IBM AppScan is Secure For IPhone Developers Against Hackers

IBM has recently launched a new application to help developers secure their code and data in iOS applications. AppScan 8.7 searches through iOS application code and alerts developers when it finds any flaws. This software also analyses the apps that developers might want to use on Apple devices to check for vulnerabilities. Meanwhile it alerts the IT security personnel’s about the potential threats.

IBM said that over 45.6 billion siOS app were downloaded in 2012, which is why securing Smartphone and other iOS devices should be a top priority for organizations. IBM has developed AppScan Source application after analyzing over 40,000 mobile APIs by using Apple’s Software Development Kit (SDK). These API profiles were added to the IBM AppScan Source Security Knowledge-base and tied to the analysis engine.

Never miss an update from us. Join 10,000+ marketers and leaders.

IBM AppScan Source 8.7 for iOS is expected to hit the market on 25th of March. IBM claims that it will facilitate the users the ability to improve security quality without sacrificing the time to market of mobile application projects. It will also allow the FIs and others, to protect each mobile application release in the face of constant updates. The new security protocol is part of IBM’s over-arching Mobile First initiative.

In addition, IBM AppScan 8.7 can reduce the cost of developing secure applications by finding early security vulnerabilities in the development cycle. It provides developers with a view where flaws may surface in their applications, allowing potential security drawbacks to be handled at an early stage and avoiding further pitfalls in development process.

New Features in IBM AppScan 8.7 include:

Multiple Language Support:

The software also features language support for Objective-C, JavaScript, Java which includes the ability to call APIs and data flow analysis that would generate trace information. This new feature enables organizations to build secure enterprise mobile apps, regardless of technology, employees and partners.

US Government Regulation Compliance:

Provides compliance with two crucial standards – Federal Information Processing Standard (FIPS) Publication 140-2 and Internet Protocol version 6 (IPv6).

This project showcases IBM’s execution of its [Mobile First] strategy to help clients incorporate security into their infrastructure and solutions from the design, development and testing phases rather than leaving security to become an afterthought,” said Caleb Barlow, director of application, data and mobile security, IBM.

I’ve worked with the team at Andolasoft on multiple websites. They are professional, responsive, & easy to work with. I’ve had great experiences & would recommend their services to anyone.

Ruthie Miller, Sr. Mktg. Specialist

Salesforce, Houston, Texas

LEARN MORE

Most companies have stated that their customers are looking for ways to secure their apps and data. Hence secure mobile apps and auto security tests are a must to ensure their customers that their data are safe.

With respect to iphone development, Caleb Barlow also quoted “security into the infrastructure and solutions from the design, development and testing phases rather than leaving security to become an afterthought.” AppScan Source for iOS is said to be available from 25th of March. IBM started its AppScan range of products in 2008, and has previously launched a version that scans Android apps.

SwiftKey has unveiled its version 4 keyboard app for Android devices

androidimg

To be completely honest, most android users are not satisfied with the android’s default keyboard. It can be fiddly for some users, who write languages other than English on a daily basis. After all it doesn’t cater to everyone’s typing style either. However “SwiftKey” has always proved to be the best keyboard app alternative for the android platform. This time the developers at SwiftKey have launched its version 4 for the android devices

One of the best features of this keyboard is its ability to gradually learn the user’s typing preferences. It studies how a user writes over time and generates predictive texts for him, which is surprisingly accurate and better than any other applications. SwiftKey has also included its swipe like feature called the SwiftKey Flow which lets the user type sentences without lifting finger from the mobile screen. SwiftKey now supports over 60 international languages.

Here are some of the most notable features in version 4 release:

  • SwiftKey Flow is a gesture typing feature that facilitates the users to write sentences simply by gliding over the keys. It also adds auto-correction ability as-well-as predicts the possible next words while typing.
  • It can also be blend with tap inputs and switching mid-word.
  • If the predicted word is correct then it can be inserted by simply lifting the finger off.
  • Flow through space lets the user type a complete sentence in one motion without lifting the finger, to give spaces between the words.
  • It supports word prediction for over 60 languages like Javanese, Sundanese, and Vietnamese etc with both auto-correction and word prediction abilities.
  • Easier correction and auto adaptability to users typing style.

According to reports Android application development with SwiftKey’s SDK now supports iOS, JVM, Linux, Mac OS-X, Windows, and C++ etc. SwiftKey had released its Flow feature in the last October and its Beta version was tested with a community of million users.  Being awarded numerous times for its keyboard application, it surely is one of the best android keyboard apps, plus it comes with a reasonable price.

Apple Promises To Fix The Security Exploit That Lets People Gain Access

In our previous post we had outlined some of the latest features of iOS 6.1 update, mentioning it to be a fix for its old mistakes. But it turns out that, it does have some security flaws which let the users bypass the locked iPhone devices.

Never miss an update from us. Join 10,000+ marketers and leaders.

This exploit was first spotted by a French user who later uploaded a video to YouTube, by demonstrating the procedure to unlock a pass-code protected iOS device.  Seeing this Apple has promised to release a fast fix to this security issue. In a statement, the company said “Apple takes user security very seriously, we are aware of this issue, and will deliver a fix in a future software update.”  But the company has neither offered a specific timeline for its next update nor any quick fix to the handle issue.

The video depicts a sequence of steps in which the French guy easily hacks the “locked” iPhone, that was running iOS 6.1. The process involved is somewhat weird, such as ending an emergency call, consecutive pressing of home button and etc. Below I have provided the exact steps as posted by the users, to unlock the iPhone.

First Part:

  • Go to emergency call, push down the power button and tap cancel.
  • Dial 112 and tap green and immediately red.
  • Go to lock screen.

Second Part:

  • Go to passcode screen.
  • Keep pushing down the power button …1…2…3…seconds and before showing the slider “turn off”…tap the emergency call button and …voilá!
  • Then without releasing the power button press the home button and ready…

The procedure allows the users to access contacts, photos and to make calls. But it doesn’t offer access to its home screen or any iOS apps that exists on the home screen. The iPhone lock screen hack seems to work on iPhone 4S, iPhone 4 too, if they are running iOS 6.1.

Android 4.2.2 brings minor updates for the Nexus users with improvements in Bluetooth audio issue

androidimg

Android’s latest 4.2.2 update is already released and beginning to roll out for its Nexus devices. This update will late be availed to other Mobile devices too. Since its last update i.e. Android 4.2.1 during the late November, 4.2.2 appears to have minor fixes only.

Android 4.2.2 update has primarily resolved the issue of audio streaming over Bluetooth that used to skip during the operation. Reddit user WeeManFoo quoted “Bluetooth streaming works better (compared to 4.2.1) but it’s not perfect” and mentioned that for other notable fixes or features to 4.2.2, users might have to wait for an official changelog.

WeeManFoo also referred that his Galaxy Nexus still gets disconnected from Bluetooth speakers when switching from Wi-Fi to a 3G data connection. So, it appears that there is still some work to be done by the android developers.

Google has also modified the new ‘Quick Settings panel’ introduced in Android 4.2.2. The Wi-Fi and Bluetooth icons in the panel can now be turned OFF and ON by long-pressing the icons, instead of browsing to their respective settings panels.

Google has also introduced a notification sound for wireless charging and has changed the notification sound that indicates that the phone or tablet’s battery is running low.

None of these are major changes, but they sure bring the refinements that we expect from a minor update. Android 4.2.2 continues to roll out to Galaxy Nexus, Nexus 7, and Nexus 10 devices however Nexus 4 users will have to wait for now.

At Andolasoft we develop unique android mobile applications for individuals and from start-ups to established companies. We’ve an expertise team of android app developers who design the most innovative apps for all android devices.

2013 will bring these 3 trends for the Software Testers

QA

Mobile applications have emerged as the most frequently used software platform in the last year. Numerous Testers and Developers spent a substantial amount of their time, testing security related issues. And we also saw that some software testers took the role of business partners rather than bug fixers.

Software Testers will also face some major testing trends this year. Here we have outlined some upcoming trends to look after.

Mobile compatible web application

Since last year, mobile usage has been increasing at a very faster pace. People are using mobile phones more than ever, from checking emails to browsing the web. But most of the companies are still not ready for this trend. Because of the smaller screen size, it possesses the biggest problem of usability.

Developers have also created mobile websites but they are relatively slower when compared to a computer webpage. This year, performance testing of mobile sites is expected to be most promising trend.

Server Performance and cross browser compatibility Testing

The integration of third party apps and the success of JavaScript will deeply affect client side performance. The year 2013 will bring the testers attention towards browser performance and server performance testing.

Although all browsers are expected to behave the same way across all platforms, but this is always not true, therefore more emphasis will be given on automated cross-browser compatibility testing.

Agile Software Development

Agile software development practices are getting popular among the software companies. It is essential for the software testers to adopt a versatile approach. The design and execution of the tests are to be performed at the same time. The priority for most of the companies is to deliver the services quickly and creatively.

At Andolasoft we have expert team of quality analyst and testing engineers with strong market specific testing experience to provide extensive Quality Assurance Services throughout the product life-cycle. We also execute cloud based testing to provide the best in quality product services and always look forward to upcoming trends in Software Testing.

Top 6 Speculations For Cloud Technology in 2013

cloud-management

Technology enthusiasts have already considered Cloud computing as the hottest topic of this year. Almost every industry, from Finance to IT sectors is shifting their attention to use cloud services as an essential tool for faster development.

Here we have outlined some analysts’ predictions for this year of cloud technology:

  • Private clouds will be more widespread: Over the coming months, there will be a massive shift to private clouds, performed by almost every Industry. It might even bring to an end the need of on-site cloud admins and managers. The cloud services will then be managed off-premises, remotely by someone else.
  • Cloud and mobile will unite to work as one: Many cloud projects are motivated by the extensive use of mobile devices to access back-end cloud applications. Virtually every SaaS applications are connected to a mobile client. It also seizes the database and traffic, so it is predicted that all the major cloud computing services would be united with the mobile technology to solve the issue.
  • There will be more personal clouds than ever: The personal cloud will increasingly replace the PC usage. It will be more convenient for the users to find their contents and services without depending on the location. The personal cloud will shift the focus from specific client services to comprehensive cloud-based facilities delivered across the devices.
  • More cloud services provides: The IT organizations will gradually be starting internal cloud services provider roles by administering the requirements, and utilization of mixed and complex cloud services for their own users as well as business partners.
  • Industry-specific cloud solutions:  There will be cloud solutions, specifically designed to serve various markets, such as healthcare, finance, manufacturing, R&D etc. And also the need of specialized security features and processes for each vertical market
  • Cloud will be ubiquitous with a more generic view:  It is predicted that people will finally stop saying that everything is going ‘cloud,’ and they will actually get real about the fact. Cloud would not need any special notice or training. Any IT professional of user can set a cloud service up and running.

At Andolasoft, we provide cloud management and support service with our highly experienced infrastructure administrators. We provide proactive maintenance, monitoring, server support, backup and recovery services. We have successfully executed numerous cloud associated tasks for our customer’s business requirements. Click here to know more about our cloud services.