X

PalmOS Password Security Risk

PalmOS Password Security Risk

CNET staff
According to the SecuriTeam.com Web site, the PalmOS contains a security hole that could put private data at risk. An excerpt: PalmOS offers a built-in Security application, which is used for the legitimate user to protect and hide records from unauthorized users by means of a password. In all basic built-in applications (Address, Date Book, Memo Pad, and To Do List), individual records can be marked as "Private" and will only be accessible if the correct password is entered. It is possible to obtain an encoded form of the password, determine the actual password due to a weak, reversible encoding scheme, and access a users private data. In order for this attack to be successful, the attacker must have physical access to the target Palm device. Complete details are available on this page. (Thanks, Monty Solomon)