Study finds security indicators sacrificed to accommodate small screens

07 Dec 2012

1

How unsafe are mobile browsers? Unsafe enough that even cyber-security experts are unable to detect when their smartphone browsers have landed on potentially dangerous websites, according to a recent Georgia Tech study.

Like their counterparts for desktop platforms, mobile browsers incorporate a range of security and cryptographic tools to provide a secure Web-browsing experience.

However in one critical area that informs user decisions - the incorporation of tiny graphical indicators in a browser's URL field - all of the leading mobile browsers fail to meet security guidelines recommended by the World Wide Web Consortium (W3C) for browser safety, leaving even expert users with no way to determine if the websites they visit are real or imposter sites phishing for personal data.

''We found vulnerabilities in all 10 of the mobile browsers we tested, which together account for more than 90 per cent of the mobile browsers in use today in the United States,'' said Patrick Traynor, assistant professor in Georgia Tech's School of Computer Science. ''The basic question we asked was, 'Does this browser provide enough information for even an information-security expert to determine security standing?' With all 10 of the leading browsers on the market today, the answer was no.''

The graphic icons at issue are called either SSL (secure sockets layer) or TLS (transport layer security) indicators, and they serve to alert users (a) when their connection to the destination website is secure and (b) that the website they see is actually the site they intended to visit. The tiny ''lock'' icon that typically appears in a desktop browser window when users are providing payment information in an online transaction is one example of an SSL indicator. Another is the ''https'' keyword that appears in the beginning of a desktop browser's URL field.

The W3C has issued specific recommendations for how SSL indicators should be built into a browser's user interface, and for the most part, Traynor said, desktop browsers do a good job of following those recommendations. In mobile browsers, however, the guidelines are followed inconsistently at best and often not at all.

Latest articles

OpenAI Acquires Neptune to Fortify Training Infrastructure as Valuation Hits $500 Billion

OpenAI Acquires Neptune to Fortify Training Infrastructure as Valuation Hits $500 Billion

Amazon and Google Roll Out Joint Multicloud Service to Boost High-Speed Connectivity

Amazon and Google Roll Out Joint Multicloud Service to Boost High-Speed Connectivity

TRAI Cracks Down on Spam: Over 21 Lakh Fraud Numbers Disconnected; New Advisory Issued

TRAI Cracks Down on Spam: Over 21 Lakh Fraud Numbers Disconnected; New Advisory Issued

Google Expands Taiwan Presence With New AI Engineering Centre

Google Expands Taiwan Presence With New AI Engineering Centre

Maruti Suzuki Crosses 3 Crore Domestic Sales Milestone — A New Chapter in India’s Automotive Story

Maruti Suzuki Crosses 3 Crore Domestic Sales Milestone — A New Chapter in India’s Automotive Story

Alaska Airlines Resumes Operations Following Major Tech Outage

Alaska Airlines Resumes Operations Following Major Tech Outage

Tesla's New AI Chip: A Strategic Partnership with Samsung and TSMC, Not a Replacement for Nvidia

Tesla's New AI Chip: A Strategic Partnership with Samsung and TSMC, Not a Replacement for Nvidia

Uber Rebrands ‘Green’ as ‘Electric,’ Offers $4,000 Incentives to U.S. Drivers to Accelerate EV Adoption

Uber Rebrands ‘Green’ as ‘Electric,’ Offers $4,000 Incentives to U.S. Drivers to Accelerate EV Adoption

Jaguar Land Rover Cyberattack Estimated to Cost UK Economy $2.5 Billion

Jaguar Land Rover Cyberattack Estimated to Cost UK Economy $2.5 Billion

Business History Videos

History of hovercraft Part 3 | Industry study | Business History

History of hovercraft Part 3...

Today I shall talk a bit more about the military plans for ...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of hovercraft Part 2 | Industry study | Business History

History of hovercraft Part 2...

In this episode of our history of hovercraft, we shall exam...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of Hovercraft Part 1 | Industry study | Business History

History of Hovercraft Part 1...

If you’ve been a James Bond movie fan, you may recall seein...

By Kiron Kasbekar | Presenter: Kiron Kasbekar

History of Trams in India | Industry study | Business History

History of Trams in India | ...

The video I am presenting to you is based on a script writt...

By Aniket Gupta | Presenter: Sheetal Gaikwad

view more
View details about the software product Informachine News Trackers