dae's weblog

there's no fiction like non-fiction!
  • Home
  • BlackBerry
  • iPhone
  • laptop
  • Prius
  • wishlist
  • random password
  • social networking
  • contact
en nl 
Home > biz, com > The #iPhone: Sleeping with the enemy

The #iPhone: Sleeping with the enemy

August 8th, 2009 Dae Punt Leave a comment Go to comments

This information is also available in: Nederlands

A while ago I discovered that, despite its fantastic looks, the iPhone is actually a very unsecure device and just the idea that it might be broken, lost or stolen one day is driving me crazy already. Time to act!

I decided to remove my company data, followed by my Gmail and today I’m only using my iPhone for Twitter and a digital shopping list. For me, personally, the features of my BlackBerry BES are the minimum standard of security and apparently it’s lonely at the top…

Even the use of Twitter is dangerous (if Twitter is online), because my favorite Twitter application SimplyTweet doesn’t use secure SSL to send my data to Twitter. Consider this: The whole security community shouts “SSL is insecure, use EV SSL instead”, while there are still companies, services and application who aren’t even using “plain” SSL… Even our Dutch Government and our National Banks barely see the need of SSL and given the demonstrated and obvious security flaws of SSL they don’t see the need to implement EV SSL, so why would you worry about it?

Tweetie, my previous favorite Twitter application has been using SSL for years. I just think that Tweetie was far ahead of its time and that’s probably why we haven’t seen an update of Tweetie ever since.

I think it’s incredible to see that many people don’t seem to care or think about possible loss or theft of their cell phone, what may happen to their data and the possible impact this may have on their position. And if nobody cares about it, why would the manufacturers of the devices? Except, of course, Canadian company Research in Motion…

Imagine the following scenario: You’re an accountant and you’re using email on a daily basis. You have a cell phone. Let’s say: a Nokia. You’ve had it or a while and it accommodates quite a lot of phone numbers. You’ve had your phone linked to your corporate Exchange server, which took some effort (certificate, software update for your device, sometimes it’s not working and WiFi has never really worked properly), but it allows your to read and reply an occasional email.

Now, imagines your phone being broken, lost or stolen.

Phone broken
Which information did you have on your phone? Did you poke around with that data cable or Bluetooth every day to copy your valuable contacts and appointments to your computer? Did that sunday afternoon of deleting double appointments invite you to try again later? No, of course, because it’s too much pain and too much software is involved. This means: what you don’t have elsewhere, you don’t have and that’s a shame.

Phone missing
If your phone is missing and you don’t know where it is, there may be a chance it’s at home, between two pillows on your couch, but it may also have been stolen. The problem is, that you don’t know and you have to assume you’re not going to find it again. First of all: block your SIM card, so the possible thief can’t call on your expense. ALWAYS secure your SIM card with a PIN code (and pick something a bit more difficult than 0000 or 1234), preventing the thief from calling between the moment your phone went missing until the moment you’ve had your SIM card blocked. And then your data. It’s not only gone, but somebody else is sitting on it. Somebody who only has to press hash-menu to gain access to your contacts, phone numbers, appointments, emails, text messages, notes and whatever I may have forgotten.

And this: What if your phone isn’t stolen, but you have a grateful collegue, competitor, “friend” or somebody who checks your phone from time to time to see if there’s any interesting news? I don’t know anybody with National Secrets on their phones, but your stuff is your stuff and everybody should stay away from it. Well, you can’t take care of that with your Nokia.

And what goes for Nokia, goes for the iPhone in a similar way. Linking your iPhone to your company server is easier than with Nokia, but the remaining data you hadn’t copied using the data cable goes missing if your phone does, nevertheless. And then security. Can you imagine Apple making an iPhone 3GS, allowing your data to be encrypted with a key, that is stored on your phone itself?!? You don’t have to be a genius to understand that this level of “protection” is just a thing from the Marketing Division, who wanted to put on the box that the iPhone 3GS supports Encryption…

Share
Categories: biz, com Tags: Apple, BlackBerry, encryption, EV SSL, Gmail, iPhone, Microsoft Exchange, nokia, security, ssl, Twitter, WiFi
  • Betty01

    I recently came across your blog and have been reading along. I thought I would leave my first comment. I don't know what to say except that I have enjoyed reading. Nice blog. I will keep visiting this blog very often.

    Betty

    http://cellularaccessoriess.com

blog comments powered by Disqus
What to do if upgrading to the latest @WPMU fails Restoration – Undelete files
RSS
  • Google
  • Youdao
  • Xian Guo
  • Zhua Xia
  • My Yahoo!
  • newsgator
  • Bloglines
  • iNezha
Twitter

random password

k8SrDKPW

tweet!

  1. Dae Punt
    Dae Punt: denkt: 17 graden om 09:17. Hoe warm zou het zijn om 09:40?!? #lineair #complot
    about 37 minutes ago

  2. Dae Punt
    Dae Punt: @gerdavenema Dank voor je #ff! :-)
    about 47 minutes ago

  3. Gerda Venema
    Gerda Venema: Inspiratiemannen #FF @michelvschaijk @guidoraanhuis @ontwerpburo @geoffsmith_pi @maikelkok @paulusveltman @daepunt @_roodbaard
    about 1 hour ago

tags

#socialnetworking @helzer @WPMU alpha Android APC backup bug citrix cloud compare education encryption event foc Foursquare Google Analytics google docs language Microsoft Hyper-V nightly build online out phishing PHP politics pre-alpha report search Shazam statistics syncsort technology TFTP tip trace tweetdeck ups VMware ESX wireshark WordPress MU wpml xen xenserver Yahoo!Pipes

RSS dae’s big catch

  • muzikale expositie Nollen
  • Opening expositie NuOn 28 Alkmaar
  • NIEUW: Arthur Japin – Vaslav
  • Schrijvende hoofdcommissaris van politie bij boekhandel Plukker
  • “De avond voor juf en meester” bij boekhandel Plukker
  • NIEUW: Esther Verhoef – Déjà vu
  • NIEUW: Loes den Hollander – Vluchtgedrag
  • TIP: Adler-Olsen – De vrouw in de kooi
  • TIP: Adler-Olsen – De fazantenmoordenaars
  • RESERVEER: Adler-Olsen – De noodkreet in de fles

RSS dae’s reading list

  • volkskrant: 'Zwangere vrouwen beter waarschuwen tegen alcohol' http://bit.ly/d0dpYU
  • xs4all: Storingsmelding XS4ALL: storing koffiemachine http://bit.ly/9dcz4m *NH
  • rspruijt: #Cisco and #Citrix partner to further enhance the desktop virtualization ecosystem: http://bit.ly/bFDsps
  • jesus: I just wanted to clear the air now that it's been a while... I had NOTHING to do with that horrible ending to LOST.
  • mashable: Google’s Color-Changing Logo and What the Company Is About to Announce - http://mash.to/2AV2G
  • MSWindows: Windows 7 + @Office 2010 = better together: http://cot.ag/9nZUVU ^JS
  • mashable: HOW TO: Set Up Missed Call Notifications in Google Voice - http://mash.to/2ANZP
  • Office: It can take time to learn all abt Office 2010. Check out these free migration guides to get a jump start: http://cot.ag/9ClF33
  • paulrouget: #firefox4 & hardware acceleration: demo & screencast http://mzl.la/bsw113
  • RWW: The Big Picture: News Hound Eye Candy for Your iPad http://rww.tw/cqQLxA

RSS useful

  • 4SQ
  • Aardvark
  • Are You Certifiable?
  • BlackBerry Latest Operating Systems
  • Byte Partners
  • Common Craft
  • De Telefoongids
  • Dropbox
  • Free Secure Email Certificates Digital Signature for Email Security
  • Free Websites Performance, Availability, Traffic Monitoring
  • Get Satisfaction!
  • Google Apps
  • Google Gmail
  • Google Webmaster Tools
  • Gowalla
  • Hallmark
  • HootSuite
  • How to access/enter Motherboard BIOS
  • Jing rocks!
  • LinkedIn Events

RSS support

  • Are You Certifiable?
  • How to access/enter Motherboard BIOS
  • MS File Checksum Integrity Verifier FCIV
  • MS Windows Team Blog
  • Meulenhoff Boekerij
  • Mynx
  • NFGDump
  • Nivon Natuurvrienden
  • PPAU
  • Prometheus Bert Bakker
  • Sophos Anti-Virus
  • Sophos Enterprise Console: 1 server with more than 1 NIC
  • Veronica Magazine
  • XS4ALL
  • pfSense

RSS unfiled

  • DevCon - an alternative to Device Manager command-line utility | Windows Reference
  • Twitter for Business
  • Increasing System Performance Without Adding Memory in Windows 7 - c01817290
  • Uh-oh: Russische oligarch koopt ICQ
  • Security Considerations when Configuring Folder Redirection
  • How to disable browser ballot screen in Windows | Symantec Connect
  • De kracht van koffiedaten - Carrièretips VKbanen - Solliciteren, CV schrijven, assessment
  • epicfu
  • Let me google that for you
  • Sophos: Operation Aurora
  • Postini: Google's take on e-mail security | Security - CNET News
  • The Golden Ear - pfSense 1.2 Firewall Appliance Guide
  • TED | Talks | List
  • WPML users forum
  • Tweetboard Support :: Open requests

RSS Department Schagen

  • NOORD-HOLLAND BIËNNALE 2010
  • Nieuwe expo Markt 18
  • Uitnodiging
  • Uitnodiging
  • uitnodiging

RSS Aad Holkamp

  • Lutjestrand bingo 2010 [Flickr]
  • Lutjestrand bingo 2010 [Flickr]
  • Lutjestrand bingo 2010 [Flickr]
  • Lutjestrand bingo 2010 [Flickr]
  • Lutjestrand bingo 2010 [Flickr]

links

  • @vark
  • AAB
  • AAB CC
  • AMEX
  • Analytics
  • bit.ly
  • Brightkite
  • Byte
  • cli.gs
  • del.icio.us
  • Dipity
  • Docs
  • Facebook
  • FeedBurner
  • Flickr
  • Fortis Bank
  • FriendFeed
  • gdgt
  • Google Wave
  • Hyves
  • iDC
  • LinkedIn
  • MailChimp
  • Mobypicture
  • MySkyStatus
  • MySpace
  • Orkut
  • OV-chip
  • ping.fm
  • Plaxo
  • rss-en
  • rss-nl
  • Seesmic
  • Skype
  • threadsy
  • TwAnalyzer
  • TweetStats
  • Twitnest
  • Twitter
  • TwitterFeed
  • Woopra
  • WordPress
  • Y!M
  • Y!P
  • Youtube

RSS alsoblog

  • Aad Holkamp
  • BAC ICT ROC
  • Connect Social Networks
  • Erik Rigters
  • Erik Stam
  • Familie Groot
  • Familie Jones
  • Familie Wezelman
  • Geertje Wezelman
  • Greet van den Berg
  • Hans Kuijpers
  • Hans Rijnders
  • Henriette Cramer
  • Herman Hendriks
  • Hugo van Waard
  • ITbende
  • Inga Broerse
  • Isa Nederbergh
  • Jae Punt
  • Karin Punt

archive

  • June 2010 (1)
  • May 2010 (2)
  • February 2010 (3)
  • January 2010 (1)
  • December 2009 (3)
  • November 2009 (2)
  • October 2009 (1)
  • September 2009 (6)
  • August 2009 (4)
  • July 2009 (18)
  • June 2009 (15)
  • May 2009 (1)
Top WordPress
Copyright © 2003-2010 dae's weblog
Theme by NeoEase. Valid XHTML 1.1 and CSS 3.