Subscribe / Unsubscribe Enewsletters | Login | Register

Pencil Banner

Flawsome software: Making educated platform choices

The Macalope | July 31, 2015
The internecine warfare between Android and iOS continues to rage, leaving no one unscathed. This week brings another volley as researchers discovered a Major Flaw In Android Phones Would Let Hackers In With Just A Text.

The internecine warfare between Android and iOS continues to rage, leaving no one unscathed. This week brings another volley as researchers discovered a Major Flaw In Android Phones Would Let Hackers In With Just A Text.

Are you ready for some of the Macalope's patented faux surprise? Well, too bad, because here it comes.

Ahem.

Surely this can't be right. The Macalope distinctly remembers being told by The Huffington Post that Tim Cook's talk about iOS's security superiority was nothing but "inaccuracies" because Business Insider's Jim Edwards said Google had "demolished" Cook's case with an only slightly more nuanced response than "I know you are, but what am I?"

Seriously, this is a thing you can read on the Internet. No one knows why it's a thing you can read on the Internet, but it is. And the government continues to do nothing about it. Please sign the online petition.

"This happens even before the sound that you've received a message has even occurred," says Joshua Drake, security researcher with Zimperium and co-author of Android Hacker's Handbook. "That's what makes it so dangerous. [It] could be absolutely silent. You may not even see anything."

The Macalope is not a "security expert." He's not into "hacking culture." He doesn't "know" the "difference" between a "man in the middle" attack and a "smurf" attack. He's not "wearing" any pants or "taking" his medication. But he does know that that don't sound so good.

None of this is to say that iOS or OS X are flawless ivory towers of security. First of all, who builds a tower out of ivory? Uncool, bro. Elephants are people, too. Second, they both have flaws and Apple historically hasn't been the best about taking security seriously, although it's gotten better. But Android's flaws are compounded by the fact that users are much less likely to ever get vital security updates. It's probably not representative of any kind of significant movement, but this is what's driven at least one long-time user from the platform.

Google still has very little control over software updates, and Android users are basically at the mercy of their carriers and phone manufacturers when it comes to getting updates or new operating system versions. For example, it took Sony more than six months to push Android 5.0 Lollipop to its new line of Xperia Z phones, despite the fact that it had promised for a much shorter turnaround after Lollipop was released by Google.

Hey, you already bought the phone and signed the contract. What do they care? Who are they, your mother? The Macalope supposes you would prefer a little animated clown who would juggle over to the update and wink at you and install it himself. You'll never learn to stand on your own two feet if you aren't willing to code, compile and install your own security updates.

 

1  2  Next Page 

Sign up for CIO Asia eNewsletters.