On GameSpot: Next-gen DS, Xbox tech contracts set?
BNET Business Network:
BNET
TechRepublic
ZDNet

October 5th, 2009

Adobe has the iPhone surrounded with Flash, but security headaches loom

Posted by Larry Dignan @ 6:37 am

Categories: Adobe, Android, Apple, General, Google, Mobile, Nokia, Palm, Smartphones, Software Infrastructure, Web Technology, iPhone

Tags: Apple iPhone, Adobe Systems Inc., Phone, Mobile, Monoculture, Multi-touch Flash, Advertising & Promotion, Security, Marketing, Larry Dignan

Adobe’s announcements that a full version of Flash is coming to every smartphone not named Apple iPhone leave me conflicted. Full-blown Flash can be a boon to the mobile Web, but has the potential to become one huge security headache.


First the happy talk
(Techmeme, Adobe statement): A public beta of Flash Player 10.1 will be coming to Windows Mobile and Palm’s WebOS later this year. Next year will bring Flash betas to Google Android and Symbian phones. Research in Motion is also working with Adobe. Multi-touch Flash, accelerometer perks and other mobile goodies abound.

And from an tech vendor art of war perspective, Adobe’s news that full Flash capabilities are coming to Windows Mobile phones, Palm, RIM and Google Android phones is very interesting. Apple is the last mobile handset holdout when it comes to Flash adoption. Sure, the two parties are kind of sorta talking about Flash on the iPhone—and have been for months—but the effort isn’t going anywhere. Can Adobe force iPhone adoption by delivering up a Flash-powered mobile utopia on the small screen?

And then you trip over the big honking negative: Security. From a user perspective, Flash your mobile phone may be nice, but can also be a big drag. The patches, the vulnerabilities, the frequent upgrades and the potential monoculture headaches. Monoculture for our purposes refers to one dominant technology that pervades multiple fronts. Windows is a monoculture. Flash is a monoculture. Anything that’s a standard is a monoculture. The problem with monocultures: You can attack them and cause a lot of collateral damage because there’s no diversity.

Adrian Kingsley-Hughes nails
it when he handicaps Adobe’s Open Screen Project that will be bringing full Flash to a mobile phone throughout 2010.

Flash Player is an absolute security nightmare on desktop PCs, and requiring endless updates. I’m not sure how thrilled I’d be to be faced with Flash Player updates on my smartphone every time I was to go browsing. If I’m paying per MB, on a dodgy connection (and chances are that one, if not both of these factors will come into play), I’d be even more upset. I know that the modern web relies heavily on Flash, but this announcement worries me because it’s creating a huge tech monoculture that’s ripe for attack. Unless Adobe is planning on beefing up security, this could be one of the worst things to happen to smartphone users.

Don’t believe Adrian. Check out the Flash vulnerability fiesta from Ryan Naraine and Dancho Danchev. Flash remains unpatched by most users, is frequently open to attack and outfits like Mozilla Firefox are trying to push folks to patch Flash for the greater good.

How many of you have bothered to patch anything on your mobile phone? Thought so.

And now we’re taking Flash to every screen. For Adobe, full-featured Flash on every mobile phone is huge. The rest of us may not be as thrilled about today’s happenings once the mundane processes such as frequent Flash patches take over.

Larry DignanLarry Dignan is Editor in Chief of ZDNet and Editorial Director of ZDNet sister site TechRepublic. See his full profile and disclosure of his industry affiliations.

For daily updates, follow Larry on Twitter.

Email Larry Dignan

Subscribe to Between the Lines via Email alerts or RSS.

  • Talkback
  • Most Recent of 31 Talkback(s)
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom
I would like to be added to the list of iPhone users that NEED flash or something that will run flash on this phone.... (Read the rest)
Posted by: w.Ollie Posted on: 10/06/09 You are currently: a Guest | | Terms of Use
Flash 9 is already available  DonRupertBitByte | 10/05/09
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom  putty.master | 10/05/09
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom  nothingness | 10/05/09
Yeah... but  condelirios | 10/05/09
You Tube is H264 MPEG 4 video which is...  CowLauncher | 10/05/09
thanks  nothingness | 10/05/09
...and with much higher quality. happy  Mikael_z | 10/05/09
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom  condelirios | 10/05/09
Yes.. But  Ben_rockwood | 10/05/09
That's nonsense, Larry...  Sleeper Service | 10/05/09
Apple Will Never...  shollomon | 10/05/09
Browser Based EXEs are on the way out...  CowLauncher | 10/05/09
Anyone who doesnt uninstall Flash deserves what they get  Johnny Vegas | 10/05/09
Clarification about monoculture  georgeou | 10/05/09
PLEASE just let Flash die...  olePigeon | 10/05/09
Keep dreaming pal  DonRupertBitByte | 10/05/09
Yes, I meant CSS...  olePigeon | 10/05/09
Oh that's easy  DonRupertBitByte | 10/05/09
HML5 & 3D  WarhavenSC | 10/05/09
Yes. [nt]  olePigeon | 10/05/09
2 seconds on Google came up with...  olePigeon | 10/05/09
Webkit/Safari "plug in" needed?  DonRupertBitByte | 10/05/09
Correction-Blackberry is getting Flash 10  DonRupertBitByte | 10/05/09
Other examples  DonRupertBitByte | 10/05/09
Your right olePigeon  Scrat | 10/05/09
Amen to That  DannyO_0x98 | 10/05/09
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom  peteisback | 10/05/09
MAX09: Flash 10 and Flash Pro demo'd on iPhone  justit1234@... | 10/05/09
Monoculture? Or portable/cross-platform?  techboy_z | 10/05/09
I install Flash  Theli | 10/05/09
RE: Adobe has the iPhone surrounded with Flash, but security headaches loom  w.Ollie | 10/06/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
The best support in the Linux business
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.
Learn more >>
Keep Up With The Latest In Document Management with The DocuMentor.
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
Learn more >>
The more you simplify, the more you save
When you transition from your existing Red Hat environment to SUSE Linux Enterprise from Novell, you can recognize dramatic cost savings, perhaps as much 50%
Learn more >>
Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.
Learn more about the free, six-month trial offer>>
Reduce risk. Reduce complexity. Increase reliability.
A simplified IT environment isn't just less complex. It's also more reliable. Standardize on a single Linux platform with SUSE Linux Enterprise from Novell, and get the world's most interoperable Linux
Learn more >>
Save time with automated shipping solutions
The Business Essentials Guide provides you useful tools and templates to help grow your business and save you time with automated shipping solutions.
Visit the UPS Business Essentials Guide
advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads