Podslurping (sometimes just called slurping) is the unauthorized download of data from
a computer to a small device with storage capacity, such as a flash drive or an iPod
or other MP3
player.
The small size of the devices and the ease of connectivity -- for example through the USB port or a
wireless Bluetooth
connection -- makes it possible for anyone who can get access to a computer to download files from
it quickly and surreptitiously.
To illustrate the ease of podslurping, security expert Abe Usher created a proof of concept
application called slurp.exe. Using the program on his iPod, Usher was able to copy all document
files from his computer in 65 seconds. Usher now makes a version of his program for security audits
that does not actually copy the files but generates a report of the information that could have
been stolen in a real attack.
To protect against podslurping and other network intrusions targeting individual computers,
experts recommend that administrators develop and enforce effective endpoint
security policies.
This was last updated in March 2006
Email Alerts
Register now to receive SearchMobileComputing.com-related news, tips and more, delivered to your inbox.
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States.
Privacy
More News and Tutorials
-
Mobile growth is surging ahead like never before, according to our annual reader survey. Find out what your peers are saying, and where their IT budgets are going.
-
Looking for the best Palm Pre accessories to customize your new smartphone? This chapter from the book "How to do Everything: Palm Pre" showcases products that can help you get more out of your device, and give it some personality to boot.
-
Available smartphone apps are so impressive that users are flocking to mobile marketplaces such as iTunes App Store, Android Marketplace and BlackBerry App World. To protect business-use smartphones, enterprises need to lock in IT policies and deploy robust centralized controls to circumvent malware apps and viruses that can be hidden within third-party mobile apps.
-
Articles
-
Resources from around the Web