Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
1 In 10 US Smartphone Users Victims of Theft
Oldest First  |  Newest First  |  Threaded View
Page 1 / 2   >   >>
Bprince
50%
50%
Bprince,
User Rank: Ninja
5/9/2014 | 2:39:12 AM
Losing your phone
The most mind blowing stat to me - someone would pay $1,000 for their phone back. Really? Also, I wonder where the liability lies when people lose work-supplied phones. Does your company make you pay the full amount for the phone?

BP

 
securityaffairs
50%
50%
securityaffairs,
User Rank: Ninja
5/9/2014 | 3:55:22 AM
Re: Losing your phone
The data resented are congruent to the current mobile security scenario, we have an increasing number of new malware families designed for mobile platforms and the penetration level of mobile is surpassing the one of desktop PCs.

Wrong habits, poorly designed applications, lack adoption of defense solution and no awareness of principal cyber threats make mobile users very exposed.

That's life ... let's start to think to security by design
Kelly Jackson Higgins
50%
50%
Kelly Jackson Higgins,
User Rank: Strategist
5/9/2014 | 7:27:22 AM
Re: Losing your phone
Agreed, @Bprince. It's like they would pay ransom for their family...photos. 
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
5/9/2014 | 9:29:10 AM
Re: Losing your phone
I have a friend who works for a hospital in L.A. Someone grabbed her work iPhone from her purse while she was walking through a shopping mall. She had to pay $800 (retail) out of her own pocket to replace it 
Randy Naramore
50%
50%
Randy Naramore,
User Rank: Ninja
5/9/2014 | 3:31:59 PM
Re: Losing your phone
There are a couple different ways of looking at this, first it is the data you want back, back up the data peridically and then have the ability to wipe remotely. Secondly, get the insurance from your carrier and get it replaced. You would be out of pocket some but not $800.00. This is almost like ransom.
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
5/9/2014 | 3:45:50 PM
Re: Losing your phone
It is like ransom but it makes me wonder how prevalent it is for corporate America to hold individual employees totally responsible when their company-owned devices get stolen. Seems like the company should buy the insurance....
Randy Naramore
0%
100%
Randy Naramore,
User Rank: Ninja
5/9/2014 | 4:03:47 PM
Re: Losing your phone
Exactly, but might be easier to get some kind of supplemental coverage so you are not responsible for the whole thing. 
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
5/9/2014 | 4:12:18 PM
Re: Losing your phone
Good point. In my own case, my cell phone is for work and play -- and I pay for the insurance. So I'm covered...
MrTibbs
50%
50%
MrTibbs,
User Rank: Apprentice
5/12/2014 | 10:19:33 AM
second factor risk?
Why is it a "major risk is when a smartphone that's set up as a second factor of authentication gets stolen"?

The thief won't know the first factor (username/password). And if the device has encrypted storage and a lock screen, that should thwart them even more.

 
Randy Naramore
0%
100%
Randy Naramore,
User Rank: Ninja
5/12/2014 | 10:41:44 AM
Re: second factor risk?
Exactly, not sure the answer but the device is essentially a paper weight at this point. Encryption and multi-factor are the way to go to secure mobile devices.
Page 1 / 2   >   >>


Edge-DRsplash-10-edge-articles
I Smell a RAT! New Cybersecurity Threats for the Crypto Industry
David Trepp, Partner, IT Assurance with accounting and advisory firm BPM LLP,  7/9/2021
News
Attacks on Kaseya Servers Led to Ransomware in Less Than 2 Hours
Robert Lemos, Contributing Writer,  7/7/2021
Commentary
It's in the Game (but It Shouldn't Be)
Tal Memran, Cybersecurity Expert, CYE,  7/9/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
How Enterprises Are Assessing Cybersecurity Risk in Today's Environment
The adoption of cloud services spurred by the COVID-19 pandemic has resulted in pressure on cyber-risk professionals to focus on vulnerabilities and new exposures that stem from pandemic-driven changes. Many cybersecurity pros expect fundamental, long-term changes to their organization's computing and data security due to the shift to more remote work and accelerated cloud adoption. Download this report from Dark Reading to learn more about their challenges and concerns.
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-4103
PUBLISHED: 2022-01-23
Cross-site Scripting (XSS) - Stored in GitHub repository vanessa219/vditor prior to 1.0.34.
CVE-2021-4172
PUBLISHED: 2022-01-22
Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2.
CVE-2022-23807
PUBLISHED: 2022-01-22
An issue was discovered in phpMyAdmin 4.9 before 4.9.8 and 5.1 before 5.1.2. A valid user who is already authenticated to phpMyAdmin can manipulate their account to bypass two-factor authentication for future login instances.
CVE-2022-23808
PUBLISHED: 2022-01-22
An issue was discovered in phpMyAdmin 5.1 before 5.1.2. An attacker can inject malicious code into aspects of the setup script, which can allow XSS or HTML injection.
CVE-2022-21707
PUBLISHED: 2022-01-21
wasmCloud Host Runtime is a server process that securely hosts and provides dispatch for web assembly (WASM) actors and capability providers. In versions prior to 0.52.2 actors can bypass capability authorization. Actors are normally required to declare their capabilities for inbound invocations, bu...