Preview

CIS 502 Theories of Security Management

Powerful Essays
Open Document
Open Document
2094 Words
Grammar
Grammar
Plagiarism
Plagiarism
Writing
Writing
Score
Score
CIS 502 Theories of Security Management
WEE 7 CASE STUDY 3 : Mobile Devices Security

CIS 502 Theories of Security Management
February 22, 2013
Mobile Devices Security By the end of 2013, there will be more mobile devices on Earth than people, a new report suggests. According to Cisco 's Visual Networking Index Global Mobile Data Traffic Forecast Update, consumers ' mobile appetite has grown a lot in the past year, and it shows no signs of slowing. In fact, Cisco predicts global mobile data traffic will increase 13-fold by 2017, with more than 10 billion mobile-connected devices by then (Murphy, 2013). Users of mobile devices have become dependent upon this technology not only for personal communications, but to conduct business transactions. This increase in commerce activity has had a corresponding increase in illegal activities geared toward taking advantages of mobile insecurities to steal consumer’s money and credentials. Mobile devices are convenient and are quickly catching up with personal computers as the choice to access the Internet. Unfortunately this convenience comes with a cost. Security for mobile devices has not kept up with the market growth and consumer use. In this paper I will discuss; 1) emerging cyber security issues and vulnerabilities presented in the “Emerging Cyber Threats 2012” report, 2) vulnerabilities of mobile devices in regard to usability and scale, and methods to mitigate the vulnerabilities of mobile devices, 3) the value of cryptography and encryption in regard to Equifax’s approach to implementing stronger security policies around mobile devices, 4) discuss Gunter Ollmann’s comments about Zeus-in-the-Mobile (ZitMo) and describe the implications of advanced security breaches, 5) the greatest challenge in regard to controlling information online, and 6) Justify Dan Kuykendall’s statement about the biggest issue with mobile browsers and give two (2) examples illustrating his point.
Emerging Cyber Security Issues and Vulnerabilities



References: Gahran, A. (2011). Mobile phone security: What are the risks?. CNNTech. Retrieved from http://articles.cnn.com/2011-06-17/tech/mobile.security.gahran_1_android-app-android-phone-apple-s-app-store?_s=PM:TECH Kahn, M. (2011). Equifax recognizes changing customer behavior with four-pronged mobile strategy. Mobile Marketer. Retrieved from http://www.mobilemarketer.com/cms/news/strategy/9733.html Murphy, S. (2013). Mobile Devices Will Outnumber People by the End of the Year. Marshable. Retrieved from http://mashable.com/2013/02/06/mobile-growth/ Myserson, J. (2012). 5 Steps to Mitigate Device Vulnerabilities. The Mobility Hub. Retrieved from http://www.themobilityhub.com/author.asp?section_id=2303&doc_id=253570 Wolfe, H. (2010). Mobile Phone Security. The TSCM Journal. Retrieved from http://www.isaca-wellington.org/files/TSCM_Journal_1_2_Small.pdf Sites, D & Tadimalla, A. (2011). A Survey of Mobile Device Security: Threats, Vulnerabilities, and Defenses. A Few Guys Coding Blogs. Retrieved from http://afewguyscoding.com/2011/12/survey-mobile-device-security-threats-vulnerabilities-defenses/ Zeus malware throws €36+ million lightning bolt across Europe. Infosecurity. Retrieved from http://www.infosecurity-magazine.com/view/29705/-zeus-malware-throws-36-million-lightning-bolt-across-europe/ Emerging Cyber Threats Report 2012. Georgia Tech Cyber Security Summit. Retrieved from http://www.gtisc.gatech.edu/doc/emerging_cyber_threats_report2012.pdf PR: Mobile device attacks surge. Treasury & Risk. Retrieved from http://www.treasuryandrisk.com/2011/02/08/pr-mobile-device-attacks-surge Samsung Kernel Crypto API Cryptographic Module v1.2. CSRC. Retrieved from http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140sp/140sp1648.pdf

You May Also Find These Documents Helpful

  • Satisfactory Essays

    In this article, the authors not only cite the article by A. Fishman and M. Marquis-Boire but also used their own thoughts to make their story effectively “Cyanogen Mod is an open-source firmware distribution based on Android that lets users install apps without granting all requested permissions.” and “Blackphone has an OS that is based on a fork of Android. / Despite the Blackphone’s focus on security, a data-type confusion vulnerability in its code was disclosed and fixed in January 2015. The vulnerability could have allowed remote attackers to execute arbitrary code on Blackphones.” (3), these stories will cause attention to the readers…

    • 143 Words
    • 1 Page
    Satisfactory Essays
  • Powerful Essays

    Nt1310 Unit 1 Assignment

    • 4104 Words
    • 17 Pages

    However, there is growing interest in protocols and other mechanisms for use with novel telecommunications services. Next-generation value-added services are bound to introduce new vulnerabilities. The interaction between all these communications and security protocols, and the mechanisms used for distributed systems security, is fertile ground for both interesting research. Ways to enhance these protection tools to make sure our technology is safe from IT attacks are evolving all the time. The systems or measures used to protect a company system at present might not be of any use in the future as technology is always enhancing to higher levels. Telecommunication businesses tend to be comparatively adept at managing information security risks. And many are taking action to achieve an enhanced level of ongoing insight and intelligence into ecosystem vulnerabilities and dynamic threats. Companies like Celcom must be ready to invest in this expensive research so as to be able to aggressively compete in the intense telecommunication market and to be able to sustain itself in this industry. Today, information security is a discipline that demands advanced technologies and processes, a skill set based on counterintelligence techniques, and the unwavering support of top executives. As telecom operators become more similar to technology companies, they will face a raft of new challenges. Core practices like employee awareness and training, policies and tools to reduce insider risks, and protection of data, including intellectual property, will need to be updated. The confluence of mobility, cloud, and social networking have multiplied risks, yet few operators have addressed these threats or deployed technologies that monitor user and network activity to provide insight into ecosystem vulnerabilities and threats. These…

    • 4104 Words
    • 17 Pages
    Powerful Essays
  • Powerful Essays

    It was 1944, and the United States had now been an active participant in the war against Nazi Germany for almost three and a half years, nearly six years for the British. During that period occurred a string of engagements fought with ferocious determination and intensity on both sides. There is however, one day which stands out in the minds of many American servicemen more often than others. June 6, 1944, D-Day, was a day in which thousands of young American boys, who poured onto the beaches of Utah and Omaha, became men faster than they would have ever imagined possible. Little did they know of the chaos and the hell which awaited them on their arrival. Over the course of a few hours, the visions of Omaha and Utah Beaches, and the death and destruction…

    • 3035 Words
    • 13 Pages
    Powerful Essays
  • Better Essays

    Mobile use has become increasingly popular because of the advances in phone, tablet and laptop technology. Kudler Fine Foods must embrace this new technology not only to use it to further their business goals but to also address the security concerns that it poses. Allowing mobile use on the organizational network would mean using wireless connectivity, this opens up the network to a number of threats such as:…

    • 1352 Words
    • 6 Pages
    Better Essays
  • Best Essays

    “Making Mobile Devices, Cellular Devices More Secure.” (November 8, 2009). Retrieved on September 7, 2012 from…

    • 3710 Words
    • 15 Pages
    Best Essays
  • Better Essays

    Technologic advances occur at a rapid pace, with new devices coming out at frequent intervals. These new devices are appealing to college students who want to do everything as quickly and easily as possible. Because of the numerous smartphones, tablets, and laptops used by students and employees, college campuses face various security issues from mobile devices that connect to the network, often unintentionally.…

    • 1432 Words
    • 5 Pages
    Better Essays
  • Best Essays

    Starbucks/Itunes Partnership

    • 4719 Words
    • 19 Pages

    Mobile Technology is expanding daily. It seems to be one of the fastest growing kinds of technologies in the news today. With the advancements in Personal Area Networks (PAN) and Wireless Access Protocols (WPA) mobile devices of today can be developed that are more secure than ever. They can be more accessible than ever before and provide faster and more accurate data transfer. The uses for the mobile devices have begun to expand into more and more areas of daily life. The iPhone mobile phone developed by Apple, Inc. is one of the most popular and bestselling mobile phones on the market today. In order for the iPhone to be at the head of the industry several of the most important technological features are…

    • 4719 Words
    • 19 Pages
    Best Essays
  • Powerful Essays

    Cited: 4. ”A clear-eyed guide to Android 's actual security risks." InfoWorld. N.p., n.d. Web. 27 Apr. 2014. <http://www.infoworld.com/d/mobile-technology/clear-eyed-guide-androids-actual-security-risks-232034>.…

    • 4860 Words
    • 14 Pages
    Powerful Essays
  • Better Essays

    References: Conklin, A., Williams, G., Davis, R., & Cothren, C. (2012). Principles of Computer Security: CompTIA Security+ and Beyond (3rd ed.). New York, NY: McGraw-Hill/Osborne Media.…

    • 1725 Words
    • 5 Pages
    Better Essays
  • Satisfactory Essays

    This article focuses in how devices can transmits a consumer private information to third parties, and how consumers have little knowledge that their information is kept in databases to be sold. In 2020 most home devices will interconnected both wire and wireless to each other across a network, giving unlimited potential to create personal profiles…

    • 516 Words
    • 3 Pages
    Satisfactory Essays
  • Good Essays

    The growth of social networks and smartphones over the past few years has come with a dangerous side-effect: the violation of privacy and security. Social networks such as Facebook and Twitter may appear to be a fun way to keep in touch or to easily socialize with friends and family, but as these networks continue to grow some very serious privacy and security concerns emerge. Interestingly these concerns could be easily prevented by any educated user. The problem occurs when social network and smartphone companies force the average user to have to work towards gaining this education by hiding or not fully explaining some of their settings and features. One of the biggest cases of this is the recent emergence of coordinate-based apps on smartphones. In many of these apps, location services – a setting that allows the app to record the user’s exact coordinates at a given time – is turned on by default; the average user may never even be aware of its existence. This is not the only example of technology designed to follow people, there are many more new features being developed all the time to track and record an individual’s movements, despite their fun and harmless appearance; user education has become necessary for security.…

    • 1470 Words
    • 6 Pages
    Good Essays
  • Good Essays

    Goatse Security firm had two primary objectives when they hacked into AT&T’s website, was for exposure and security. Goatse was able to exposed AT&T security was not in the top-notch conditions that many people would have thought that a company of that worth should maintain. While being able to exposed AT&T security mishaps, Goatse was able to publicize their skills. A successful company continuously thinks of ways to promote their firm and products. Goatse Security firm promotes it name as…

    • 387 Words
    • 2 Pages
    Good Essays
  • Good Essays

    Cell Phone Impact

    • 978 Words
    • 4 Pages

    The new technology and apps make things simpler for the consumer but also make personal information less secure and more accessible to identity thieves. This is a concerning and a more common problem that we face wich impacts individuals in a very negative way.…

    • 978 Words
    • 4 Pages
    Good Essays
  • Good Essays

    Current Event

    • 670 Words
    • 3 Pages

    More than 90 percent of American adults own a mobile phone, and more than half of the devices are smartphones. But “smartphone” is a misnomer. They are personal computers that happen to include a phone function, and like any computer they can store or wirelessly retrieve enormous amounts of personal information: emails, photos and videos; document files; financial and medical records; and virtually everywhere a person has been.…

    • 670 Words
    • 3 Pages
    Good Essays
  • Better Essays

    Abstract: Nowadays almost everyone is using smart phones. They are becoming an essential tool in human being’s everyday life. They are not only used for mere communication such as calling or sending text messages; however, they are also used in applications such as for accessing internet, receiving and sending emails and storing documents. As a result of this, not only phone numbers and addresses are stored in the mobile device but also financial information and business details which definitely should be kept private. And if the device is being stolen, each and every information is in the hands of the new owner. That’s why; the biggest challenge is the security. When it is necessary to confirm the user identity on systems to perform a given operation, the term User Authentication is used. Traditionally, people prove their identity by providing passwords. The average person today has about 25 password protected accounts (according to Microsoft study), more passwords than they can reasonably be expected to remember. People compensate by using the same password for multiple accounts, and by choosing passwords that are easy to remember. But, unfortunately easy to remember means easy to guess. Other user select difficult passwords but then write them down where unauthorized eyes can find them. That’s why, identity based on what you know (login and password) and what you have (ID cards) can be easily stolen. As we want trust (security), the notion what you are is a new opportunity to user authentication. Biometric Authentication is answer for that. Biometric is a characteristic of human being that distinguishes one person from another. For example, finger prints, retina, face recognition, etc. This can be used for identification or verification of identity. Keywords: FAR, FRR, ROC, EER, FTE, FTC. B.…

    • 2535 Words
    • 11 Pages
    Better Essays