Every story tagged Mobile Security, curated for CIOs and IT leaders — ranked by source credibility, engagement, and freshness.
94 stories · open in the command center
Google is ending free LTE access for key Pixel Watch safety features on older models, shifting Emergency SOS, Fall Detection, and Safety Check behind a paid mobile plan after December 12. For CIOs and technology leaders, this is a reminder that device capabilities can change materially after purchase, creating hidden costs, policy implications, and support expectations for enterprise wearables and employee safety programs.
Bitdefender’s discovery of Midnight Mimosa shows that some low-cost Android phones can arrive already compromised at the firmware level, creating a hard-to-remediate endpoint and supply-chain risk for enterprises. For CIOs and technology leaders, the key implication is that device provenance, authorized sourcing, and mobile trust controls are now as important as post-deployment security, especially since the malware can evade normal app-based removal and enable fraud, persistence, and hidden payload delivery.
ASOS appears to have suffered a highly visible extortion incident in which customers received app push notifications allegedly sent by hackers, turning a potential data breach into a direct customer-facing trust event. For CIOs and technology leaders, the key implication is that compromise may extend beyond a cloud data platform like Snowflake into notification infrastructure and credentials, underscoring the need to harden identity controls, segment critical systems, and validate that customer communications cannot be spoofed or abused. This kind of event can quickly damage brand confidence, increase regulatory exposure, and force IT teams to coordinate incident response across application, cloud, security, and customer operations.
Apple’s fix for a cellular failure affecting a small number of iPhone 18 Pro Max devices on AT&T should limit business disruption for impacted users, but devices that already lost service may still require hardware replacement. For CIOs and IT leaders, the incident underscores the operational risk of carrier- and model-specific failures in mobile fleets and the need for strong device tracking, fast remediation workflows, and vendor escalation paths for critical users.
Apple is tightening Mac full disk access because AI agents can increasingly misuse broad permissions to expose sensitive data such as files, mail, messages, and browsing history. For CIOs, this is a signal to expect stricter platform-level controls around agentic AI and to revisit Mac endpoint governance, app approval, and least-privilege access policies, especially for backup, productivity, and AI-integrated tools.
AT&T is telling affected iPhone 18 Pro Max users that iOS 27.0.1 should resolve serious cellular problems, but early user reports suggest the update does not actually restore calls, texts, or data service. For CIOs and technology leaders, this highlights the operational risk of relying on carrier and OS updates to fix mission-critical mobility issues: unverified remediation can disrupt frontline workers, emergency communications, and user confidence, so IT teams need tighter validation and faster escalation paths when device/network faults emerge.
Magnet Forensics reportedly found a way to preserve an iPhone’s After First Unlock state even if the device reboots, reducing the effectiveness of Apple’s Inactivity Reboot protection and weakening one of the safeguards that helps keep seized or stolen devices from remaining accessible. For CIOs and IT leaders, this underscores that endpoint security controls on mobile devices are not absolute: forensic vendors may be able to bypass protections, which has implications for investigations, legal holds, chain-of-custody, and expectations around data-at-rest risk on corporate iPhones.
A fake iPhone Duo preorder site is being used to exploit older, unpatched iPhones and quietly exfiltrate high-value data including crypto wallet files, saved credentials, notes, and other personal information. For CIOs and technology leaders, the business risk extends beyond consumer fraud: compromised employee mobile devices can expose corporate identities, sensitive communications, and financial assets, reinforcing the need for aggressive mobile patching, link filtering, and endpoint visibility.
Google’s new Gboard scam detection adds another layer of defense against mobile smishing by warning users before they send replies to suspicious texts, which could reduce account compromise, fraud losses, and time spent responding to incidents. For CIOs and technology leaders, the strategic takeaway is that Google is pushing more security onto-device and closer to the user, but the feature is limited to eligible Pixel devices and is not fully reliable, so it should be treated as a supplemental control rather than a primary defense. IT organizations should view it as part of a broader mobile security and user-awareness strategy that still depends on policy, training, and verification workflows.
The article highlights that as employees increasingly use Google Wallet for payments, tickets, and passes, small configuration choices can materially reduce the risk of unauthorized transactions and overexposure of sensitive data. For CIOs and technology leaders, the strategic takeaway is that consumer-grade convenience features can create enterprise risk unless mobile-payment settings, account sharing, and credential lifecycle controls are standardized and periodically reviewed as part of endpoint and identity governance.
The article shows that security hardening on GrapheneOS can materially affect app performance, with a real-world mapping app running slow until a per-app protection setting was relaxed. For CIOs and technology leaders, the takeaway is that mobile security controls can create measurable user experience and battery-life tradeoffs, so IT teams need a policy framework for balancing protection levels against app criticality and usage patterns. It also underscores the value of testing apps on hardened platforms before broad rollout, especially for field-facing and location-based workflows.
Samsung’s update experience for a long-dormant Galaxy A33 highlights a broader endpoint-management problem: devices that sit unused can return as fragmented, time-consuming maintenance projects, creating avoidable support overhead and security risk. For CIOs and technology leaders, the strategic takeaway is that patching and device-resume workflows should be designed for resilience, with cumulative updates, simpler recovery paths, and clearer user guidance to reduce IT friction and keep fleets secure even after long periods offline.
Samsung’s side-mounted fingerprint sensor on its latest foldables offers a faster, more intuitive, and more reliable user experience than under-display alternatives, reinforcing the value of thoughtful hardware design over purely aesthetic choices. For CIOs and technology leaders, the article underscores that small interaction details can materially affect employee satisfaction, device adoption, and perceptions of product quality in enterprise mobility programs, even when security performance is comparable. It also highlights that mature hardware features can still outperform newer form factors when they reduce friction without compromising accuracy.
The article highlights how Android’s Private DNS setting can become a low-friction security and productivity control for mobile fleets by encrypting DNS lookups and optionally filtering ads, trackers, and malicious domains without adding another app. For CIOs and technology leaders, this underscores an easy, policy-light way to improve user experience and reduce exposure, while also reminding IT teams that Private DNS is not a VPN replacement and may need coordination with existing VPN/DNS configurations to avoid connectivity issues.
`@bsv/wallet-toolbox` provides BRC-100 wallet signing and storage components, while `@bsv/wallet-toolbox-client` and `@bsv/wallet-toolbox-mobile` provide client-focused distributions for standard and mobile applications using wallet storage services. A vulnerability in these packages causes transactions created through a remote `StorageClient` to trust output locking scripts returned by the storage provider without verifying that they match the outputs requested by the caller. A malicious or compromised storage provider can substitute a recipient script or inject an additional output, causing the wallet to sign and broadcast a transaction that redirects funds while the application and user interface continue to display the intended recipient. Source and npm publication history indicate that stable versions `@bsv/wallet-toolbox` and `@bsv/wallet-toolbox-client` from 1.1.47 through 2.3.3, and `@bsv/wallet-toolbox-mobile` from its initial 1.3.21 release through 2.3.3, are affected. All...
GrapheneOS coming to Motorola’s Signature 27 expands secure Android options beyond Pixel, signaling growing enterprise demand for stronger privacy controls and hardware-backed protection on mainstream devices. For IT organizations, this broadens potential device choices for regulated or high-risk users, but it also reinforces that chipset security features, OEM update commitments, and platform support are now strategic factors in mobile procurement and endpoint security planning.
HSBC’s decision to block its mobile banking app inside Samsung Secure Folder and Android Private Space shows how security controls can create major customer-access and support risks when they are deployed without warning or fallback paths. For CIOs and technology leaders, the key lesson is that app hardening must be balanced with continuity of access, regulatory expectations, and clear change management—especially when mobile authentication is also the gateway to desktop and web channels.
This campaign shows how threat actors can combine trusted ad platforms and official app stores to monetize mobile fraud at scale, turning a familiar user journey into premium-rate billing abuse. For CIOs and technology leaders, it underscores that enterprise risk now extends beyond malware on the device to abuse of digital trust channels, with implications for mobile governance, user protection, and third-party platform oversight. IT organizations should assume that app-store presence and platform moderation are not sufficient controls, and strengthen mobile application vetting, device management, threat monitoring, and user awareness accordingly.
Apple’s confirmation of an imminent software fix for the iPhone 18 Pro rebooting bug signals a short-term reliability issue that could disrupt employee productivity, increase help desk volume, and drive unnecessary device swaps if IT teams misclassify it as a hardware defect. For CIOs and technology leaders, this is another reminder that rapidly deployed mobile hardware can introduce operational risk, making coordinated patch management, user communication, and incident triage essential to keeping enterprise mobility stable.
Motorola’s Signature 27 debut signals continued convergence of premium mobile hardware and enterprise-ready longevity, with a 2nm Snapdragon 8 Elite Extreme chip, AI-focused thermal design, Android 17, and a rare seven-year OS/security support commitment. For CIOs and technology leaders, the bigger implication is not the consumer launch itself but the raised baseline for mobile performance, security patching, and device lifecycle planning across managed fleets and BYOD programs. The still-unclear pricing and availability suggest immediate procurement impact is limited, but it reinforces the need to reassess approved-device standards, refresh cycles, and support expectations as AI-capable smartphones become more strategic endpoints.
The article suggests a meaningful shift in the mobile device market: by 2027, some devices may ship with GrapheneOS preinstalled, signaling growing demand for privacy- and security-first endpoints. For CIOs and technology leaders, this could broaden options for hardened mobile fleets, but it also raises strategic questions around device standardization, app compatibility, endpoint management, and support models if organizations consider moving beyond mainstream Android/iOS platforms.
The article argues that resilient mobile data protection requires a layered backup strategy, combining cloud sync with local and offline copies rather than relying on a single provider or device. For CIOs and technology leaders, the key implication is that endpoint resilience, data continuity, and user productivity depend on a disciplined 3-2-1 backup model, regular verification, and cross-device transfer options that reduce the operational impact of lost or replaced phones. This reinforces the need for IT organizations to treat personal and mobile data as business-critical assets with clear backup standards, recovery expectations, and user education.
The Canva Mobile App for HarmonyOS before v1.15.1 did not restrict the headers returned to an external origin running in a privileged WebView. A threat actor with control of the WebView could access a user’s session.
Apple is actively developing an iPhone anti-theft feature, AutoLock, that would automatically lock devices when sensor and context signals suggest the phone has been snatched, with safeguards to reduce false positives. For CIOs and technology leaders, this points to a continued shift toward context-aware mobile security that could lower device-loss risk, strengthen endpoint protection, and influence enterprise mobility, MDM, and zero-trust policy design as Apple expands built-in security controls.
iOS 27 introduces Impersonation Risk Detection, a new anti-scam capability that lets supported apps query the iPhone for a risk score when users attempt sensitive actions like transfers or password changes. For CIOs and technology leaders, the strategic value is in reducing social-engineering fraud at the endpoint, but the control is app-driven, optional, and off by default, which means IT organizations will need to rely on vendor support, policy tuning, and user education rather than a universal platform-level block. The 24-hour disable delay adds a useful safeguard against coercion, but enterprises should treat this as one layer in a broader mobile risk and identity strategy, not a complete fraud-prevention solution.
A software glitch in iOS 27 on iPhone 18 Pro/Pro Max can cause devices to freeze and reboot after a failed Face ID attempt when unlocking protected apps, creating a reliability risk for employees who depend on mobile devices for secure access. For CIOs and technology leaders, this underscores the operational impact of mobile OS defects: higher help desk volume, potential productivity loss, and the risk of unnecessary hardware swaps if issues are misdiagnosed. IT organizations should treat this as a fleet-management and change-management issue, with careful monitoring of Apple patches and validation before broad deployment.
This article highlights a growing enterprise risk: malicious or adware-laced apps can slip through official app stores and even evade built-in protections like Google Play Protect and Samsung app scanning. For CIOs and technology leaders, the business impact is increased exposure to phishing, credential theft, and data leakage on employee devices, underscoring the need for stronger mobile app governance, user awareness, and layered endpoint controls rather than relying solely on store vetting.
Samsung’s “process data only on device” setting reduces cloud exposure for Samsung Galaxy AI features, but it does not stop Google services on Android devices from sending user data to Google’s servers. For CIOs and technology leaders, the key implication is that AI privacy controls are fragmented by vendor and app, so endpoint privacy promises may not align with actual data flows, creating governance, compliance, and employee-expectation risks. IT organizations should treat mobile AI privacy as a control-and-policy problem—not a single switch—and assess which AI features are allowed, what data they can access, and how they are communicated to users.
Google is addressing a long-standing Pixel security gap by adding a lock-screen setting that requires device unlock before changing critical Quick Settings such as Wi‑Fi, Bluetooth, mobile data, and airplane mode. For CIOs and technology leaders, this reduces the risk that a stolen device can be quickly taken offline and become harder to track, strengthening endpoint security and improving the effectiveness of mobile device recovery and fleet protection policies. While the fix is currently limited to Android Canary and off by default, it signals a broader move toward tightening mobile OS controls that IT teams should monitor for eventual rollout into managed Pixel environments.
Google has confirmed that a Pixel modem vulnerability (CVE-2026-58704) was actively exploited in limited, targeted zero-click attacks, underscoring how mobile devices can become a high-risk entry point for data theft even without user action. For CIOs and technology leaders, this is a reminder that endpoint security must extend beyond laptops to smartphones, with rapid patch adoption, mobile device management, and risk-based prioritization for executive and high-sensitivity users becoming critical controls. IT organizations should treat mobile OS and firmware updates as a business continuity and data protection issue, not just a user-device maintenance task.