ENISA report points out the risks and threats of mobile social networking services

08 February 2010
Online Social Networking Sites (SNSs) have had an exceptional growth trend on Internet. 211Mn users (out of 283 Mn) in Europe use SNS, and, primarily, Facebook in 11/17 countries studied. The modern way of staying in touch with business or personal contacts is through SNS and other digital tools. Consequently, the ways people meet, share opinions, communicate information and ideas is changing.

The EU ‘cyber security’ Agency - ENISA (the European Network and Information Security Agency) has presented a new report on accessing social networks over mobile phones 'Online as soon as it happens'. The report points out the risks and threats of mobile social networking services, e.g. identity theft, corporate data leakage and reputation risks of mobile social networks. The report also gives 17 ‘golden rules’ on how to combat these threats.

With growing popularity of SNS, the demand for instant, continuous access over the mobile phone has increased-i.e. mobile social networks (MSN). More than 65 Mn users now access the social network Facebook over their mobile device. MSN users are 50% more active than non-mobile users, and are estimated to be 134 Mn in Europe by 2012.

Many MSN users also use their phone as a backup device for business mails, personal data, contacts, pictures, and access codes. As a consequence, a lost mobile phone can cause serious damage, e.g. when illegitimately used to access MSNs. Many mobile phones come pre-packaged at purchase, with built in MSN applications i.e. ‘on-deck’ services.

Several stories from Italy, France, Spain, Greece, UK, witness that many SNS/MSN users are largely unaware of security risks, privacy issues and threats related to misuse of the information put online in an SNS and of proper online privacy protection.

A number of unique MSN risks/threats are identified in the report. The ENISA report gives an overview of the situation and underlines that in particular MSN users need awareness on how to safer use social networks on a mobile phone to avoid unexpected and damaging consequences. Risks include identity theft, and serious damage to personal or corporate reputation, or data leakage.

Two samples case studies:
• Fake profile on Facebook. A professor at Turin University discovered someone else had created a profile for him at Facebook with offensive features, affecting his reputation.
• Data leakage/corporate reputation. After a 2008 incident, Virgin Atlantic airlines later dismissed 13 staff members who had posted comments on Facebook which e.g. criticised the cleanliness of the company’s fleet and of its passengers. Similarly, British Airlines check-in staff at Gatwick posted messages on Facebook saying e.g. travellers were ‘smelly’ and criticised the chaotic operations at Heathrow.

The paper also gives a comprehensive view of the SNS world under the lens of the European directive on data protection (Dir. 95/46/EC). The Executive Director of ENISA comments: “This report provides practical, hands-on advice to the users of how to more safely be online, anywhere and anytime, when enjoying mobile social networks.”

The paper includes 17 practical ‘golden rules’. Samples include:
- Remember to log out from the social network once your navigation is over.
- Do not to allow the social network to remember your password (this function is called ‘Auto-complete’).
- Do not mix your business contacts with your friend contacts.
- Report immediately stolen/lost mobile phone with contacts, pictures, or personal data in its memory
- Set the profile privacy level properly.

 

Latest public sector security articles

 Passwords are past their sell-by-date

 Misconfigured networks are the easiest IT resource hackers exploit

 The Return of Ransomware and Do-it-Yourself Botnets

 Hikvision mobile surveillance solution deployed on 3,600 buses in Ningbo, China

 Hikvision cameras keep watch on World Expo 2010 in Shanghai

 Data protection laws are too relaxed and require revision

 Northshore Utility District deploys IndigoVision's IP Video surveillance system to prevent terrorism and improve public and staff safety

 The challenge of protecting multiple and increasingly disparate end user environments

 The USA continues to be the number one spam polluter whle Europe becomes the most prolific continent for spamming

 New Mobile CCTV service for Northern Ireland

...[view more articles on public sector security]...

 

Other security websites:

Public Sector security links

Public sector banks need to hire more: BCG A report by The Boston Consulting Group notes the human resource challenge for public sector banks due to large-scale retirement.

Unions suspend public sector strike South African public sector workers suspended a pay strike yesterday as it entered its fourth week. The strike by 1.3 million workers has hit schools, state hospitals and the judiciary. Strikers have demanded a pay rise of 8.6 per cent, twice the inflation rate, and a R1,000 (£90) a month housing allowance.

South African public workers suspend 20-day strike South African public sector unions announced the suspension Monday of a three-week-old strike that has crippled the health service and forced widespread school closures.

S.African public sector strike suspended -unions S.African public sector strike suspended -unions

Labour focus shifts from private to public sector While the private sector bore the brunt of the economic downturn, union leaders are turning their attention to the public sector this Labour Day as deficit-obsessed governments put the squeeze on their workers.

Survey: IT job opportunities slump in UK public sector LONDON: Public sector job opportunities in IT in Britain have fallen markedly since the start of the year, a survey showed today, in a sign that the government's austerity drive is already affecting the labour market. Only four in every hundred new IT jobs are being created in the public sector, down from about 30 out of 100 at the start of the year, according to research by business and ...

Public workers given mental health training in Austin Public workers given mental health training in Austin

directory of Public Sector security suppliers
Search directory Register your company
Public Sector Security books:

SEARCH NEWS
DIRECTORY
Google