Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Security Android Communications EU Microsoft

EU Parliament Blocks Outlook Apps For Members Over Privacy Concerns 24

jfruh writes Microsoft last week released Outlook apps for iOS and Android, but one group that won't be getting to use them is members of the European Parliament. They've been advised by their tech staff that the apps are insecure and that they shouldn't download them — and if they have, they should change their Outlook passwords.
This discussion has been archived. No new comments can be posted.

EU Parliament Blocks Outlook Apps For Members Over Privacy Concerns

Comments Filter:
  • by Overzeetop ( 214511 ) on Tuesday February 10, 2015 @09:21AM (#49025403) Journal

    The magic 8 ball could have told them that.

  • Pretty much a given? (Score:5, Interesting)

    by gstoddart ( 321705 ) on Tuesday February 10, 2015 @09:22AM (#49025415) Homepage

    With all the news stories about how America can (and will, and does) force companies to hand over what's in their clouds ... why the hell any member of the EU Parliament would think that using anything from Microsoft isn't a stupid idea is beyond me.

    Unless you own every piece in that communication chain, you more or less have to start treating Microsoft as an entirely un-trustworthy entity ... because for legal and privacy purposes, they pretty much are.

    I think MS (and other American cloud providers) are going to start finding themselves very unwanted ... because they literally can't be trusted.

    They can't be trusted because they do stupid things like this, and because they want to monetize everything, and because they're more or less covered under the PATRIOT Act.

    In deeming themselves above everybody's laws, and entitled to all data ... America is essentially no longer trustworthy.

    • In deeming themselves above everybody's laws, and entitled to all data ... America is essentially no longer trustworthy.

      Was America ever trustworthy? The short answer is no.

      • Please give an example of a country that is? And the EU (and a whole bunch of other countries)works hand in hand with the NSA collecting and sharing data. Why do you think the EU politicians stopped their vitriolic accusations in record time? Could it be that their own intelligence agencies pulled them aside and quietly told them they were cooperating with the NSA so shut the hell up? The naivety displayed by the people raging about the NSA in particular and America in general is breath taking. By failing t

      • I expect this was a quip, rather than serious. Was the USA ever trustworthy, going back to the formation of the Union between 1776-1789? I'm not an historian, but I'd guess they started out relatively trustworthy. I'm given to understand they had some high ideals. Power corrupts though, I suppose.
        • by drinkypoo ( 153816 ) <drink@hyperlogos.org> on Tuesday February 10, 2015 @10:14AM (#49025809) Homepage Journal

          I'm given to understand they had some high ideals.

          That's mostly propaganda, and a misunderstanding of the nature of the founding fathers. A small handful of them clearly had high ideals. But how can you take people seriously when they declare that all men are created equal and declare that they are starting a democracy, then fail to give the vote to over half the population? The truth is that they were creating a government in which they themselves (and their ilk) would hold the reins of power, and to this day the nation (like the world) is controlled by those who are both wealthy and racially privileged. It's a government by, of, and for money.

    • why the hell any member of the EU Parliament would think that using anything from Microsoft isn't a stupid idea is beyond me.

      Well, because they want the feature set. The EU should start dumping truckloads of money on Inverse [www.sogo.nu] and Samba until the open source solution is superior.

      Sogo is close to being done (the hard bits like single instance modifications of repeating events aren't) and Samba4 is teetering on stilts; though it works in ideal circumstances, lots of problems aren't handled and there is missin

    • by s.petry ( 762400 ) on Tuesday February 10, 2015 @09:36PM (#49026357)

      Read TFA. Microsoft is doing what EVERY SINGLE SECURITY PROFESSIONAL TELLS YOU NOT TO DO! Caching passwords on a remote server. I don't care how many times you claim to encrypt the password, and I don't care what encryption algorithm they claim to use. You never, ever under any circumstances cache a users password. This is simply inexcusable and Microsoft deserves every bit of heat they get for this.

      If I was told that a client sent an auth string and received a Kerberos ticket that got cached, I would not have the same opinion or harsh criticisms. This is plain old idiocy and laziness!

    • RIM? If you don't run your own BES server, the RIM servers (or carrier BES server) have the password stored on them in order to download the mail. If you run your own BES server, it has full control on your domain in order to access mailboxes, and it has internet access to send mail to the RIM servers, where it is cached.

      Oh, and RIM is a Canadian company, one of the Five Eyes, so in most respects no different than being American. I would love to see what the EU intends to use for email on phone.

      http://en [wikipedia.org]

  • Microsoft Outlook/Exchange is a massive client-server security risk that doubles as a collaborative email & calendaring application.

  • ...some people @ EU parliament are doing their job just finely right

    It should have been called perhaps earlier, that's the only thing to consider at this point.

  • After checking out how the Outlook app handles emails and authentication, our security group pushed out an update to the blocklists, making it impossible to install this app on any phone connected to our company mail servers. (Connecting to those email servers already requires you to accept a minimum set of company security requirements, like secure unlock, not just a swipe, and the capability to remotely wipe the phone.)

    Terje

Take an astronaut to launch.

Working...