Apple Yanks Privacy Watcher From App Store

Want to install a well-reviewed iPhone app that looked at the free apps installed on your smartphone, then told you which ones might be slurping excessive amounts of personal information?

Previously, you could tap Clueful ($3.99) from Apple's App Store. The app, developed by Ro
manian security software developer Bitdefender, "looks at what apps are on your iPhone and then fetches privacy details about them," according to the company's website. Those privacy details are based on Bitdefender's analysis of the data-collection practices of about 60,000 free iOS apps.

 

as of june 30, however, Apple dropped Clueful from its App Store, although anyone who had already bought the app can continue to use it. What was the impetus for the privacy-watching app's takedown? "Apple informed Bitdefender's product development team of the removal--for reasons we are studying--after it was approved under the same rules," according to a statement released by Bitdefender, which said it's signed a related non-disclosure agreement with Apple. "We are working hard toward understanding why our app was removed and to develop the app to improve its chances of staying there."

 
Why bother watching what apps can access? Answering that question depends on how much trust users put both in the developers behind an app--especially a free one--as well as in Apple's app-review process. While Apple hasn't explicitly detailed what its app-review teams test before approving or rejecting an app or app update, it's possible that Apple puts submitted apps to a privacy test. Then again, it's also possible that Apple doesn't check for questionable data-gathering practices.
Clueful, however, offered to provide greater clarity on the matter, thanks to Bitdefender's iOS 
app analysis, which logged which apps could access a user's iPhone address book, which use analytics or track a user's location, and which can access Facebook or Twitter credentials. It also noted which apps display advertisements, as well as apps with the potential to drain excessive amounts of battery life via their use of background services, GPS, or audio.
"While most app developers use this information for legitimate purposes, others might not," said Catalin Cosoi, Bitdefender's chief security researcher, in a blog post. Or as the Clueful FAQ noted, "an app that provides backup for your contacts has every right to access your entire address book, but why should a flashlight app do the same?"
Interestingly, Bitdefender's related analysis of the 60,000 iOS apps, conducted in recent months, uncovered some significant privacy concerns. For starters, 43% of iOS apps didn't encrypt people's personal data when it was being transmitted. As a result, if the user was on an unsecured Wi-Fi connection, the transmitted personal information could be sniffed by an attacker. Bitdefender also found that 41% of apps were tracking a user's location, and almost 20% had full access to a user's iPhone address book. Note that Bitdefender so far has only analyzed free apps, since "these were judged more likely to be shady or downright malicious," compared with paid apps, said Bitdefender's Stoica Razvan via email. But Bitdefender said it plans to begin scanning paid apps in the future.
Based on the Bitdefender research, many developers seem to have programmed their apps to collect more data than they should require. That finding is backed up by another study, released earlier this year by South Korean antivirus vendor AhnLab, which scanned more than 150 top-rated Android apps, and found that 43% were requesting "excessive permissions," based on what the app said it was designed to do. Likely explanations range from developers wanting to collect as much information as possible on users for potential marketing purposes, or simply just that from a coding perspective, it's faster to just grab a lot of data, then use what's required, rather than carefully limiting what gets collected in the first place.
That information security issue isn't limited to Android apps. Earlier this year, for example, a security researcher found that multiple iOS apps, including Path and Hipster, were transmitting people's personal information to the developers' servers, without clearly labeling what they were doing or why. In response, the developers updated their apps to make it clearer how certain settings--such as "find friends"--would lead to parts of the iPhone address book being transmitted to the app developer's servers.
The widespread lack of transparency in how mobile apps are collecting peo
ple's personal information may soon be curtailed, however, thanks to a mobile app privacy program launched earlier this year by the California attorney general. To date, Amazon, Apple, Google, Facebook, HP, Microsoft, and Research In Motion have agreed to participate in the program, which was developed out of a settlement by the state with mobile app distributors.
The state found that many mobile apps were collecting personal data from consumers, but not clearly disclosing what was being collected in their privacy policy. Accordingly, the aforementioned mobile app distributors have agreed to require any developers who distribute apps with their services to clearly state--in a related privacy policy--what the app collects. The distributors will also provide mechanisms for consumers to report any abuse on the part of developers.
On a related note, California's attorney general's office Thursday announced the launch of a new privacy enforcement and protection unit, which it said "will focus on protecting consumer and individual privacy through civil prosecution of state and federal privacy laws." The office will be staffed by a full-time team that includes six prosecutors who will focus on enforcing privacy laws.
source: informationweek.com

Add comment

Login or register to post comments
  • 20-Jul-2012 18:55
  • Ayesha Farooq
  • Ayesha Farooq's picture
  • Americas, IT
  • Event Date
    «  

    May

      »
    S S M T W T F
     
     
     
     
    1
     
    2
     
    3
     
    4
     
    5
     
    6
     
    7
     
    8
     
    9
     
    10
     
    11
     
    12
     
    13
     
    14
     
    15
     
    16
     
    17
     
    18
     
    19
     
    20
     
    21
     
    22
     
    23
     
    24
     
    25
     
    26
     
    27
     
    28
     
    29
     
    30
     
    31
     
    Add to calendar
     
     
    More IT INSIGHTme

     

     

    IT

    Aruba Networks introduces 802.11ac solution

    Mobile network access solutions specialist Aruba Networks today announced its flagship 802.11ac solution, claiming an industry first in the delivery of "gigabit Wi-Fi combined with the device density and application intelligence required by today's Wi-Fi networks".

    The console wars: what they mean for the Middle East

    Rumblings in the gaming community have broadcast the need for a revamp in console offerings when the next-generation of kit goes on general release. Microsoft' unveiling of the Xbox One was reminiscent of Q42012 and Q12013 releases from manufacturers of Smart TVs, smartphones and other smart devices. Voice and gesture control, Internet content hubs and multitasking came together to give the impression of a platform reborn and one ready to do battle with its forthcoming Sony-made rival the Playstation 4.

    Lenovo reports strong fourth quarter and full year 2012/13 results

    Lenovo Group announced results for its fourth fiscal quarter and full-year ended March 31, 2013. With record full-year sales of US$34 billion, an increase of 15 percent year-over-year, a record full-year pre-tax income of US$801 million, up 38 percent year-over-year and record earnings of US$ 635 million, up 34 percent, Lenovo had a strong showing.

    المعارضة السورية : "فيسبوك تآمر مع النظام علينا"

    قام موقع التواصل الاجتماعي "فيسبوك" بإغلاق عدد كبير من صفحات المعارضة السورية التي تنشط على الموقع.

    Telecom

    Essential job skills to look for when hiring

    When looking to recruit strong-performing professional personnel, whether IT or otherwise, recruiters should look for several key traits, says Scott Steinberg, head of strategic consultancy TechSavvy Global.

    HTC Desire 600 launched for EMEA markets

    HTC Corp today unveiled its HTC Desire 600 dual-SIM smartphone, the company's first mid-range handset to offer its Sense 5 technologies, HTC BlinkFeed and HTC BoomSound, most recently launched as part of the HTC One.

    Check out our gallery of the HTC Desire 600 dual-SIM smartphone.

    Powered by Android Jelly Bean, the new handset is also said to offer "super-fast quad-core performance", while the Video Highlights feature enables "maximum creativity at a more affordable price tag".

    Du lauches prepaid data bundles

    UAE-based telecom operator du, has launched a daily data bundle for prepaid customers.

    As an introductory offer, for every third purchase made within 30 days, customers will get 5 minutes of free international calls.

    “We are pleased that the Daily Data Bundle is an accessible data package, which can be used as an introduction to data services or as a quick top-up as and when needed, allowing greater flexibility and even more control over data spend. ” said Farid Faraidooni, chief commercial officer.

    Huawei’s Mideast revenue up 18pc in 2012

    China’s Huawei Technologies Co’s Middle East revenue rose 18 percent to $2.08 billion in 2012 and the roll-out of 4G mobile networks and IT outsourcing will be among its main regional growth drivers, the firm said.

    The world’s second-largest telecom equipment maker also expects Middle East telecom operators to prioritise improving network efficiency, Shi Yaohong, president of Huawei Middle East, told Reuters in an email.

    Media

    Spiky sales patterns impact UAE retail channel

    The UAE retail channel for ICT and consumer electronics (CE) products is witnessing increasingly spiky sales patterns, experiencing major peaks and troughs from one month to the next, as the impact of specific sales events exacerbates market volatility. The UAE retail channel has already experienced Dubai Shopping Festival (DSF) and Abu Dhabi Electronics Shopper in 2013, and the inaugural Gitex Shopper Spring – dubbed mini-Gitex by some vendors – is currently taking place in Dubai.

    Jacky’s Electronics sees Gitex Shopper Spring Edition fuelling sales across all IT categories

    Jacky’s Electronics, the UAE’s leading multi-brand consumer electronics retailer, is expecting a surge of product sales, from the usual off-peak period during the month of April, brought in by the four-day event of the first Gitex Shopper Spring Edition.

    du Live! presents Kadim Al Saher and Sherine at 3rd du World Music Festival

    du Live! is pleased to present two of the Arab world’s most-loved musicians, Kadim Al Saher and Sherine, live on stage as part of the 3rddu World Music Festival! They will perform on 28 March at Dubai Media City Amphitheatre.

    Gadgets

    ZOTAC Supercharges the TITAN

    Dubai, UAE, May 2, 2013 – ZOTAC International, a global innovator and manufacturer of graphics cards, mainboards, mini-PCs and accessories, today supercharges the TITAN with the ZOTAC GeForce GTX TITAN AMP! Edition, the world’s fastest single GPU graphics card.

     

    Robocops to patrol LA by 2025

    In 1987, the film RoboCop debuted and featured a half-man half-robot cop patrolling the streets of Detroit, but now some car companies are planning on replacing cop cars in Los Angeles with drone cars by 2025.

    Saudi prince buys $485 million ‘flying palace’

    Dubai: Saudi billionaire Prince Al Waleed Bin Talal will soon take delivery of the world’s first customised A380 superjumbo, dubbed “the flying palace” for its luxury.

    Insight

    BYOD: Keep Your ‘Eyes on the Enterprise’

    Article Author: Paul Wright, manager of professional services and investigation team, Middle East, India and Africa

    Comguard unveils world’s most rugged and powerful firewall in Middle East

    Comguard, a Dubai based leading value added distributor for IT products and part of the Spectrum group announced the launch of world’s most rugged and powerful firewall, the Clavister X8 which can withstand harsh, industrial environments to deliver outstanding performance, offering unified security management between office environment and industry environment.

    IT INSIGHT-me (ITINme) at MWC 2013.....

    IT has been an enabler all along and now it is playing the same role in the mobile domain. Hence expect other verticles to be represented at the MWC 2013... in addition to the usual vendors, operators watch out for new buzz words such as big data, mobile cloud, mWallets, NFC, small cells and smart cities, as well as the role of mobile in other industries like advertising, automotive (YES cars), finance and retail.

    Smartphones galore this holiday season

     

    SAMSUNG GALAXY S III
    Samsung Electronics flagship product – Galaxy S3 – is powered by 1.4GHz quad core Exynos processor and features 1GB of RAM.

    People

    Wataniya names new CEO

    DOHA: Ooredoo subsidiary Wataniya Telecom's current Deputy CEO Abdulaziz Fakhroo has been appointed as CEO for Wataniya Telecom, replacing Dr Bassam Hannoun who has resigned for personal reasons. Ooredoo Group Chairman Sheikh Abdullah bin Mohammed bin Saud Al Thani said:

    "We thank Dr Hannoun for his contribution during his tenure. We look forward to having Abdulaziz lead Wataniya Kuwait as it enters an exciting new phase in its development including the launch of 4G services this year." Source:http://www.zawya.com

    Huawei appoints regional VP for ME Device group

    China-based telecoms equipment maker Huawei today announced the appointment of Ashraf Fawakherji to the newly created role of regional vice president, Middle East for Huawei's consumer business group Huawei Device.

    Hire a professional company to get the best landscape designs

    Springs are considered as the best landscaping season. This is the time when homeowners and office bearers shape up their surroundings to refresh themselves with flowers and gardens, refill the backyard ponds and enhance their lawns. However, people who do not have experience in handing these things on their own best option to rely on the option of calling the landscape architects Raleigh NC at their places. The fact is even the seasoned DIY landscaper could also benefit from the professionals to make their places from better to the best.