Lots of Windows Phone developers want access to SMS*. It's an interesting data source and can allow the creation of lots of useful, helpful and interesting apps. There are security implications of allowing such access though and, unfortunately, most developers seem happy to ignore this or not take it seriously.
Today I heard about a scam that was only possible due to SMS access and "stole an estimated 36+ million Euros from more than 30,000 bank customers from multiple banks" (emphasis mine).
You can read more about the Eurograbber attack here but I think the important takeaway for developers is to focus on security and not easily dismiss or criticise platform limitations and restrictions that are there to protect the person who's phone it is.
And for everyone entering passwords or security information on a website. Always type in the domain for a website directly. Avoid following links, especially if it's a shortened or redirect link.
* If you don't know, Windows Phone does not allow developers of third party apps to access a phone's SMS history as part of it's strategy for protecting data security.
Found via Simon Judge.
Security and access to SMS
Related Posts:
Just how old are the most popular Windows Phone models? Last month there was some concern (example) about how the most popular Windows Phone model in use was three years old and that this was bad for the p… Read More
Creating an Xbox One style loading indicator If you've started an XBox One you'll have seen the loading screen where the three white circles pulsate below the logo while the console starts up… Read More
Why the Windows 10 Universal Windows Platform Bridges are a GREAT thing!At the build conference earlier this year, one of the more controversial announcements were the "Bridges" that were introduced. These "bridges" … Read More
How do you test your Windows Apps? When you're testing your apps, how do you do it? Do you rely on yourself and your memory of things you should be testing or testing for? Or have … Read More
I don't need to know about your errors Look at these screenshots I captured today. (from public, released apps - if you really care which apps you should be able to make an educate… Read More
No matter what technology that you bring out there will always be someone who is able to exploit it in some way. Thanks for the post.
ReplyDelete