HomeSecurityMobile App Security: 4 Critical Issues

Mobile App Security: 4 Critical Issues

Mobile App Security: Securing your mobile phone in the BYOD era is not an easy task. However, you can start by considering the four measures we present below. In the era of technological advancement of mobile devices, as well as the emergence of more and more mobile apps that facilitate users, the issue of mobile phone security is not simple, and certainly not an easy task.

Dangers lurk and a burning question torments all users: are mobile apps safe and protected from malicious hackers?

Mobile App Security: 4 Critical Issues
Mobile App Security: 4 Critical Issues

New data shows that there is not much room for improvement. The findings of a study of 640 businesses by the Ponemon Institute for IBM are alarming: The average business checks less than half of its apps for security issues before distributing them to the market. This omission can irreparably expose their users' data and make them vulnerable to potential cyber attacks.

A large portion of companies have adopted the bring-your-own device (BYOD) policy; 55% allow employees to use and download work apps on their personal devices, according to Ponemon research. Even more concerning is the fact that about 67% of companies surveyed allow their employees to download non-vetted apps on their work devices.

So how can we protect ourselves in the BYOD era? A good start is these four simple steps of major importance:

Issue #1: Create Secure Apps

Mobile malware exploits vulnerabilities or bugs in the code of mobile apps. Using the most secure practices in mobile app development, including the use of source code scanning tools, can help mobile apps resist these types of attacks. It is also important to analyze the code from third parties, or from any app that is allowed to coexist on the phones used by employees. In this case, the executables should be scanned.

Issue #2: Protect your device

The security of an app is an issue that is directly related to the security of the device on which it is installed. An unprotected device that has been modified by its owner or by an unauthorized app to bypass operating system security can accept the installation of any app from any source. These devices, known as jailbroken or rooted devices, are very susceptible to mobile malware.

What's worse is that attackers using mobile malware don't rely solely on jailbroken devices to achieve their goals. Even users who overuse mobile application permissions — often by default — can also leave a path open for malware, such as basic services like SMS.

Issue #3: Prevent data theft/leakage

When mobile apps access data, both personal and corporate, the documents are usually stored on the device itself. If the device is lost, or the data is shared with unauthorized apps, then there is a high risk of this data being stolen or leaked.

Mobile App Security: 4 Critical Issues
Issue #4: Block high-risk access

Mobile is designed to interact with backend services. For example, mobile banking apps allow users to transfer money to third parties, while mobile CRM apps allow salespeople to update their forecasts and access critical account data.

Using context and risk factors (for example, if the device is compromised or the location/time is suspicious), it is possible to prevent or block access to your systems.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS