Categories
Close
Menu
Menu
Close
Search
Search

Featured Articles

RSS
123

Opinion Articles

Opinion

Insecure Mobile Browsers

Mark

Share:

Print

Rate article:

No rating
Rate this article:
No rating

James Rosewell writes:

I note with interest Barclays mobile on-line banking home page extolling the safety of mobile banking whilst claiming it’s as secure as their non-mobile equivalent. This is on the same page that recommends customers use Opera Mini to access Barclays mobile on-line banking.

How safe is Mobile Banking?

[Text from Barclays mobile banking site on 9th June 2009]

Yet following the link to the operamini.com web site and looking at the help section we can read Opera’s answer to the question “Is there any end-to-end security between my handset and — for example — paypal.com or my bank?” and the answer is “No. If you need full end-to-end encryption, you should use a full Web browser such as Opera Mobile.”

Is there any end-to-end security between my handset and — for example — paypal.com or my bank?

[Text from Opera.com web site on 9th June 2009].

Opera’s answer can be applied to any mobile internet browsing that utilises transcoder technology, including mobile network operators and Skyfire. Using transcoder technology of any kind to access secure web sites leaves the mobile user open to phishing attacks as it’s impossible to validate the site being accessed is the one intended. The mobile user is unwittingly giving a 3rd party such as Opera, Skyfire or their mobile network access to their personal information. The technology exists for Barclays (and other banks that offer mobile services) to detect transcoders and prevent mobile devices from accessing the service, or at least warn the user.

Contradictions between different organisations are soon going to be picked up by the mainstream press and confusion will reign among a public already nervous about on-line security. All organisations offering ecommerce, banking, payment or any other mobile service involving personal information need to both understand the subject and present accurate information to the public. If they don’t, these services will be slow to take off and will stifle an industry in its infancy to the detriment of all.

If you’d like to find out exactly how Opera Mini, Skyfire and mobile network transcoders reduce online security, listen to this week's edition of The Fonecast at http://www.thefonecast.com/?item=309
 

Comments

Collapse Expand Comments (0)
You don't have permission to post comments.

Recent Podcasts

ExclusivePodcast - 23rd March 2012

We talk to two very different companies at Mobile World Congress about their businesses and their relationships with mobile networks. Rebtel is a mobile voice-over-IP provider, while Mosaik Solutions produces mobile network coverage information.

ExclusivePodcast - 21st March 2012

In this week's news report we're discussing PayPal's latest mobile money initiative, we're looking at London Underground's new WiFi service and we're transfixed by Vodafone's m-health move. Listen to all this - and much more - online at TheFonecast.com.

ExclusivePodcast - 20th March 2012

This roundtable discussion on Privacy in Mobile Applications was held during Mobile World Congress 2012. It was hosted by MEF, the global community for mobile content & commerce, and was supported by SNR Denton.

ExclusivePodcast - 16th March 2012

Heroes of Emerging Markets: recorded during Mobile World Congress 2012 in Barcelona. This panel discussion, sponsored by Pearson and arranged by mobileheroes.net, looks at the opportunities of doing mobile business in emerging markets.

ExclusivePodcast - 14th March 2012

Although the new Apple iPad has been grabbing the mainstream news headlines, there's much more going on in the mobile industry. We look at all the top mobile stories, from 4G in the UK to mobile money investments by Visa Europe.

RSS
First3536373840424344Last

Follow thefonecast.com

Archive Calendar

«May 2026»
MonTueWedThuFriSatSun
27282930123
45678910
11121314151617
18192021222324
25262728293031
1234567

Archive