Why BlackBerry’s Android is Best for Security and Privacy

Android

Android shield

One of the complaints about Android has been fragmentation, which applies to security as well as user experience. Today, there are lots of small companies offering “hardened” Android implementations that purport to offer enhanced security and privacy. Unfortunately for buyers, there does not exist today an independent means to evaluate vendor security claims in any scientific way. It comes down to: whom do you trust?

At BlackBerry, we avoid denigrating other people’s products or making misleading comparisons. We would rather explain the technical details of our solution and allow buyers to judge based on those details as well as past performance of delivering on our claims.

In our PRIV security and privacy blog series, we have outlined the major prongs of BlackBerry’s Android security strategy, of which OS hardening is just one piece. BlackBerry’s security incident response strategy (including rapid patching) is one example of how buyers must consider not only the device but also the company behind the device and that company’s past success and commitment to putting your security and privacy first.

Indeed, with daily breaches of personal information and a widespread media focus on the debate between encryption and lawful access, it has become fashionable for consumer tech companies to claim unwavering support for your privacy.   Your trust is not something that can be cajoled with an essay or bought with advertising dollars; it must be earned over time, by a steadfast dedication to and successful track record in protecting your information while it is under the supervision of our devices, applications, and cloud.

BlackBerry has delivered for over a decade while others promise. Fifteen years of mobile devices protecting the privacy of your messages, contacts, phone calls, e-mail; trillions of instant messages securely and privately delivered; protecting your valuable information across all walks of life, nations, and industries – privacy is deeply interwoven into BlackBerry’s DNA and is top of mind for all of us who work every day to bring you a productive, fun, and secure mobility experience.

Now let us talk about a few more of those technical details, including a discussion around Android versions.

PRIV initially shipped with Android Lollipop (L) 5.1.1. Google has released Android 6 Marshmallow (M) to device makers, and BlackBerry is in the process of integrating the new release. Marshmallow adds a number of security enhancements. However, when it comes to “hardening” Android, BlackBerry’s special sauce includes numerous additional improvements independent of the Android version number, such as:

  • Supply chain security for hardware root of trust. That means we “sign” all of our hardware with digital keys at the manufacturing level to ensure device integrity.
  • Improvements to the Address Space Layout Randomization (ASLR) security technique that are not in Android L or M and make it far more difficult for malware – even something like Stagefright – to exploit Android software bugs.
  • Improvements to the SELinux mandatory access control policy system not in L or M.
  • The Pathtrust utility, which goes above L or M in ensuring that untrusted code cannot be introduced into the system dynamically via malware.
  • Hundreds of hardening improvements to the Linux kernel and Android service framework to enable features like DTEK, our new app that helps you protect your own security and privacy.
  • Tamper-proofing of critical security parameters.
  • Cryptographic improvements, including the use of BlackBerry Certicom certified-FIPS 140-2 security compliant cryptographic library and other techniques that improve upon the Android password’s protection against brute-force attacks.
  • Smart card development framework and other enterprise-specific features that benefit business users.

Of course, there is a lot more to be said about business users. BlackBerry is the only company to provide not only a top-of-the-line secure Android device but also a top-of-the-line Enterprise Mobility Management suite. Enterprises around the world use BES12 to manage all endpoints, not only BlackBerry devices, but also phones and tablets running iOS, other Android implementations such as Android for Work and Samsung KNOX, and Windows Phone.

BlackBerry’s goal is to provide solutions that make users – both device users and IT professionals – more productive, efficient, and secure, and this means a cross-platform suite of management, communication, and collaboration software that is mobile OS and device agnostic.

Whether it’s Android Lollipop or Marshmallow (or future flavors), PRIV represents the state-of-the-art for Android security and privacy, incorporating BlackBerry’s technology, experience, and proven commitment to security and user privacy that is simply unmatched in the mobile world.

About David Kleidermacher

I am dedicated to the vision of a trustworthy, scalable Internet of Things, including mobile devices, connected embedded systems, and cloud infrastructure. As Chief Security Officer at BlackBerry I am responsible for product security and security research. I am a leading authority in systems software and security, including secure operating systems, virtualization technology, and the application of high robustness security engineering principles to solve computing infrastructure problems. I earned my bachelor of science in computer science from Cornell University and am a frequent speaker and writer in the area of computer security, including delivering the 2014 Embedded World Conference Keynote, "Securing the Internet of Things" and author of the book "Embedded Systems Security", Elsevier 2012.

Join the conversation

Show comments Hide comments
+ -
  • http://topbrandnews.com/why-blackberrys-android-is-best-for-security-and-privacy/ Why BlackBerry’s Android is Best for Security and Privacy - Top Brand News

    […] Source […]

  • http://blackberryempire.com/blackberry-reveals-more-details-about-their-security-hardening-for-android/ BlackBerry reveals more details about their security hardening for Android - BlackBerry Empire

    […] Source: Inside BlackBerry Blog […]

  • http://securityblogs.co.uk/posts/2015/11/heres-everything-the-blackberry-priv-does-to-protect-your-security/ Here's everything the BlackBerry Priv does to protect your security … |

    […] Source: Inside BlackBerry[4] […]

  • http://www.samsungfans.it/?p=6034 BlackBerry spiega come è riuscita a perfezionare la sicurezza su Android | Samsung Fans Italia

    […] il blog ufficiale, BlackBerry spiega come i consumatori non debbano solamente tenere conto del prodotto in sé, […]

  • http://oldweb.altervista.org/blackberry-spiega-come-e-riuscita-a-perfezionare-la-sicurezza-su-android/ BlackBerry spiega come è riuscita a perfezionare la sicurezza su Android | Old Web

    […] il blog ufficiale, BlackBerry spiega come i consumatori non debbano solamente tenere conto del prodotto in sé, ma […]

  • http://www.techninja.it/2015/11/25/sicurezza-android-blackberry-spiega-i-miglioramenti-apportati/ Sicurezza Android, Blackberry spiega i miglioramenti apportati - Techninja

    […] VIA […]

  • http://crazyworlds.org/blackberry-spiega-come-e-riuscita-a-perfezionare-la-sicurezza-su-android/ BlackBerry spiega come è riuscita a perfezionare la sicurezza su Android | Crazyworlds

    […] il blog ufficiale, BlackBerry spiega come i consumatori non debbano solamente tenere conto del prodotto in sé, ma […]

  • http://www.pirategeek.it/2015/11/blackberry-spiega-come-e-riuscita-a-perfezionare-la-sicurezza-su-android/ BlackBerry spiega come è riuscita a perfezionare la sicurezza su Android - PirateGeek.itPirateGeek.it

    […] il blog ufficiale, BlackBerry spiega come i consumatori non debbano solamente tenere conto del prodotto in sé, […]

  • http://www.androidiani.com/dispositivi-android/cellulari/blackberry-e-sicurezza-assoluta-in-android-operazione-compiuta-267211 BlackBerry e sicurezza assoluta in Android: operazione compiuta! - Androidiani.com

    […] l’azienda ha voluto proferire parola attraverso il proprio blog ufficiale, raggiungibile a questo indirizzo. BlackBerry ha infatti voluto sottolineare come la privacy di messaggi, contatti, chiamate e mail […]

  • http://dtdd.net/tin-tuc/blackberry-ly-giai-tai-sao-android-duoc-hang-tuy-bien-lai-an-toan-nhat.html BlackBerry lý giải tại sao Android được hãng tuỳ biến lại an toàn nhất

    […] người đứng đầu mảng bảo mật của BlackBerry đăng tải bài viết tại Inside BlackBerry Blog tiếp tục khẳng định và lý giải tại sao Android của BlackBerry là giải pháp […]

  • http://learnbonds.com/125250/blackberry-ltd-attacks-blackphone-with-fighting-words/ BlackBerry Ltd Attacks Blackphone With Fighting Words

    […] an Inside BlackBerry blog post on Tuesday Mr. Kleidermacher said “At BlackBerry, we avoid denigrating other people’s […]

  • http://thechakrasblog.com/blackberry-hits-back-at-blackphone-makers-security-jibe.html BlackBerry hits back at Blackphone maker’s security jibe | The Chakras Mobile Phone News

    […] an official blog post on BlackBerry’s website, a arch confidence officer David Kleidermacher has responded to Silent […]

  • http://www.opptrends.com/2015/11/blackberry-ltd-bbrys-android-providing-best-security-privacy/ Blackberry Ltd (BBRY)’s Android is Providing the Best Security and Privacy

    […] wrote in a blog post, they avoid to criticize other’s products and make misleading comparisons. In addition to it, […]

  • https://dvhadvogados.wordpress.com/2015/11/26/why-blackberrys-android-is-best-for-security-and-privacy/ Why BlackBerry’s Android is Best for Security and Privacy | DVH Advogados
  • http://devblog.blackberry.com/2015/11/why-blackberrys-android-is-best-for-security-and-privacy/ Why BlackBerry’s Android is Best for Security and Privacy | BlackBerry Developer Blog

    […] (Originally posted on the Inside BlackBerry Blog) […]

  • http://www.bbnews.pl/2015/11/dlaczego-android-od-blackberry-jest-lepszy-od-innych/ Dlaczego Android od BlackBerry jest lepszy od innych? | BBNews

    […] stara się odmienić postrzeganie Androida jako „dziurawego” systemu i przygotowało obszerny tekst o tym co wpływa na ulepszenie tego otwartego systemu […]

  • http://ragilcell.com/blackberry-ltd-hits-blackphone-with-fighting-words.html BlackBerry Ltd Hits Blackphone With Fighting Words | Ultimate Ragil Celullar

    […] an Inside BlackBerry blog post on Tuesday Mr. Kleidermacher pronounced “At BlackBerry, we equivocate denigrating other […]

  • http://blogs.blackberry.com/2015/12/the-privs-first-software-update-is-live-heres-how-to-download-it/ The PRIV’s First Software Update Is Live – Here’s How to Download It | Inside BlackBerry

    […] area of focus in that regard was the release of monthly security updates for the OS, in order to keep your PRIV secure and your data private. That’s why starting today (Dec. 1), our first maintenance release is […]

  • http://helpblog.blackberry.com/2015/12/the-privs-first-software-update-is-live-heres-how-to-download-it/ The PRIV’s First Software Update Is Live – Here’s How to Download It | Inside BlackBerry Help Blog

    […] key area of focus in that regard was the release of monthly security updatesfor the OS, in order to keep your PRIV secure and your data private. That’s why starting today (Dec. 1), our first maintenance release is […]

  • http://blogs.blackberry.com/2015/12/your-questions-answered-this-thursday-blackberry-is-hosting-a-priv-ama-on-reddit/ Your Questions Answered: This Thursday, BlackBerry is Hosting a PRIV AMA on reddit | Inside BlackBerry

    […] to get the most out of PRIV’s many cutting-edge features, interested in understanding more about BlackBerry’s security, or learning about updates to the PRIV’s Android OS, they’ll answer your questions as best as […]

  • http://devblog.blackberry.com/2015/12/your-questions-answered-this-thursday-blackberry-is-hosting-a-priv-ama-on-reddit/ Your Questions Answered: This Thursday, BlackBerry is Hosting a PRIV AMA on reddit | BlackBerry Developer Blog

    […] to get the most out of PRIV’s many cutting-edge features, interested in understanding more about BlackBerry’s security, or learning about updates to the PRIV’s Android OS, they’ll answer your questions as best as […]

  • http://www.sdknews.com/blackberry/your-questions-answered-this-thursday-blackberry-is-hosting-a-priv-ama-on-reddit Your Questions Answered: This Thursday, BlackBerry is Hosting a PRIV AMA on reddit | SDK News

    […] to get the most out of PRIV’s many cutting-edge features, interested in understanding more about BlackBerry’s security, or learning about updates to the PRIV’s Android OS, they’ll answer your questions as best as […]

  • http://blogs.blackberry.com/2015/12/picture-perfect-privacy-for-priv/ Picture Perfect Privacy | Inside BlackBerry

    […] PRIV brings to Android one of the world’s best private authentication methods, combining security strength with ease of use. By offering a simple and effective authentication method, users are not tempted […]

  • http://blogs.blackberry.com/2015/12/the-inside-scoop-on-priv-privacy-and-security/ The Inside Scoop on PRIV Privacy and Security | Inside BlackBerry

    […] talked about how we secure Android, our patching strategy, and why our version of Android is best for security and privacy. We’ve highlighted some of the unique features such as DTEK, Picture Password and Password […]

  • http://blogs.blackberry.com/2015/12/making-cents-of-security-blackberry-priv-offers-the-most-private-mobile-banking-experience/ Making Cents of Security: BlackBerry PRIV Offers the Most Private Mobile Banking Experience | Inside BlackBerry

    […] of Trust, which injects cryptographic keys directly into the hardware, BlackBerry’s PRIV is also FIPS compliant and will get monthly Android security updates, such as the one that patched 16 vulnerabilities this […]

blog comments powered by Disqus