ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Jobs
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


Office applications Toolkit

Aventail's SSL VPN security locks down PDAs

Louis Nel, TechRepublic.com

Published: 03 Jun 2003 10:15 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Despite the fact that the use of PDAs poses obvious security risks for companies, little is done to address these security issues. The seriousness of the problem that unprotected PDAs create is evident from a recent survey by PDA security software suppliers Pointsec and Infosecurity Europe.

The survey, which questioned 332 IT professionals, found that many of these professionals who regularly use a PDA for business tasks "admitted to downloading the entire contents of their personal and business lives into their handheld device and leaving the information unencrypted and without password protection," according to a report on the survey by Mobileinfo.

Here are some of the results from the survey that point to the seriousness of security concerns associated with PDAs, along with the details on a new PDA security solution relying on SSL VPN.

The problem with PDAs
According to the survey, things such as passwords, PIN numbers, corporate information, and bank account numbers made it to the top 10 pieces of information stored on PDAs. However, only 22 percent of the respondents polled said their employer had a specific PDA usage policy. Forty-one percent of them said they never changed their passwords, and 65 percent of those who store banking details on their PDAs do not encrypt the data. A whopping 71 percent of those storing customer info admitted to not encrypting that data, and no less than 77 percent synchronised the data on their PDAs with their company PC or laptop. Almost 90 percent used their handhelds as a business diary.

Bear in mind that those surveyed were IT professionals, so it's conceivable that the rest of network users with PDAs would score much worse.

With nearly four out of five respondents using their own PDAs for work, the risks are so obvious that Magnus Ahlberg, managing director of Pointsec, advised organisations to ban the general usage of private PDAs. Industry analysts already predicted some time ago that, by this year, there will be more than one billion "smart devices" connected wirelessly, with more than half of them Web-enabled, according to an article by Daniel M. Lyon for SANS. According to Lyon, studies have shown that PDA devices have a 30 percent loss rate.

Losing a PDA can also have serious legal implications for employers. Graham Hayday, in a Silicon.com article on PDA security risks, pointed out that "companies holding data about customers, suppliers, and employees have certain responsibilities under the data protection act. If this data is held on insecure devices, companies may be liable for prosecution."

Hayday's articles (part one and part two) contain excellent suggestions for making PDA use more secure.

A security solution using SSL VPN
In the light of these security concerns, Aventail's announcement of the first SSL VPN to support full anywhere, anytime application access on a Pocket PC is welcome news.

Next

Previous

1 2


  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with Konica

Did you find this article useful?
89 out of 182 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:









Featured Talkback

In association with Intel
Why do so many (virtually all) software packages think that they are so important that they have to be started automatically every time the computer boots? What is the largest number of "speed access", "update check", "camera download" and whatever other background programs you have ever seen running? Of those, how many did you really need?

By: J.A. Watson

Read full story:
Annoying software: a rogues' gallery

Discussions

roger andre roger andre

The quest for a Mexican netbook

Tuesday 7 October 2008, 9:15 PM

1 comment
Tezzer Tezzer

Total Failure

Tuesday 7 October 2008, 8:36 PM

8 comments

Vista Upgrade Blog

Vista - Still Running and Stable After...

Six weeks ago, when I wrote Renewed Adventures with Vista, I wondered if Microsoft had finally managed to fix it sufficiently that I wouldn't be forced to give up on it after a few... More

Post a comment

Official MS Windows 7 Bloggers

Check this out: http://blogs.msdn.com/e7...spx Its an official blog "Engineering Windows 7" Nothing. That's what is revealed. Until there is real... More

5 comments

Microsoft's Mojave just a desert vista

It didn't seem fair to wade into Microsoft's “Mojave Experiment” advert quite so soon after the flat earth incident. But The Economist has no such qualms: in this week's issue, it wonders... More

6 comments