Most Popular in Apple
-
A fix for those "Pairing Record Missing" errors
-
Localized Flipboard Content guides available for UK, Ireland, Australia and Canada
-
Apple FileVault 2 encryption cracked, but don't panic
-
Apple sends takedown notice about customer support email
-
Motorola wants 2.25 percent of Apple sales to license patents
-
Daily iPhone App: NFL Flick Quarterback
-
Uploaded iTunes Match Songs Inaccessible for Some Users
-
Apple TV now offers Genius recommendations for movies, TV shows
-
Atari team rejoins to make mobile titles
-
Motorola seeking 2.25% of Apple's sales for standard-essential patent license
Why Apple's "walled garden" is a good idea
Many developers and users of Apple's iOS devices bemoan the "walled garden" of the App Store approval process, but it appears that the company's measures have prevented mass data theft from iPhones, and iPads.At the Black Hat security conference being held in Las Vegas this week, mobile security firm Lookout announced that an app distributed in Google's Android Market had collected private information from millions of users, then forwarded it to servers in China. Worse than that, the exact number of affected users isn't known, since the Android Market doesn't provide precise data. Estimates are that the app was downloaded anywhere from 1.1 million to 4.6 million times.
The app appeared to simply load free custom background wallpapers, but in fact collected a user's browsing history, text messages, the SIM card number, and even voice mail passwords, and then sent the data to a web site in Shenzen, China.
This is different from the recent AT&T website leak that could have let a hacker access 144,000 iPad 3G user email addresses, since in this case the data theft actually did happen, was being perpetrated by malicious hackers, involves much more personal information, and affected many more people.
So what's the difference between the security methodologies used by Google and Apple? Apple approves iOS apps only after they've gone through a strict (and frustrating to developers) process, while Google's Android Market simply warns the user that an app needs permission to perform certain functions during the installation. iOS apps must be signed by an Apple-created certificate, which means that malicious developers have a harder time distributing malware anonymously.
Lookout also noted that iOS remains virus-free, since third-party apps can only be distributed through Apple's heavily-moderated App Store, and the apps run in a sandbox environment where they can't affect the system. Lookout chief executive John Hering said that "he believes both Google and Apple are on top of policing their app stores." It's just those odd cases where apps don't do what they're advertised to do that can cause problems for users.
[via AppleInsider]
TUAWWhy Apple's "walled garden" is a good idea originally appeared on The Unofficial Apple Weblog (TUAW) on Thu, 29 Jul 2010 15:00:00 EST. Please see our terms for use of feeds.
More Stories in TUAW
- Motorola wants 2.25 percent of Apple sales to license patents
- Former Apple employee recounts how Jobs motivated iPhone team
- Hands on with AnyPlay: Live Comcast video on your iPad
- Snow Leopard security update revised to fix Rosetta issues
- iBackFlip Somersault available for preorder; watch creator explain improvements
- Apple TV now offers Genius recommendations for movies, TV shows
- Daily iPhone App: NFL Flick Quarterback
- Atari team rejoins to make mobile titles
- Daily Update for February 3, 2012
- Apple sends takedown notice about customer support email
Most Popular Stories
A fix for those "Pairing Record Missing" errors
Localized Flipboard Content guides available for UK, Ireland, Australia and Canada
Apple FileVault 2 encryption cracked, but don't panic
Apple sends takedown notice about customer support email
Motorola wants 2.25 percent of Apple sales to license patents
Daily iPhone App: NFL Flick Quarterback
Linux Mint 11 LXDE review
Uploaded iTunes Match Songs Inaccessible for Some Users
Apple TV now offers Genius recommendations for movies, TV shows
Atari team rejoins to make mobile titles