Tag: veracode

Fixmo Announces Partnership with Veracode

Comments

Today at BlackBerry World, Fixmo announced a partnership with Veracode to integrate their cloud-based application platform into Fixmo’s Sentinel monitoring software.

Sentinel remotely tracks your organization’s mobile devices to make sure they’re remaining in a known and trusted state. Veracode‚Äôs cloud-based application platform combined with Fixmo Sentinel software will work to provide enterprise-level device integrity assurance. Sentinel features a dashboard that can do mobile administration, record detailed event logs, can perform instant over-the-air device locks or wipes, and more.

Visit Fixmo.com for more info

Veracode’s TXSBBspy Spyware Proof-of-Concept for BlackBerry

22 Comments

TXSBBSpy Demo from Veracode on Vimeo.

Tyler Shields, senior researcher at Veracode Research Lab developed a proof-of-concept spyware package that demonstrates how simple it is to retrieve private data from a BlackBerry.

The above video demonstrates the spyware package, which he calls TXSBBspy, and uses it to take some very confidential information. In the demonstration, he uses some basic, publicly available functions to remotely dump all email and SMS messages, send the contents via e-mail, and conduct real-time monitoring of phone messages. He also remotely listens to a room using the BlackBerry’s mic, and follows the a user unknowingly by listening to their GPS updates.

This is a hot topic right now for BlackBerry as more users are downloading applications and accepting permissions without fully understanding what they’re allowing the app access to. Personally, I think RIM needs to give very specific instructions to the user about what they’re allowing an app to access. The permissions screen is far too vague.