<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://www.alertboot.com/blog/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>AlertBoot Endpoint Security : encryption software provider</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx</link><description>Tags: encryption software provider</description><dc:language>en</dc:language><generator>CommunityServer 2007 SP2 (Build: 20611.960)</generator><item><title>Apple BYOD Protection: Pentagon Clears Apple Devices for Use In DOD Network</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/20/apple-byod-protection-pentagon-clears-apple-devices-for-use-in-dod-network.aspx</link><pubDate>Mon, 20 May 2013 12:00:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2598</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2598</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/20/apple-byod-protection-pentagon-clears-apple-devices-for-use-in-dod-network.aspx#comments</comments><description>&lt;blockquote&gt;Many media outlets are reporting that the US Department of Defense (DOD) has finally approved the use of Apple devices on its network.&amp;nbsp; I see plenty of comments like, &amp;quot;Great, prepare for malware to spread in our country&amp;#39;s military networks because some government worker decided to download the wrong game&amp;quot; or some nonsense.&lt;br /&gt;&lt;br /&gt;Yeah, BYOD, or Bring Your Own Device, introduces risks.&amp;nbsp; That&amp;#39;s why you need to have the appropriate infrastructure to support BYOD, including the use of &lt;a href="http://www.alertboot.com/" title="mobile protection" target="_blank"&gt;MDM (mobile device management) solutions for smartphones and tablets&lt;/a&gt; like AlertBoot Mobile Security.&lt;br /&gt;&lt;br /&gt;It also helps if your BYOD project is not actually a BYOD project.&lt;/blockquote&gt;
&lt;h3&gt;Apple Devices are STIG-tastic&lt;/h3&gt;
&lt;blockquote&gt;Defense.gov reports that:&lt;br /&gt;&lt;blockquote&gt;The release of the Apple iOS 6 STIG is a major stride in building a multivendor environment, supporting a diverse selection of devices and operating systems, DISA officials said. This STIG and the recently approved STIGs for the BlackBerry and Samsung Knox operating systems demonstrate DISA&amp;#39;s commitment to validate a range of devices that meet DOD security standards so the best technology is available to achieve mission requirements, they added.&lt;br /&gt;&lt;/blockquote&gt;The STIG, or &lt;a href="http://en.wikipedia.org/wiki/Security_Technical_Implementation_Guide" target="_blank"&gt;Security Technical Implementation Guide&lt;/a&gt;, is documentation designed to standardize security in the installation and maintenance of computer hardware and software, according to Wikipedia.&lt;/blockquote&gt;
&lt;h3&gt;It Ain&amp;#39;t BYOD If You Don&amp;#39;t Bring It&lt;/h3&gt;
&lt;blockquote&gt;What this all means is that Apple can now sell their devices to the military.&amp;nbsp; This does not mean that people can bring their own iPhones and connect them to the government network.&amp;nbsp; Also from &lt;i&gt;defense.gov &lt;/i&gt;(my emphasis):&lt;br /&gt;&lt;blockquote&gt;&lt;b&gt;&lt;i&gt;government-issued &lt;/i&gt;&lt;/b&gt;iOS6 mobile devices are approved for use when connecting to Defense Department networks within current mobility pilots or the future mobile device management framework&lt;br /&gt;&lt;/blockquote&gt;See how it says government-issued?&amp;nbsp; A further explanation by the same site (my emphasis):&lt;br /&gt;&lt;blockquote&gt;Officials said the STIG &lt;i&gt;&lt;b&gt;does not allow personally acquired mobile devices &lt;/b&gt;&lt;/i&gt;to connect to DOD networks.&lt;br /&gt;&lt;/blockquote&gt;In other words, they&amp;#39;ll give employees an iPhone. Or an Android phone (as long as it&amp;#39;s a Samsung, I guess, or running KNOX).&amp;nbsp; Or perhaps even a Blackberry.&amp;nbsp; Basically, the DOD, which is already leveraging Blackberry devices for better productivity and communications, is now widening their options in terms of hardware (and possibly software). &amp;nbsp;&lt;br /&gt;&lt;br /&gt;No BYOD here.&amp;nbsp; More like CYOD, Choose Your Own Device.&lt;/blockquote&gt;&lt;h3&gt;Fool Me Twice, Shame on Me&lt;/h3&gt;&lt;blockquote&gt;The capriciousness of the &amp;quot;here come the data breaches&amp;quot; comments are a little annoying.&amp;nbsp; Granted, the military once had a huge problem in their hands due to USB memory sticks, and ended &lt;a href="http://www.alertboot.com/blog/blogs/endpoint_security/archive/2008/11/27/military-usb-memory-stick-ban-lack-of-disk-encryption-is-not-the-only-issue.aspx" target="_blank"&gt;banning all removable media devices on DOD machines&lt;/a&gt;.&amp;nbsp; However, I like to think that much has changed since 2008.&amp;nbsp; It seems quite obvious to me that the DOD would have learned something from the experience; they&amp;#39;re most probably not approving Apple and Samsung devices without a good idea of what they&amp;#39;re doing.&lt;/blockquote&gt;
&lt;h3&gt;Getting Philosophical&lt;/h3&gt;
&lt;blockquote&gt;Now, you might say, &amp;quot;hey, it&amp;#39;s a matter of when, not if.&amp;nbsp; That&amp;#39;s the nature of data breaches.&amp;nbsp; You can&amp;#39;t really escape it; you can only be lucky enough not to be there anymore when it happens.&amp;quot;&amp;nbsp; In other words, MDM, passwords, encryption, location tracking, etc. are all for naught; attempting to provide security is useless when you know it&amp;#39;s going to eventually happen.&lt;br /&gt;&lt;br /&gt;Well, that&amp;#39;s also true when it comes to death.&amp;nbsp; The probability of you meeting your maker is 100% (in a manner of speaking), but mass suicides are severely lacking among the logical crowd.&amp;nbsp; Often times, engaging in the &amp;quot;impossible&amp;quot; is still worth doing regardless of the odds.&lt;/blockquote&gt;
&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.bloomberg.com/news/2013-05-17/apple-mobile-devices-cleared-for-use-on-u-s-military-networks.html" target="_blank"&gt;http://www.bloomberg.com/news/2013-05-17/apple-mobile-devices-cleared-for-use-on-u-s-military-networks.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.defense.gov/news/newsarticle.aspx?id=120073" target="_blank"&gt;http://www.defense.gov/news/newsarticle.aspx?id=120073&lt;/a&gt;&lt;br /&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2598" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+encryption/default.aspx">laptop encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encrypted+data/default.aspx">encrypted data</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+encryption/default.aspx">mobile data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/information+security/default.aspx">information security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/secure+digital+assets/default.aspx">secure digital assets</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/prevent+data+leakage/default.aspx">prevent data leakage</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+encryption+solution/default.aspx">laptop encryption solution</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/endpoint+security+breach/default.aspx">endpoint security breach</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+security+software/default.aspx">laptop security software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+hdd+encryption/default.aspx">mobile hdd encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security+provider/default.aspx">data security provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+standard/default.aspx">encryption standard</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/military+encryption/default.aspx">military encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/personal+information+encryption/default.aspx">personal information encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+encryption/default.aspx">iPhone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+security/default.aspx">iPhone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+protection/default.aspx">iPhone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization/default.aspx">consumerization</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization+of+IT/default.aspx">consumerization of IT</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/BYOD/default.aspx">BYOD</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+encryption/default.aspx">iPad encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+protection/default.aspx">iPad protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/MDM/default.aspx">MDM</category></item><item><title>UK BYOD Security: 82% Of Biz Unaware Of Existing Data Protection Expenditures</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/15/uk-byod-security-82-of-biz-unaware-of-existing-data-protection-expenditures.aspx</link><pubDate>Wed, 15 May 2013 12:24:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2597</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2597</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/15/uk-byod-security-82-of-biz-unaware-of-existing-data-protection-expenditures.aspx#comments</comments><description>&lt;blockquote&gt;The UK Information Commissioner&amp;#39;s Office (ICO) ordered a report to find the extent of English businesses&amp;#39; knowledge on the European Commission&amp;#39;s data protection reforms. Among other things, the updates to the privacy laws further encourage (indirectly) the use of &lt;a href="http://www.alertboot.com/" title="mobile device data security and encryption" target="_blank"&gt;data protection software&lt;/a&gt;, like AlertBoot&amp;#39;s Mobile Security for smartphones and tablets, as well as introducing novel ideas such as the &amp;quot;right to be forgotten.&amp;quot;&lt;/blockquote&gt;&lt;h3&gt;Bad News&lt;/h3&gt;&lt;blockquote&gt;The survey&amp;#39;s results are not very encouraging.&amp;nbsp; For example, it turns out that 82% of businesses did not know how much they spend on data protection.&amp;nbsp; Observed &lt;i&gt;information-age.com&lt;/i&gt;,&lt;br /&gt;&lt;blockquote&gt;it is not surprising, then, that 87% could not estimate what the impact of the reforms would be.&lt;br /&gt;&lt;br /&gt;Respondents were asked to describe the reforms as they understand them. Four out of ten had an inaccurate understanding of all ten reforms, and not one fully understands every one.&lt;/blockquote&gt;&lt;/blockquote&gt;&lt;h3&gt;An Easier Way?&amp;nbsp; A Totally Transparent Cost Structure&lt;/h3&gt;&lt;blockquote&gt;I don&amp;#39;t know about &amp;quot;the inaccurate understanding of all ten reforms,&amp;quot; but I can understand why most businesses don&amp;#39;t have a good idea on their data protection budget.&amp;nbsp; &lt;i&gt;&lt;b&gt;The answer is that it&amp;#39;s not easy figuring out what it actually costs&lt;/b&gt;&lt;/i&gt;.&lt;br /&gt;&lt;br /&gt;Consider just one example of data security: &lt;a href="http://www.alertboot.com/disk_encryption/full_disk_encryption.aspx" title="laptop full disk encryption software" target="_blank"&gt;laptop computer encryption&lt;/a&gt; and &lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" title="MDM for smartphones and tablets" target="_blank"&gt;mobile device security for smartphones and tablets&lt;/a&gt;.&amp;nbsp; Under the traditional model you have:&lt;br /&gt;&lt;ul&gt;
&lt;li&gt;&lt;b&gt;License purchases.&amp;nbsp; &lt;/b&gt;Depending on the approach, a company may have to purchase the licenses in pre-arranged blocks, say at least 100 licenses, and 50 additional license blocks after that.&amp;nbsp; If you need 105 licenses, you have to purchase 150.&amp;nbsp; The remaining 45 are sometimes called &amp;quot;shelfware&amp;quot; because that&amp;#39;s where they end up; maybe you&amp;#39;ll them all, maybe you won&amp;#39;t.&lt;br /&gt;&lt;br /&gt;Because computers are tracked (e.g., to install updates or new software), you have a good idea of how many machines are on your network.&amp;nbsp; But the cost of the data security is actually greater than that because of shelfware as well as computers than are not plugged to the network.&amp;nbsp; Unless you have meticulous records, chances are your estimates will be lower than reality.&lt;br /&gt;&lt;br /&gt;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Bring Your Own Management Server.&amp;nbsp; &lt;/b&gt;In other words, you have to provide the infrastructure for managing, deploying, and installing the licenses you just purchased.&amp;nbsp; Of course, you could do it without central management.&amp;nbsp; But if you have more than, say, 50 computers to manage (again, to install updates or new software or whatever), a management server saves time and money.&amp;nbsp; But only if you plunk down money.&amp;nbsp; The problem is that you may add, retire, or repurpose servers as necessary or as opportunity permits.&lt;br /&gt;&lt;br /&gt;And, by doing so, you also change the equations for what you&amp;#39;re spending in terms of electricity, peripherals (like LAN cables and whatnot), etc.&amp;nbsp; In the end, these add up to a substantial figure.&amp;nbsp; But, with things moving in and out, you&amp;#39;re never quite sure what the figure is.&amp;nbsp; For example, a management server for full disk encryption is repurposed as a printer server...did you update your accounting spreadsheets as well?&lt;br /&gt; &lt;br /&gt;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Data Center.&amp;nbsp; &lt;/b&gt;Many companies make use of data centers to ensure reliability and uptime of core operations.&amp;nbsp; The data security portion probably holds a fraction of the space allocated in a data center.&amp;nbsp; So what are its costs, exactly?&amp;nbsp; You know you&amp;#39;re paying saying, $5,000 per month, but how much of that is assigned to the data protection portion?&amp;nbsp; Good luck finding out.&lt;br /&gt;&lt;br /&gt;&lt;/li&gt;
&lt;li&gt;&lt;b&gt;Employees.&amp;nbsp; &lt;/b&gt;Maybe the company has an IT department.&amp;nbsp; And maybe the IT department&amp;#39;s personnel are doing double (or triple) duty as coders, troubleshooters, software installers, hardware installers, and who knows what else.&amp;nbsp; How much of their time is spent on data security stuff?&amp;nbsp; Or maybe they&amp;#39;ve got people dedicated to doing password resets for people who forgot their passwords and are locked out of their computers.&lt;br /&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;As you can see, trying to figure out how much data security costs is fraught with blind spots.&lt;br /&gt;&lt;br /&gt;Of course, it doesn&amp;#39;t necessarily have to be this way.&amp;nbsp; AlertBoot&amp;#39;s security suite for endpoints – AlertBoot Mobile Security for BYOD and AlertBoot Full Disk Encryption for laptop hard drives – are a model of cost transparency: a flat annual price without any predefined license purchases: you can obtain as many (or as little) licenses as you need.&lt;br /&gt;&lt;br /&gt;This is possible because the solution is cloud-based, hosted on AlertBoot&amp;#39;s data centers.&amp;nbsp; This means any hardware and software issues are left up to AlertBoot.&amp;nbsp; Furthermore, the company provides support and password recovery services 24/7, ensuring that the IT department is focused on more important matters.&lt;br /&gt;&lt;br /&gt;Because all of this is included in AlertBoot&amp;#39;s offerings, calculating data security costs are also very easy.&lt;/p&gt;&lt;/blockquote&gt;&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.information-age.com/it-management/risk-and-compliance/123457048/uk-businesses-don-t-understand-eu-data-reforms--ico-finds" target="_blank"&gt;http://www.information-age.com/it-management/risk-and-compliance/123457048/uk-businesses-don-t-understand-eu-data-reforms--ico-finds&lt;/a&gt;&lt;br /&gt;
&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2597" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/full+disk+encryption/default.aspx">full disk encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+security/default.aspx">laptop security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/hard+disk+encryption/default.aspx">hard disk encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/endpoint+security+breach/default.aspx">endpoint security breach</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/hdd+encryption+software/default.aspx">hdd encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+hdd+encryption/default.aspx">laptop hdd encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+law/default.aspx">encryption law</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+encryption+provider/default.aspx">laptop encryption provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/UK/default.aspx">UK</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+encryption/default.aspx">iPhone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+protection/default.aspx">iPhone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization/default.aspx">consumerization</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization+of+IT/default.aspx">consumerization of IT</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+encryption/default.aspx">iPad encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+protection/default.aspx">iPad protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/MDM/default.aspx">MDM</category></item><item><title>Smartphone Security: Facebook App - Yes, They Can Use Your Smartphone Camera (But They Won't)</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/13/smartphone-security-facebook-app-yes-they-can-use-your-smartphone-camera-but-they-won-t.aspx</link><pubDate>Mon, 13 May 2013 09:43:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2596</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2596</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/13/smartphone-security-facebook-app-yes-they-can-use-your-smartphone-camera-but-they-won-t.aspx#comments</comments><description>&lt;blockquote&gt;Whenever I mention that AlertBoot Mobile Security, an &lt;a href="http://www.alertboot.com/" title="mobile device protection, security, and management" target="_blank"&gt;MDM for protecting smartphones&lt;/a&gt;, allows one to disable their camera (and keep it that way), some people say something along the lines of &amp;quot;hey, that&amp;#39;s great for companies infringing on my darn tootin&amp;#39; rights to do whatever the heck I want with my own smartphone that I&amp;#39;m allowed to use at work, but why would I &lt;i&gt;personally &lt;/i&gt;want that?&amp;quot;&lt;br /&gt;&lt;br /&gt;I never could answer this question.&amp;nbsp; What &lt;i&gt;&lt;b&gt;is &lt;/b&gt;&lt;/i&gt;the value of this feature for the smartphone &lt;i&gt;&lt;b&gt;owner&lt;/b&gt;&lt;/i&gt;?&amp;nbsp; Thankfully, Facebook is making the case for me on this one.&lt;/blockquote&gt;
&lt;h3&gt;Facebook Spokesperson Essentially Says: &amp;quot;Trust Us&amp;quot;&lt;/h3&gt;
&lt;blockquote&gt;In what I can only describe as one of the most horrific (but also naively refreshing?) statements I have read in a while, &lt;i&gt;businessinsider.com &lt;/i&gt;had this to report (my emphasis):&lt;br /&gt;&lt;blockquote&gt;While it is technically possible for the Facebook app to record video and audio without your knowing, the spokesperson said &lt;b&gt;Facebook won&amp;#39;t do that&lt;/b&gt;.&lt;br /&gt;&lt;/blockquote&gt;I realize that I haven&amp;#39;t even covered the details of the story, but doesn&amp;#39;t the above kind of make the hairs on your neck stand up, and tells you all that you need to know, regardless of the story?&lt;br /&gt;&lt;br /&gt;I know it does to me.&lt;/blockquote&gt;
&lt;h3&gt;It&amp;#39;s Google&amp;#39;s Fault&lt;/h3&gt;
&lt;blockquote&gt;Eli Langer over at &lt;i&gt;storify.com &lt;/i&gt;has a story on how people are &amp;quot;complaining about Android applications&amp;quot; for Facebook and Google Search.&amp;nbsp; Namely, that these apps can use a smartphone&amp;#39;s &amp;quot;microphones and camera at any point without any confirmation.&amp;quot;&lt;br /&gt;&lt;br /&gt;I wouldn&amp;#39;t have believed it if it weren&amp;#39;t for a screenshot that shows the legal language.&amp;nbsp; You can &lt;a href="http://storify.com/EliLanger/android-apps-accessing-your-microphone-and-camera" target="_blank"&gt;find it by visiting the story&lt;/a&gt;, but it reads:&lt;br /&gt;&lt;blockquote&gt;Record Audio: Allows the app to record audio with the microphone.&amp;nbsp; This permission allows the app to record audio at any time &lt;i&gt;&lt;b&gt;without your confirmation&lt;/b&gt;&lt;/i&gt;.&lt;br /&gt;&lt;br /&gt;Take Pictures and Videos: Allows the app to take pictures with the camera. This permission allows the app to use the camera at any time &lt;i&gt;&lt;b&gt;without your confirmation&lt;/b&gt;&lt;/i&gt;.&lt;br /&gt;&lt;/blockquote&gt;Now, a screenshot in the age of Photoshop means nothing.&amp;nbsp; But, consider this: (1) multiple people are tweeting about it, (2) neither Mr. Langer nor &lt;i&gt;businessinsider.com &lt;/i&gt;are not known for pulling April Fool&amp;#39;s day pranks in mid-May (as far as I know, that is), and (3) there is &lt;a href="http://www.businessinsider.com/facebook-android-app-camera-security-2013-5" target="_blank"&gt;the admission by a Facebook spokesperson&lt;/a&gt;, which we already saw above.&amp;nbsp; In fact, the full quote in the &lt;i&gt;businessinsider.com &lt;/i&gt;article is the following:&lt;br /&gt;&lt;blockquote&gt;A spokesperson for Facebook explains this [the legal language above] as follows: the language in this disclaimer comes from Google and wasn&amp;#39;t written up by Facebook, it&amp;#39;s simply how Android handles camera access. While it is technically possible for the Facebook app to record video and audio without your knowing, the spokesperson said Facebook won&amp;#39;t do that.&lt;br /&gt;&lt;/blockquote&gt;I&amp;#39;m on the fence whether the full passage makes the spokesperson&amp;#39;s statement more or less creepy.&amp;nbsp; One the one hand, the &amp;quot;openness&amp;quot; and &amp;quot;transparency&amp;quot; are appreciated (even if most people wouldn&amp;#39;t read the legalese).&amp;nbsp; On the other hand, a living, breathing person telling me that I should ignore the implications.... well, let&amp;#39;s just say that I&amp;#39;m pulling out of storage my X-Files t-shirt just for this occasion.&lt;/blockquote&gt;
&lt;h3&gt;The Solution?&lt;/h3&gt;
&lt;blockquote&gt;AlertBoot is one of the many companies that have a BYOD solution.&amp;nbsp; It&amp;#39;s an &lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" title="MDM for smartphones and tablets" target="_blank"&gt;MDM (mobile device management) service&lt;/a&gt; that allows one to control and manage smartphones and tablets from the cloud, and it includes features like remote data wipe, password policies, and Wi-Fi provisioning (and more, of course).&lt;br /&gt;&lt;br /&gt;It also includes &lt;i&gt;&lt;b&gt;the ability to disable cameras on mobile devices&lt;/b&gt;&lt;/i&gt;.&amp;nbsp; Many &lt;a href="http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/04/15/byod-how-stickers-on-smartphones-do-not-secure-intellectual-property.aspx" target="_blank"&gt;companies do not allow cameras in the workplace&lt;/a&gt; for myriad reasons, and this is how it works in AlertBoot:&lt;br /&gt;&lt;ol&gt;&lt;li&gt;A policy is created in the online management console.&amp;nbsp; For simplicity&amp;#39;s sake, it&amp;#39;ll be for disabling the camera.&lt;/li&gt;&lt;li&gt;Apply it.&lt;br /&gt;&lt;/li&gt;&lt;/ol&gt;The policy is updated for devices, and that&amp;#39;s that.&amp;nbsp; This works as long as the device is not jailbroken (of which the administrator will be notified).&lt;br /&gt;&lt;br /&gt;If a regular/official/authorized version of the device&amp;#39;s OS is in place, the Facebook app will not be able to access the camera, period (in the event of a conflict between the app settings, &amp;quot;use camera,&amp;quot; and the AlertBoot MDM settings &amp;quot;camera disabled,&amp;quot; the latter comes out on top, as should be the case).&lt;br /&gt;&lt;br /&gt;Of course, the &amp;quot;real&amp;quot; solution is for Google and/or Facebook to change their policies and not allow this to happen.&amp;nbsp; I mean, the app can technically access your mic and camera but &amp;quot;it won&amp;#39;t happen?&amp;quot;&amp;nbsp; Why build it, then?&amp;nbsp; &lt;i&gt;&lt;b&gt;And why ask for permission to use it without your being aware of it&lt;/b&gt;&lt;/i&gt;?
&lt;/blockquote&gt;&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.businessinsider.com/facebook-android-app-camera-security-2013-5" target="_blank"&gt;http://www.businessinsider.com/facebook-android-app-camera-security-2013-5&lt;br /&gt;&lt;/a&gt;&lt;a href="http://storify.com/EliLanger/android-apps-accessing-your-microphone-and-camera" target="_blank"&gt;http://storify.com/EliLanger/android-apps-accessing-your-microphone-and-camera&lt;/a&gt;&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2596" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+encryption/default.aspx">data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/device+encryption/default.aspx">device encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+security/default.aspx">mobile data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security/default.aspx">data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/application+control/default.aspx">application control</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/cryptography+software/default.aspx">cryptography software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+encryption/default.aspx">mobile data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/computer+data+security/default.aspx">computer data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/endpoint+security/default.aspx">endpoint security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+hdd+encryption/default.aspx">mobile hdd encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security+provider/default.aspx">data security provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/media+encryption+and+protection/default.aspx">media encryption and protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+encryption/default.aspx">iPhone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+security/default.aspx">iPhone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+protection/default.aspx">iPhone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization/default.aspx">consumerization</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization+of+IT/default.aspx">consumerization of IT</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/BYOD/default.aspx">BYOD</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+encryption/default.aspx">iPad encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+protection/default.aspx">iPad protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/MDM/default.aspx">MDM</category></item><item><title>BYOD Security: Complying With Australian Privacy Principle 11 </title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/09/byod-security-complying-with-australian-privacy-principle-11.aspx</link><pubDate>Thu, 09 May 2013 08:07:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2595</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2595</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/09/byod-security-complying-with-australian-privacy-principle-11.aspx#comments</comments><description>&lt;blockquote&gt;Last week (28 April to 4 May 2013) was &amp;quot;Privacy Awareness Week&amp;quot; in the Asia Pacific region.&amp;nbsp; Australia is one of the entities that participates in PAW (the others are, in alphabetical order, Canada, Hong Kong, Korea, Macau, Mexico, New Zealand, and the USA).&lt;br /&gt;&lt;br /&gt;As part of the awareness campaign, the &lt;i&gt;&lt;b&gt;Office of the Australian Information Commissioner &lt;/b&gt;&lt;/i&gt;(OAIC) released their &amp;quot;Guide to Information Security: &amp;#39;reasonable steps&amp;#39; to protect personal information.&amp;quot;&amp;nbsp; There is much information, and an entire &lt;a href="http://www.oaic.gov.au/news/consultations/Information_security/info_security_consult_draft_Dec2012.html#_Toc341710211" target="_blank"&gt;subsection is dedicated to the use of encryption&lt;/a&gt;.&amp;nbsp; That doesn&amp;#39;t come as a surprise, seeing how cryptography is a key aspect of effective IT security; it could very well end up being the only information security measure that is (indirectly) listed as a requirement in complying with the Australian Privacy Principles.&lt;/blockquote&gt;
&lt;h3&gt;BYOD and Australian Privacy Principle 11&lt;/h3&gt;
&lt;blockquote&gt;According to the &lt;a href="http://www.aph.gov.au/Parliamentary_Business/Committees/Senate_Committees?url=fapa_ctte/completed_inquiries/2010-13/priv_exp_drafts/report_part1/c14.htm" target="_blank"&gt;Parliament of Australia&lt;/a&gt;:&lt;br /&gt;
&lt;blockquote&gt;Australian Privacy Principle 11 (APP 11) protects personal information by imposing specific obligations on both agencies and organisations which hold that information. The principle also provides that entities take reasonable steps to destroy or de-identify the personal information once it is no longer needed... these obligations are in line with international best practice on privacy protection.&lt;br /&gt;&lt;/blockquote&gt;
What are these &amp;quot;specific obligations&amp;quot; that are &amp;quot;in line with international best practice on privacy protection&amp;quot;?&amp;nbsp; The answer to this question is quite complex, but when it comes to BYOD, mobile devices like smartphones and tablets, and laptop computers and their storage accessories, using &lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" title="cloud-based MDM for smartphones and tablets" target="_blank"&gt;encryption software&lt;/a&gt; to protect the data is probably up there on the do-list.&lt;br /&gt;&lt;br /&gt;Consider the following:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Best practices vary from country to country, but most include a provision for data encryption, and provide safe harbor from legal and other penalties if used.&lt;/li&gt;

&lt;li&gt;Encryption is used extensively for destroying or de-identifying information.&amp;nbsp; For example, &lt;a href="http://www.alertboot.com/disk_encryption/disk_encryption_product_tour.aspx" title="smartphone encryption" target="_blank"&gt;remote wiping of smartphones&lt;/a&gt; is based on deleting the encryption key (Note: Best practices still require physical destruction of information – including shredding, grinding, melting, etc., but only when it is possible to do so. If a device is lost or missing, encryption is the last, and best, resort).&lt;/li&gt;

&lt;li&gt;Encryption is at the heart of all e-commerce, including on-line banking and credit card processing.&lt;/li&gt;

&lt;li&gt;Where such data is made available – such as the USA&amp;#39;s HIPAA (Health Insurance Portability and Accountability) &amp;quot;Wall of Shame&amp;quot; – the loss of devices accounts for more than 50% of data breaches (in the case of HIPAA, those affecting 500 or more people).&lt;br /&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Encryption is a time-tested, &lt;i&gt;bona fide &lt;/i&gt;solution for the many risks that accompany the use of devices that store sensitive data.&amp;nbsp; Australian law, however, will probably follow in the footsteps of established legislation around the globe and &lt;i&gt;&lt;b&gt;not &lt;/b&gt;&lt;/i&gt;make its use a requirement.&lt;br /&gt;&lt;br /&gt;Instead, indirect incentives for its use, such as the extension of safe harbor for encrypted data, which was already mentioned before, or monetary fines and penalties for data breaches where encryption is not used, are much more likely (and the accepted model in other countries).&lt;br /&gt;&lt;br /&gt;Indeed, it was &lt;a href="http://www.scmagazine.com.au/News/341776,exclusive-data-breach-notification-bill-revealed.aspx" target="_blank"&gt;revealed only one week ago&lt;/a&gt; that financial penalties will be assess under the Exposure Draft Privacy Amendment (Privacy Alerts) Bill 2013:&lt;/p&gt;&lt;blockquote&gt;Repeat and serious offenders face financial penalties of up to $340,000 for individuals or $1.7 million for organisations - a maximum penalty which was last month increased from $220,000 and $1.1 million respectively.&lt;br /&gt;&lt;br /&gt;Small-scale offenders could be taken to court and fined up to $34,000 for individuals, and $170,000 for organisations.&lt;/blockquote&gt;
&lt;/blockquote&gt;
&lt;h3&gt;Making It Easy to Install, Deploy, and Manage BYOD Encryption&lt;/h3&gt;
&lt;blockquote&gt;Of course, there will be other ways to comply with APP 11, depending on the circumstances.&amp;nbsp; However, it wouldn&amp;#39;t be a reach to say that none of these other solutions offer the dynamism, robustness, facility, or peace of mind that encryption offers.&lt;br /&gt;&lt;br /&gt;Just because encryption is a proven technology and easy to use, however, it doesn&amp;#39;t mean that it&amp;#39;s easy to set up or maintain.&amp;nbsp; An individual user must, among other things:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Ensure that the machine is ready for successful installation,&lt;/li&gt;

&lt;li&gt;Ensure that the encryption key or keys are backed up (just in case.&amp;nbsp; Otherwise, it will prove impossible to recover the protected data if something were to go awry, like a disk becoming corrupted),&lt;/li&gt;

&lt;li&gt;Ensure that there is a way to regain access to the information if one forgets one&amp;#39;s password,&lt;/li&gt;

&lt;li&gt;Etc.&lt;br /&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;Try doing the above for more than one computer, and soon you&amp;#39;re running into logistical problems.&amp;nbsp; Indeed, effective &lt;i&gt;&lt;b&gt;encryption key management &lt;/b&gt;&lt;/i&gt;is seen as the top challenge for organizations that use encryption to secure their data.&lt;br /&gt;&lt;br /&gt;The use of an encryption management server, if one&amp;#39;s available for the particular cryptographic software you&amp;#39;re using, resolves these issues but introduces another problem.&amp;nbsp; Namely, that you&amp;#39;ve got to maintain the server, which requires its own resources: employee time; additional costs for said time, underlying software, hardware, server space, etc.; and concerns about scalability and reliability.&amp;nbsp; (On a personal note, I&amp;#39;ve seen encryption management servers slow down once they start reaching around 2,000 users, a stark contrast to its zippy past when there were only a couple of hundred endpoints listed.)&lt;br /&gt;&lt;br /&gt;Avoiding such problems is what makes AlertBoot Mobile Security such an effective service.&amp;nbsp; The cloud-based solution makes keeping track of encryption keys very simple, and installation can be started in minutes, not days (or weeks, or months!) from anywhere with an internet connection.&amp;nbsp; And, the 24/7 password recovery (via phone or web-based self-service) ensures that users will have a verified method for regaining access to their machines.&lt;br /&gt;&lt;br /&gt;Of course, encryption is not the be-all, end-all: seeing how APP 11 is the eleventh privacy principle, logic dictates that there must be at least ten more of these (there are thirteen in all), and their compliance bring their own unique challenges.&lt;br /&gt;&lt;br /&gt;However, encryption is bound to be one of the core solutions for compliance, and AlertBoot is one of the easiest and cost-effective methods to do so.&amp;nbsp; If you&amp;#39;d like more information, you can &lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" target="_blank"&gt;start by visiting us here&lt;/a&gt; or &lt;a href="http://www.alertboot.com/alertboot_partners/disk_encryption_partner_program.aspx" target="_blank"&gt;here, if you&amp;#39;re looking to become a partner&lt;/a&gt;.&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.mondaq.com/australia/x/236858/Data+Protection+Privacy/Information+Security+Guidelines+released+to+mark+start+of+Privacy+Week+2013" target="_blank"&gt;http://www.mondaq.com/australia/x/236858/Data+Protection+Privacy/Information+Security+Guidelines+released+to+mark+start+of+Privacy+Week+2013&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.oaic.gov.au/news-and-events/privacy-awareness-week-2013/" target="_blank"&gt;http://www.oaic.gov.au/news-and-events/privacy-awareness-week-2013/&lt;/a&gt;&lt;br /&gt;&lt;/p&gt;
&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2595" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/device+encryption/default.aspx">device encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+security/default.aspx">mobile data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+encryption/default.aspx">laptop encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security/default.aspx">data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/law/default.aspx">law</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/hard+drive+encryption/default.aspx">hard drive encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+theft+prevention/default.aspx">data theft prevention</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/cryptography+software/default.aspx">cryptography software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/information+security/default.aspx">information security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/endpoint+security/default.aspx">endpoint security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+at+rest+encryption/default.aspx">data at rest encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/identity+theft/default.aspx">identity theft</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Data+Redaction/default.aspx">Data Redaction</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/desktop+encryption+software/default.aspx">desktop encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+data+security/default.aspx">laptop data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/hdd+encryption+software/default.aspx">hdd encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/securing+corporate+laptops/default.aspx">securing corporate laptops</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+law/default.aspx">encryption law</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/usb+device+security/default.aspx">usb device security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/usb+device+protection/default.aspx">usb device protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/laptop+encryption+provider/default.aspx">laptop encryption provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Australia+encryption/default.aspx">Australia encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+standard/default.aspx">encryption standard</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/medical+data+encryption/default.aspx">medical data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/government+encryption/default.aspx">government encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/financial+information+encryption/default.aspx">financial information encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/hospital+encryption/default.aspx">hospital encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/SMB+encryption/default.aspx">SMB encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+encryption/default.aspx">iPhone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+security/default.aspx">iPhone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+protection/default.aspx">iPhone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization/default.aspx">consumerization</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization+of+IT/default.aspx">consumerization of IT</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/BYOD/default.aspx">BYOD</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+encryption/default.aspx">iPad encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+protection/default.aspx">iPad protection</category></item><item><title>Encryption And Security:  WWII Encryption Cracked, Shows Strength Of Crypto Algorithms</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/06/encryption-and-security-wwii-encryption-cracked-shows-strength-of-crypto-algorithms.aspx</link><pubDate>Mon, 06 May 2013 09:32:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2594</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2594</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/06/encryption-and-security-wwii-encryption-cracked-shows-strength-of-crypto-algorithms.aspx#comments</comments><description>&lt;blockquote&gt;World War II and encryption is back in the news.&amp;nbsp; According to the &lt;b&gt;&lt;i&gt;Daily Mail&lt;/i&gt;&lt;/b&gt;, mathematicians, historians, and geography experts at Plymouth University combined their efforts to crack the messages that were hidden in personal letters, letters sent home by a UK prisoner-of-war held in Germany.&amp;nbsp; While the algorithm that was cracked is not as dependable as modern &lt;a href="http://www.alertboot.com/" title="BYOD mobile security and encryption" target="_blank"&gt;mobile encryption and security&lt;/a&gt;, it shows us why cryptography is a powerful information security tool.&lt;br /&gt;&lt;br /&gt;As I alluded, this is not the first time that old-time cryptography is making waves in modern times.&amp;nbsp; The world was treated to a bizarre surprise when &lt;a href="http://www.alertboot.com/blog/blogs/endpoint_security/archive/2012/11/23/old-encryption-is-still-worth-its-mettle-wwii-pigeon-code-goes-unbroken.aspx" target="_blank"&gt;cleaning out a chimney resulted in the discovery of a 70-year mystery&lt;/a&gt;.&amp;nbsp; The big difference in this case is that we know that happened, unlike &lt;a href="http://www.alertboot.com/blog/blogs/endpoint_security/archive/2012/12/19/the-continuing-world-war-ii-pigeon-saga-canadians-chime-up.aspx" target="_blank"&gt;the dead-pigeon saga&lt;/a&gt;.&lt;/blockquote&gt;
&lt;h3&gt;Smalltalk about a Garden Turns into Coded Casualty Report&lt;/h3&gt;
&lt;blockquote&gt;The folks over at &lt;i&gt;dailymail.co.uk &lt;/i&gt;put it best when they noted:&lt;blockquote&gt;Many seeds are left, being saved from several plants which did very well some time ago.&lt;br /&gt;&amp;#39;Our last year&amp;#39;s harvest was extremely good. Well worth repeating again for this year.&amp;#39;&lt;br /&gt;&lt;br /&gt;But it meant: &amp;#39;HMS Undine attack failure. Trawler depth-charged, scuttled in 70 feet, three burnt.&amp;#39;&lt;/blockquote&gt;The encryption (and decryption) algorithm is quite a pretty convoluted process.&amp;nbsp; Among other things, there were:&lt;br /&gt;


&lt;ul&gt;
&lt;li&gt;Predetermined indicators that a letter contained a coded message: (1) writing the letter&amp;#39;s date in &amp;quot;Continental format&amp;quot; (day/month/year) as opposed to the typical English method (month/day/year), and (2) underlining one&amp;#39;s own signature at the end of the letter.&lt;/li&gt;

&lt;li&gt;Using the first two words of the first line (after the greetings) to indicate what kind of grid/matrix to use.&lt;/li&gt;

&lt;li&gt;Counting only the fourth or fifth letters to create the message.&lt;/li&gt;

&lt;li&gt;Using certain keywords as signifiers for the end of a message, the start of a message, and secret requests for items that could be used during an escape.&lt;br /&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;When you consider how simple the code is, relatively speaking, it&amp;#39;s amazing how much information the POWs were able to pack in their letters.&amp;nbsp; I&amp;#39;m especially impressed by the use of the matrix at the beginning, since it would make it harder to crack the code.&lt;/p&gt;
&lt;/blockquote&gt;
&lt;h3&gt;Mobile Devices and BYOD: Modern Encryption Much More Secure&lt;/h3&gt;
&lt;blockquote&gt;Of course, modern encryption – for example, those used to &lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" title="centrally managed smartphone security for BYOD" target="_blank"&gt;protect smartphones and tablets like iPhones and Android&lt;/a&gt; phones – is much more secure than what was used in WWII.&amp;nbsp; But, the principles remain the same.&lt;br /&gt;&lt;br /&gt;Well, to a degree.&amp;nbsp; With modern encryption such as AES-256, which is used by AlertBoot to protect hard drives on laptop computers, most estimates show that all the processing power in the world would still take a &lt;i&gt;&lt;b&gt;few centuries &lt;/b&gt;&lt;/i&gt;before a significant dent can be made in forcefully cracking data.&lt;br /&gt;&lt;br /&gt;This is why if your workplace has a &amp;quot;bring your own device&amp;quot; policy, you&amp;#39;re probably required to use encryption on your smartphone, tablet, or PC/laptop: even if you lose your device, the chances of the data falling into the wrong hands are infinitesimally small.&lt;/blockquote&gt;
&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.dailymail.co.uk/news/article-2317548/Code-letters-sent-home-British-PoW-WWII-help-Allies-revealed-70-years.html" target="_blank"&gt;http://www.dailymail.co.uk/news/article-2317548/Code-letters-sent-home-British-PoW-WWII-help-Allies-revealed-70-years.html&lt;/a&gt;&lt;br /&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2594" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security/default.aspx">data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/information+security/default.aspx">information security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security+provider/default.aspx">data security provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/military+encryption/default.aspx">military encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/government+encryption/default.aspx">government encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+encryption/default.aspx">iPhone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+security/default.aspx">iPhone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPhone+protection/default.aspx">iPhone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/BYOD/default.aspx">BYOD</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+security/default.aspx">iPad security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+encryption/default.aspx">iPad encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/iPad+protection/default.aspx">iPad protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/MDM/default.aspx">MDM</category></item><item><title>Android Security: Pattern Lock Is Stronger Than You Think</title><link>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/03/android-security-pattern-lock-is-stronger-than-you-think.aspx</link><pubDate>Fri, 03 May 2013 08:15:00 GMT</pubDate><guid isPermaLink="false">485e638a-55cc-4ff1-8cd4-ec0169d28c96:2593</guid><dc:creator>sang_lee</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://www.alertboot.com/blog/blogs/endpoint_security/rsscomments.aspx?PostID=2593</wfw:commentRss><comments>http://www.alertboot.com/blog/blogs/endpoint_security/archive/2013/05/03/android-security-pattern-lock-is-stronger-than-you-think.aspx#comments</comments><description>&lt;blockquote&gt;How secure is the pattern lock found on Google Android devices?&amp;nbsp; Apparently, quite a bit.&amp;nbsp; Of course, it can be made very easy to crack.&amp;nbsp; For example, if the so-called pattern is a straight line, that&amp;#39;s not much security, is it?&amp;nbsp; That&amp;#39;s the equivalent of using &amp;quot;password&amp;quot; as a password, and defeats &lt;a href="http://www.alertboot.com/" title="cloud-based BYOD MDM " target="_blank"&gt;BYOD smartphone security&lt;/a&gt;, even if something like AlertBoot&amp;#39;s Mobile Security is used to enhance their protection.&lt;br /&gt;&lt;br /&gt;But, if you&amp;#39;re not into hamstringing yourself, it turns out that the pattern lock can be very secure.&amp;nbsp; So secure, in fact, that the FBI had to issue a warrant to Google to get the device unlocked.&lt;br /&gt;&lt;br /&gt;Or so the headlines would lead you to believe....&lt;/blockquote&gt;&lt;h3&gt;FBI Wants Access to Pimp&amp;#39;s Phone&lt;/h3&gt;&lt;blockquote&gt;&amp;quot;FBI, stumped by pimp&amp;#39;s Android pattern lock, serves warrant on Google&amp;quot; is the headline at &lt;i&gt;arstechnica.com &lt;/i&gt;(14 March 2013).&amp;nbsp; A similar observation is made by &lt;i&gt;wired.com&lt;/i&gt;.&lt;br /&gt;&lt;br /&gt;The story: a pimp with a criminal history is found to be using an Android phone to coordinate his business activities in the sex trade.&amp;nbsp; The FBI gets a warrant to search his house and belongings, which includes the phone.&amp;nbsp; Pimp won&amp;#39;t cooperate.&amp;nbsp; So, the FBI sends the phone to its technicians, who eventually end up triggering a device lock-out after too many erroneous attempts.&amp;nbsp; Once that happens, the FBI applies for a second warrant so that Google will unlock the phone.&lt;br /&gt;&lt;br /&gt;So, what happened?&amp;nbsp; As the &lt;i&gt;arstechnica.com&lt;/i&gt; article notes, studies have shown that &lt;a href="http://crave.cnet.co.uk/mobiles/smudges-on-your-android-touchscreen-could-give-away-your-password-50000330/" target="_blank"&gt;smudges on the phones can defeat the pattern lock&lt;/a&gt;.&amp;nbsp; It&amp;#39;s a guessing game, and under &amp;quot;ideal conditions&amp;quot; researchers were able to gain access to a phone 90% of the time.&lt;br /&gt;&lt;br /&gt;But then, those are under ideal conditions.&amp;nbsp; Make the pattern long enough and complex enough, and the odds of successfully breaking into a smartphone plummet.&amp;nbsp; Especially if you attempt it more than 20 times.&amp;nbsp; After the twentieth entry, the phone will lock you out, as noted earlier, and the only way to regain access is to provide the Google email address and password.&lt;/blockquote&gt;&lt;h3&gt;&lt;a href="http://www.alertboot.com/disk_encryption/mobile_security_byod_mdm.aspx" title="BYOD MDM software as a service" target="_blank"&gt;Mobile Security: MDM&lt;/a&gt; Controls Maximum Number of Failed Attempts&lt;/h3&gt;&lt;blockquote&gt;One of the features in AlertBoot Mobile Security is setting a policy for the number of failed passcode attempts before data on a device is wiped.&amp;nbsp; This is a powerful way of ensuring data security for two reasons:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Chances are that, if the passcode is entered incorrectly too many times, it&amp;#39;s not the device owner who&amp;#39;s trying to gain access.&amp;nbsp; (Of course, you need to find a balance.&amp;nbsp; One wrong attempt is too little, but more than 15 wrong attempts is too much, never mind 20!)&lt;/li&gt;
&lt;li&gt;Remote wiping sometimes doesn&amp;#39;t work because the device is not connected to a network.&amp;nbsp; Why not establish a self-destruction mechanism independent of internet or cellular network connectivity?&lt;br /&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;The real star of the FBI story is not really the pattern lock – which can work wonders, obviously – but the fact that you (or, rather, someone other than you) will get locked out after too many incorrect attempts.&lt;br /&gt;&lt;br /&gt;If there was no limit, who&amp;#39;s to say what would have happened? &amp;nbsp;&lt;/p&gt;&lt;/blockquote&gt;&lt;br /&gt;Related Articles and Sites:&lt;br /&gt;&lt;a href="http://www.wired.com/threatlevel/2012/03/fbi-android-phone-lock/" target="_blank"&gt;http://www.wired.com/threatlevel/2012/03/fbi-android-phone-lock/&lt;/a&gt;&lt;br /&gt;&lt;a href="http://arstechnica.com/tech-policy/2012/03/fbi-stumped-by-pimps-androids-pattern-lock-serves-warrant-on-google/" target="_blank"&gt;http://arstechnica.com/tech-policy/2012/03/fbi-stumped-by-pimps-androids-pattern-lock-serves-warrant-on-google/&lt;/a&gt;&lt;br /&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;img src="http://www.alertboot.com/blog/aggbug.aspx?PostID=2593" width="1" height="1"&gt;</description><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+encryption/default.aspx">data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/device+encryption/default.aspx">device encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+security/default.aspx">mobile data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security/default.aspx">data security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+theft+prevention/default.aspx">data theft prevention</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+data+encryption/default.aspx">mobile data encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/prevent+data+leakage/default.aspx">prevent data leakage</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+at+rest+encryption/default.aspx">data at rest encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software/default.aspx">encryption software</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/mobile+hdd+encryption/default.aspx">mobile hdd encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+law/default.aspx">encryption law</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+software+provider/default.aspx">encryption software provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/data+security+provider/default.aspx">data security provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/encryption+service+provider/default.aspx">encryption service provider</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/government+encryption/default.aspx">government encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+encryption/default.aspx">Android encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+security/default.aspx">Android security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/Android+protection/default.aspx">Android protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+security/default.aspx">tablet security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+encryption/default.aspx">tablet encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/tablet+protection/default.aspx">tablet protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+protection/default.aspx">smartphone protection</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+security/default.aspx">smartphone security</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/smartphone+encryption/default.aspx">smartphone encryption</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/bring-your-own-device/default.aspx">bring-your-own-device</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization/default.aspx">consumerization</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/consumerization+of+IT/default.aspx">consumerization of IT</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/BYOD/default.aspx">BYOD</category><category domain="http://www.alertboot.com/blog/blogs/endpoint_security/archive/tags/MDM/default.aspx">MDM</category></item></channel></rss>