News & Information for Technology Purchasers NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
Home Enterprise I.T. Cloud Computing Applications Hardware More Topics...
Build Apps 5x Faster
For Half the Cost Enterprise Cloud Computing
On Force.com
You are here: Home / Apple/Mac / Users' Behavior Blamed for Mobile Risk
Is your endpoint data protected?
Report: Users' Behavior Key Driver for Mobile Security Risks
Report: Users' Behavior Key Driver for Mobile Security Risks
By Barry Levine / NewsFactor Network Like this on Facebook Tweet this Link thison Linkedin Link this on Google Plus
PUBLISHED:
FEBRUARY
13
2013



Mobile malware is "still in its infancy," but key threats come from risky user behavior, like visiting porn sites or downloading unverified apps. And, as the largest mobile platform, Android's vulnerabilities are increasingly being targeted. Those are some of the key takeaways in a new report on mobile security.

Online security firm Blue Coat Systems' 2013 Mobile Malware Report is subtitled How Users Drive the Mobile Threat Landscape. As mobile malware increases, the report said, one of the biggest drivers of security problems is user behavior. This includes responding to spam or phishing, or visiting porn sites, where "the risk of finding malicious content is nearly three times as high as any other behavior." User behavior in mobile environments, the report said, is "the Achilles' Heel."

The other user-driven behavior is really a large trend, not specific individual behavior. The "bring your own device," or BYOD, movement is the bane of many IT departments, but the desire on the part of employees to use their own phones, tablets or other mobile devices appears to be a permanent part of the landscape. A recent IDG Global Mobility Study, for instance, found that 70 percent of employees using corporate networks employ a personally owned smartphone or tablet, and 80 percent of employees access their corporate e-mail from personal devices.

'Goes with the Territory'

Laura DiDio, an analyst with Information Technology Intelligence Consulting, noted IT departments are "weary" of BYOD but, with Android being so popular and with employees determined to use their own devices, handling mobile security threats "goes with the territory."

The Blue Coat report noted that mobile threats last year "were a relatively small but growing percentage of overall traffic." It pointed out that "mobile malware that truly breaks the security model of the phone is still in its infancy," with little evidence of such attacks except for some that have targeted the Android platform. In the July to September 2012 period alone, Blue Coat saw a 600 percent increase in Android malware over the same period in 2011.

Employees should be aware that some user-directed attacks might be more successful on a mobile device than they otherwise would, according to the report. It pointed to the example of a grammatically correct, perfectly formatted Paypal phishing e-mail that said suspicious activity had been detected on the user's Paypal account. The e-mail added that the account was blocked until the user verified it by clicking on the enclosed link.

Fake Angry Birds Download

But, as is typical on a mobile device, the link was shortened by a service such as bitly, a user cannot hover over the link to see the true URL, and users expect a mobile Web site, even a fake one that was the target of such a link, to look and act differently than desktop ones. In fact, mobile versions of legitimate Web sites are sometimes hosted by entities other than the actual owner.

Mobile ads are another vulnerability that prey on user behavior. Several other security firms, such as Lookout Mobile Security last July, have noted that some ad providers, while not cybercriminals, are using their ads in free mobile apps to access personal information without the user's notification or consent.

The Blue Coat report said mobile ads were the fourth-ranked threat vector for mobile users, including fake ads offered by cybercriminals. In one example, a fake ad led to a fake Angry Birds download, which delivered a Trojan that sent premium text messages to the malware host, running up a bill without the user's knowledge.

Tell Us What You Think
Comment:

Name:

Like Us on FacebookFollow Us on Twitter
TOP STORIES NOW
MAY BE OF INTEREST
IT departments are embracing cloud backup, but there's a lot you need to know before choosing a service provider. Learn all the critical things you need to know by accessing the white paper, "5 Things You Didn't Know About Cloud Backup". Access the White Paper now.
MORE IN APPLE/MAC
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
Russian Gang with Stolen IDs Hacks Hosting Company
In August, a Russian cyber gang obtained what researchers called “the largest cache of stolen data." Now, those hackers may be putting their ill-gotten gains to criminal use.
 
Dairy Queen Latest Retailer To Report Hack
Known for its hot fries and soft-serve ice cream, Dairy Queen just made cyber history as the latest victim of a hack attack. The fast food chain said that customer data at some stores may be at risk.
 
Lessons from the JPMorgan Chase Cyberattack
JPMorgan Chase is investigating a likely cyberattack. The banking giant is cooperating with law enforcement, including the FBI, to understand what data hackers may have obtained.
 

Enterprise Hardware Spotlight
AMD's New FX Series CPU Breaks Processing Speed Record
The new FX-8370 processor from Advanced Micro Devices has set a record for silicon processor speed, the company announced. Overclocked, the eight-core chip was measured at 8722.78 MHz.
 
Intel Intros Lightning-Fast PC Processors
Call it extreme. Intel just took the covers off its first-ever eight-core desktop processor, which is aimed at hardcore power users who expect more than the status quo from their computers.
 
HP Previews ProLiant Gen9 Data Center Servers
Because traditional data center and server architectures are “constraints” on businesses, HP is releasing new servers aimed at faster, simpler and more cost-effective delivery of computing services.
 

Mobile Technology Spotlight
Rumor Mill Puts Mobile Wallet in iPhone 6
Apple is moving toward the mobile wallet world with its next iPhone. The tech giant has partnered with retailers, banks and major payment networks to make it happen, according to Bloomberg.
 
Will iPhone Finally Catch Up with NFC Mobile Payment Ability?
Apple's latest version of the iPhone may have a mobile wallet to pay for purchases with a tap of the phone. The iPhone 6 reportedly is equipped with near-field communication (NFC) technology.
 
Visual Search To Shop: Gimmick or Game Changing?
Imagine using your phone to snap a photo of the cool pair of sunglasses your friend is wearing and instantly receiving a slew of information about the shades along with a link to order them.
 

Navigation
NewsFactor Network
Home/Top News | Enterprise I.T. | Cloud Computing | Applications | Hardware | Mobile Tech | Big Data | Communications
World Wide Web | Network Security | CRM Systems | Microsoft/Windows | Apple/Mac | Linux/Open Source | Personal Tech | Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.