The InformationWeek -- Blogs
Welcome Guest. | Log In| Register | Membership Benefits

Over The Air

Topics:   Mobile

  • Email this page E-mail this page
  • Print this page Print this page
  • Bookmark and Share
  • icon

"Cough! Cough!" Yes, That Was Your Smartphone Wheezing At You


Posted by Eric Zeman, Jan 26, 2007 09:39 AM

Believe it or not, the first mobile viruses began appearing back in mid-June 2004. The Cabir worm and Mosquito Trojan both targeted smartphones that run the Symbian Series 60 operating system, which is the most widely used smartphone platform across the world. Others targeting Windows Mobile appeared later. Should the enterprise be concerned? Hell, yeah!


With wireless devices becoming more sophisticated all the time (I found an app that let's my BlackBerry manage my multiple personality disorder), malicious jerks have decided to have even more fun at our expense (apparently destroying our hard drives, sending billions of spam messages from our IP addresses or accessing our bank accounts just isn't enough for them).

While your average run-of-the-mill Java or BREW phone (read: crappy feature phone) is probably safe for the time being, phones that run Symbian, Windows Mobile, Palm OS and RIM OS are much more at risk and it's surprising to see how quickly and in how many ways naughty code writers have found to use abuse them. With more and more sensitive corporate data stored on these devices, mobile viruses are a rising threat that can't be ignored by the enterprise.

Unfortunately for IT departments, this means being the bad guy for a while, as there are some simple ways to protect enterprise data from this threat.

1. Don't let employees back-door the devices in. If they buy a smartphone over the weekend and want you to activate enterprise email, access, whatever, come Monday morning, tell them tough luck. I don't care if it's the CEO. Don't forget that employees are sneaky, and don't like hearing no for an answer. You may have to buy software that sniffs out unauthorized devices (the CEO's Treo, that S.O.B.!) that are accessing the network and pro-actively find them and terminate their access. (Don't worry, the CEO should thank you for protecting his network.)

2. Create strict policies for mobile equipment. Decide what can be accessed and what can't. Force employees to use security features, passwords, on-device encryption and so on. Make them pick hard passwords. Forbid employees from downloading anything not directly related to work, like games or wallpapers of Miss January.


3. Install antivirus software on the devices. Believe it or not, there is already an industry swelling here. Talk to your wireless carrier about the best options.

4. Control the phones' Bluetooth. Even though it's fun to say "Bluejacking" and "Bluesnarfing", Bluetooth has become an easy entry point for mobile viruses. Cabir took advantage of Bluetooth to sneak inside handsets and place calls to expensive 1-900 numbers, running up the bills.

5. Educate employees. Most people haven't heard of mobile viruses, and may not really believe in them. With threats to security increasing all the time, you should hold regular meetings or provide regular updates to inform employees about the risks they and their devices face every day.

If employees come to hate the IT managers for being strict policy enforcers, too bad. They aren't at work to be liked, they are there to keep the network and its data protected.

« HP, Alas, Why Did Ye Stray? | Main | Nokia Mobile Enterprise Still Losing Money »



Sign Up Now
For InformationWeek News Alerts




This is a public forum. United Business Media and its affiliates are not responsible for and do not control what is posted herein. United Business Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of United Business Media LLC and may be edited and republished in print or electronic format as outlined in United Business Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.




 
Mobile Video


Sign Up For The Over The Air Newsletter
Every Friday, our experts and analysts explore the business, strategy, and management issues most important to mobile and wireless technology.

Sign up for our free, weekly newsletter today!

Newsletter Archives


 

  1. HPC Joins the Dummy Revolution?
  2. Detecting Scalability Problems With Intel Parallel Universe Portal
  3. Just Say No To SFAQL Parallelism


Join The InformationWeek Group On LinkedIn


                           


  1. Microsoft Seeks Patent For Cloud Data Migration
  2. Is Wave A 'Concept Car' For Google?
  3. Famous Password Auditing Tool, L0phtCrack Is Back


  1. Bing Launches Streetside Maps
  2. BMC Boosts Proactive Systems Management
  3. Facebook Revamp Draws Mixed Reactions
  4. Global CIO: Outsourcer HCL To Cut Insurer's Costs By $150 Million
  5. NEC Offers Low-Power Business Monitor
  6. Micron Releases SSD With Fast, New Interface

 

  Ars Technica
Boing Boing
Channel 9 Forums
CRN Blogs
Dr.Dobb's Portal: Blogs
Engadget
Gizmodo
GrokLaw
  Lifehacker
Schneier on Security
Slashdot
TechCrunch
Techdirt
Techmeme
Valleywag

  DECEMBER 2008
NOVEMBER 2008
OCTOBER 2008
SEPTEMBER 2008
AUGUST 2008
JULY 2008
JUNE 2008
MAY 2008
  APRIL 2008
MARCH 2008
FEBRUARY 2008
JANUARY 2008
DECEMBER 2007
NOVEMBER 2007
OCTOBER 2007
SEPTEMBER 2007