineers' (IEEE) experts have uncovered malware in more than 2,000 free smartphone applications. Free rogue applications are expected to be the most common access point for mobile hackers over the next year.
  • The State of Smartphone Security
    An awful lot of lip service has been paid to smartphone security. Whereas most industry experts agree that, to date at least, smartphone security threats are mainly hype, that doesn’t mean this won’t change. Davey Winder investigates…
  • The 2010 US Infosecurity Virtual Conference - Conference Program available on demand.
    We are pleased to confirm that the last event, that was held on November 3rd 2010 is now available on demand. This one-day event brings a series of topical keynote sessions direct to your computer, giving you the flexibility to learn about the latest information security trends and challenges from wherever you are in the world.

Top 5 Stories

News

RSA Europe: ISF President warns mobile phones may be next platform for security threats

21 October 2009

Speaking with Infosecurity at the RSA Europe conference in London, Professor Howard Schmidt, the president of the Information Security Forum (ISF) said that mobile phones - rather than other high-profile platforms such as cloud computing - are the likely source of the next generation of security threats facing companies.

The reason, Professor Schmidt said, is that whilst you can walk into any computer store and buy an IT security package for your desktop computer, laptop or netbook, you cannot easily buy a similar application for the latest generation of smartphones.

Holding an Apple iPhone in one hand and a RIM Blackberry in the other, Professor Schmidt added that there is also the problem that no-one truly appears to be vetting the bulk of the applications being made available for smartphones.

"Sure, the app stores for the iPhone and the Blackberry are monitored and approved, but no-one is actually checking the code of many of these applications for security flaws, is the case with most PC or Mac applications," he said.

Professor Schmidt went on to say that, against this backdrop, there is a clear need for more positive vetting of smartphone applications, as they offer a backdoor for criminals and hackers into a company resource, especially since they are usually equipped for communication on multiple channels, including cellular, Bluetooth and WiFi.
 

This article is featured in:
Compliance and Policy  • Malware and Hardware Security • Wireless and Mobile Security

 

Comment on this article

You must be registered and logged in to leave a comment about this article.