Is there a spy on my mobile device?
What's the best way to prevent my mobile phone from being spied on?

    Requires Free Membership to View

    SearchSecurity.com members gain immediate and unlimited access to breaking industry news, virus alerts, new hacker threats, highly focused security newsletters, and more -- all at no cost. Join me on SearchSecurity.com today!

    Michael S. Mimoso, Editorial Director

    By submitting your registration information to SearchSecurity.com you agree to receive email communications from TechTarget and TechTarget partners. We encourage you to read our Privacy Policy which contains important disclosures about how we collect and use your registration and other information. If you reside outside of the United States, by submitting this registration information you consent to having your personal data transferred to and processed in the United States. Your use of SearchSecurity.com is governed by our Terms of Use. You may contact us at webmaster@TechTarget.com.

This is a growing area of concern, as many people are trying to get more and more "hands-free" with their phones. Numerous products now utilize Bluetooth as a medium for wireless headsets, tethering and synching files with computers. It's important to always keep in mind, though, that these technologies have security risks associated with them, even if they make it easier to use products like mobile phones.

First, I would not use the Bluetooth headsets if the risk of eavesdropping is unacceptable to your organization. There is an excellent video by Josh Wright of Inguardians Inc. in which he demonstrates the dangers of using a Bluetooth headset. I would also recommend becoming familiar with the tools that can be used against your phone's Bluetooth capabilities, including penetration testing suites like Bluediving.

It is also important to train corporate employees to use caution when using their phones. Tell them, for example, to be wary of the websites they surf. Your corporate Web policy should mention that company phones should not be used to access questionable websites. Your users should also be careful to not lose their phones or leave them unattended.

You should also attempt to train employees that carry corporate phones to use some discretion. There have been many times where I have overheard seemingly sensitive conversations because people are talking loud enough for everyone in the airport terminal to hear.

This was first published in April 2009

Join the conversationComment

Share
Comments

    Results

    Contribute to the conversation

    All fields are required. Comments will appear at the bottom of the article.