Expert Reaction On Security flaws found in NHS contact-tracing app

Wide-ranging security flaws have been discovered in the coronavirus contact-tracing app being piloted in the Isle of Wight. The security researchers involved have warned the problems pose risks to users’ privacy and could be abused to prevent contagion alerts being sent. GCHQ’s National Cyber Security Centre (NCSC) has acknowledged the issues, promising to fix some and review others. But the researchers suggest a more fundamental rethink is required. Specifically, they call for new legal protections to prevent officials using the data for purposes other than identifying those at risk of being infected, or holding on to it indefinitely.


EXPERTS COMMENTS
Jake Moore, Cybersecurity Specialist,  ESET
May 20, 2020
The biggest issue is around the distinct lack of legislation protecting this data.
This app was never going to be perfect right from the outset, but it is refreshing to hear that the government are listening to independent research and taking on the suggestions with the next revisions. Like with many apps, the first version is rarely even of any use but it gets it onto peoples phones, where they can easily roll out newer versions. Once the majority of people have the app, then ....
[Read More >>]

If you are an expert on this topic:

Submit Your Expert Comments


In this article