Google Search

Showing posts with label Devices. Show all posts
Showing posts with label Devices. Show all posts

Monday, May 12, 2014

Strong software protection needed for mobile devices

The massive adoption of mobile computing platforms creates the urgent need for secure application execution on such platforms. Unfortunately, today's mobile platforms do not support strong security solutions equivalent to smartcards in set-top boxes or to dongles to reliably control licensing terms. Furthermore, many of these mobile devices are shared for professional and private applications, and are thus intrinsically hard to control and secure.

Michael Zunke, chief technology officer of SafeNet's Software Monetization Business Unit states that "Security is ever more essential as an enabler for the sustainable innovation of mobile applications and services. Security solutions based on custom hardware security components like dongles and smart cards are not a natural fit for these mobile environments. The industry therefore needs a comprehensive security framework in which software protection is the key ingredient."

According to Brecht Wyseur, NAGRA's security architect, the big challenge in the next years will be to increase the security level of software solutions to allow for both cost effective deployment and long-term renewability, either stand-alone or in combination with a hardware root of trust.

Hence, more research is needed to come up with a solution that is strong enough to be a viable solution for an increasing number of applications in which privacy and security are essential. The ASPIRE project will create the ASPIRE software security framework which will develop, combine and integrate five different types of software protection techniques into one easy to use framework. It will deliver comprehensive, effective security metrics and a decision support system to assist the software developer.

"The integrated tool chain will allow service providers to automatically protect the assets in their mobile applications with the best local and network-based protection techniques," notes Bjorn De Sutter, coordinator of the project, adding that "ASPIRE will make mobile software more trustworthy by leveraging the available network connection and by developing a layered security approach of strong protections. We will also make it measurable by developing practical, validated attack and protection models and practical metrics."

Story Source:

The above story is based on materials provided by Ghent University. Note: Materials may be edited for content and length.


View the original article here

Monday, July 11, 2011

Hackers to Target Apple Devices?

{"s" : "aapl,amzn,c,ek,emc,erts,goog,lmt,nok,sne","k" : "a00,a50,b00,b60,c10,g00,h00,l10,p20,t10,v00","o" : "","j" : ""} Zacks Equity Research, On Friday July 8, 2011, 4:55 pm EDT

German authorities have identified potential security flaws in Apple Inc.’s (NasdaqGS: AAPL - News) devices such as iPhone, iPad and iPod that are feared to be vulnerable to cyber attacks. According to reports from the Associated Press, German security agencies cautioned that the security hole may be exploited by hackers to steal confidential data from the devices.

Germany's Federal Office for Information Security is of the opinion that hackers can infect Apple devices by sending malicious emails in the form of Portable Document Formats (PDF). Thereafter, once the unaware users are deceived to open the PDFs, the hackers will get accessibility to the administrative rights of the devices.

In such a case, hackers have the access to steal or use confidential information such as passwords, online-banking data, calendars, e-mails and intercept telephone conversations and the location of the user.

Meanwhile, Apple commented that the security issue will be resolved as it is in the process of plugging the loophole in its security by an upcoming software upgrade, which will be available for its iPhone, iPad and iPod touch devices.

Incidentally, this German agency had found another flaw in Apple software last year. That time, Apple had successfully fixed the issue with a software patch.

So far, however, it has been noticed that these attacks on smartphones and other handheld Internet gadgets has been rare. Hackers have been much more focused on PCs. However, we believe that with the growing use of smartphones and other Internet gadgets, as well as the growing ecommerce on these devices, hacking attacks will no doubt increase.

In the present day scenario, users seem to put down every bit of information in the smartphones, ranging from bank account numbers, social security numbers, as well as passwords to access other varied and important data.

We therefore believe that smartphone makers should be more careful while securing the devices as its vulnerability will have a profound impact on its user.

Looking Back at High Profile Hacking Incidents

Cyber security has emerged as the most discussed topic in the technology market over the last few months. As corporations, government agencies, banks and video game companies have been plagued by cyber attacks, online security has become a major concern for all.

However, the last few months have been particularly embarrassing for cyber security providers such as EMC Corp. (NYSE: EMC - News), after some high-profile hacking was reported at Sony Corp. (NYSE: SNE - News), EMC’s own RSA division, defense contractor Lockheed Martin Corp. (NYSE: LMT - News), banker Citigroup Inc. (NYSE: C - News), search company Google Inc. (NasdaqGS: GOOG - News), video game companies Electronic Arts Inc. (NasdaqGS: ERTS - News) and Sega Sammy Holdings Inc.

Moreover, government agencies like the IMF and CIA were also targeted. The Oak Ridge National Laboratory, which works closely with the U.S. Energy Department, also fell prey to cyber attack. In February 2011, France’s finance ministry suffered a cyber attack, aimed at stealing files on the G-20 summit in Paris.

Amid the growing number of cyber attacks, corporations and companies both in the private and public sector are looking for stricter and more stringent cyber security measures to plug the loopholes in the system.

For detailed report, read: Security -- Top Priority in 2011

Recommendation

Apple is a great company with a loyal customer base, international expansion, competitive pricing strategy and a solid cash position. We remain positive on Apple’s long-term growth. However, increasing competition in most of its major product segments, possible delays in product launch, higher operating expenses and increasing legal complexities compel us to maintain our Neutral rating over the long term (6-12 months).

Of late, Apple has been in a spot with all the legal battles pertaining to patent rights with HTC, Eastman Kodak Co. (NYSE: EK - News), Samsung and Amazon.com Inc. (NasdaqGS: AMZN - News). Moreover, Apple has settled the patent dispute with Nokia Corp. (NYSE: NOK - News), but will have to make a one-time payment to the latter and is to pay regular royalties going forward. Financial details were not divulged.

More importantly, Apple has received unfavorable verdicts in a couple of cases at the International Trade Commission (ITC). As ITC has the authority to block import of products that infringe U.S patents, the lawsuits could cause a dent in Apple’s very sizeable cash balance. It may have to pay a hefty fine or a recurring license fee, which will hurt its profitability going forward.

Currently, Apple has a Zacks #3 Rank, which implies a Hold rating in the near term.

APPLE INC (AAPL): Read the Full Research Report

ELECTRONIC ARTS INC (ERTS): Read the Full Research Report

GOOGLE INC CL A (GOOG): Read the Full Research Report

AMAZON.COM INC (AMZN): Read the Full Research Report

NOKIA (NOK): Read the Full Research Report

E M C CORP MASS (EMC): Read the Full Research Report

EASTMAN KODAK CO (EK): Read the Full Research Report

CITIGROUP INC (C): Read the Full Research Report

LOCKHEED MARTIN CORP (LMT): Read the Full Research Report

Zacks Investment Research


View the original article here