Remote access to patient records and security of android apps

Roland Perry lists at internetpolicyagency.com
Fri Jan 13 12:33:19 GMT 2012


In article 
<CAK0b=2fvUUCukMF1yGqbR1YdOSTPRFN3qQvT9vnfyEgEOEV6JQ at mail.gmail.com>, 
Tony Naggs <tony.naggs at googlemail.com> writes

>> Couldn't the Android App have its own encryption layer?
>
>Of course it can, but will it do it correctly? For instance El Reg recently
>reported on electricity meters that failed to use SSL encryption correctly
>- http://www.theregister.co.uk/2012/01/09/smart_meter_privacy_oops/

There's a big difference between doing it not very well, and failing to 
do it (the encryption) at all. That would be simply solved in an 
application such as this by refusing to fall back to plain text.
-- 
Roland Perry



More information about the ukcrypto mailing list