Enabling Secure Notifications to Mobile Devices via the Cloud
Published on: 4th Apr 2014
Note -- this news article is more than a year old.
IBM says that it has patented a cloud computing security technique that enables mobile app developers to ensure that data notifications are securely pushed to and from mobile devices.
Maintaining the privacy and confidentiality of data shared via mobile networks is a key issue, yet IBM said that its security researchers found that insufficient security protocols in mobile applications can risk exposing details of data notifications pushed across mobile networks, potentially exposing personal or sensitive information to service providers.
This mobile security exposure is problematic and limiting to organizations that wish to use mobile notifications to communicate sensitive information with their customers, such as a credit card company wanting to notify a customer of suspicious charges or a bank may need to alert customers to suspicious account activity.
To address this mobile security challenge, a team of IBMers invented a cloud-based service that enables developers to create applications that can encrypt data notifications, assign them a unique message identifier (ID) in the cloud that is securely transmitted to a mobile device via a third-party service provider. Once the end-user's device authorizes the message, the recipient can pull down and access the encrypted message content from the cloud.
"This patented invention will enable developers and service providers to design and build applications that ensure sensitive or personal information is not inadvertently exposed across mobile networks," said Benjamin Fletcher, inventor and software engineering researcher, IBM. "Regardless of the nature of data being pushed to or from a mobile device, it should never be exposed to third-parties since they cannot always guarantee the security and confidentiality to customers."