Most Popular in Apple
-
Coolest keyboard ever
-
A fix for those "Pairing Record Missing" errors
-
Presidents Obama, Clinton pay tribute to Steve Jobs at Webbys
-
Review & Swatches: MAC 'Lovelorn' Lipstick
-
Amtrak conductors to "punch your ticket" using iPhones
-
Fieldrunners 2 coming next month
-
Daily iPhone App: Inertia: Escape Velocity HD
-
5 apps for Moms on Mother's Day
-
Choose your OS! (a guide)
-
Best of 2011 Nominations: iPhone accessories
Why Apple's "walled garden" is a good idea
Many developers and users of Apple's iOS devices bemoan the "walled garden" of the App Store approval process, but it appears that the company's measures have prevented mass data theft from iPhones, and iPads.At the Black Hat security conference being held in Las Vegas this week, mobile security firm Lookout announced that an app distributed in Google's Android Market had collected private information from millions of users, then forwarded it to servers in China. Worse than that, the exact number of affected users isn't known, since the Android Market doesn't provide precise data. Estimates are that the app was downloaded anywhere from 1.1 million to 4.6 million times.
The app appeared to simply load free custom background wallpapers, but in fact collected a user's browsing history, text messages, the SIM card number, and even voice mail passwords, and then sent the data to a web site in Shenzen, China.
This is different from the recent AT&T website leak that could have let a hacker access 144,000 iPad 3G user email addresses, since in this case the data theft actually did happen, was being perpetrated by malicious hackers, involves much more personal information, and affected many more people.
So what's the difference between the security methodologies used by Google and Apple? Apple approves iOS apps only after they've gone through a strict (and frustrating to developers) process, while Google's Android Market simply warns the user that an app needs permission to perform certain functions during the installation. iOS apps must be signed by an Apple-created certificate, which means that malicious developers have a harder time distributing malware anonymously.
Lookout also noted that iOS remains virus-free, since third-party apps can only be distributed through Apple's heavily-moderated App Store, and the apps run in a sandbox environment where they can't affect the system. Lookout chief executive John Hering said that "he believes both Google and Apple are on top of policing their app stores." It's just those odd cases where apps don't do what they're advertised to do that can cause problems for users.
[via AppleInsider]
TUAWWhy Apple's "walled garden" is a good idea originally appeared on The Unofficial Apple Weblog (TUAW) on Thu, 29 Jul 2010 15:00:00 EST. Please see our terms for use of feeds.
More Stories in TUAW
- TUAW TV Live at 5 PM EDT: Tripping down memory lane
- Meet Heckerty, well-known British children's story, makes its way to the iPad
- Daily iPhone App: Elenints matches Triple Town's planning with a few new tricks
- Google search app for iPhone, iPad re-designed
- Hands on with the iKlip Studio stand for iPad
- Court-ordered cage match between Apple, Samsung results in a draw
- Kapersky "disappointed" he can't sell AV software on iOS
- Jony Ive says Apple's current work is "most important"
- What happens in a toddler's brain when they use an iPad
- Mint adds split-transactions and budget adjustments to iOS app, 40% of users now mobile-only
Most Popular Stories
Coolest keyboard ever
A fix for those "Pairing Record Missing" errors
Net Calculator
errpt SYSTEM SHUTDOWN BY USER
Presidents Obama, Clinton pay tribute to Steve Jobs at Webbys
Review & Swatches: MAC 'Lovelorn' Lipstick
Amtrak conductors to "punch your ticket" using iPhones
Clear command help & alias
Fieldrunners 2 coming next month
Installing bash on AIX 6.1