Live data from Hacker News

US Navy to pay $1M to make Android more secure

sbirsource.com

11–20 of 53 posts

Re: US Navy to pay $1M to make Android more secure

#11

Note: By "less hackable" they mean "more secure" and not "less open".

I think the military appreciates the security advantages of open source more than many other organizations. There's really no way to trust national security information to black-box proprietary systems. This concern has even extended to the actual chips running the software, since they're often made in China.

Re: US Navy to pay $1M to make Android more secure

#12
post #5

The DoD is committing to Android as a platform in a massive way. Apps 4 Army is a key example. The push is so large and widespread that I think it will force the whole US Gov't along with it. Everyone from political leaders, to soldiers, to doctors at VA hospitals, to employees at defense contractors, will be required to use Android because of government security certifications and custom apps. There's a good chance…

I've heard this before. Remember 15+ years ago when the US Army chose WebObjects because it was so obscure it had no security issues? How is their adoption of Apple server gear since then?

Re: US Navy to pay $1M to make Android more secure

#13
post #4

Summary - The US navy wants to use (near) commercial android devices. These might be used to display confidential reports (as in a normal buisness), but may also be used to control the ship. The navy already have secure versions of Linux and Windows, and want something similar for android. This will take the form of additional security layers, similar to the ones the NSA did for Linux[1]. Some of them will be made co…

Perhaps even the same. Android is pretty much Linux and converging fast. They can probably reuse a lot.

Re: US Navy to pay $1M to make Android more secure

#16
post #10
post #8

Earlier quoted context omitted.

Now there is some pie-in-the-sky hope. I don't think it is going to play out that way though.

It would be pretty irresponsible for them to standardize on a single source vendor for this, so what are the alternatives? WinMo? Plus the government already has a long history of investing R&D into securing linux-based systems.

The alternative is to support multiple platforms. Standardizing on a single platform is as foolhardy as standardizing on a single company. Even open platforms have defacto owners/controllers (Java anyone?).

Re: US Navy to pay $1M to make Android more secure

#17

Why doesn't Google apply? :) They get $1 million to improve Android security - and they can just do it and integrate it into the next release for everyone!

Google is far from a small business, these are funding opportunities for companies with less than 500 employees.

Re: US Navy to pay $1M to make Android more secure

#18

Note: By "less hackable" they mean "more secure" and not "less open".

I think the military appreciates the security advantages of open source more than many other organizations. There's really no way to trust national security information to black-box proprietary systems. This concern has even extended to the actual chips running the software, since they're often made in China.

I always assumed the military would insist on having full sourcecode for everything they used, to protect against an important supplier going out of business and the like.

I'd be surprised if they didn't have access to all of the code for pretty much every Windows product for example.

Re: US Navy to pay $1M to make Android more secure

#19
post #4

Summary - The US navy wants to use (near) commercial android devices. These might be used to display confidential reports (as in a normal buisness), but may also be used to control the ship. The navy already have secure versions of Linux and Windows, and want something similar for android. This will take the form of additional security layers, similar to the ones the NSA did for Linux[1]. Some of them will be made co…

Hmm, who actually is the one to usually do this sort of thing?

Clearly it is a good idea, but I don't think it really makes sense for the Navy to do it for themselves. Isn't this more the sort of thing the NSA should be doing on the behalf of everyone else in government?

Re: US Navy to pay $1M to make Android more secure

#20
post #12
post #5

The DoD is committing to Android as a platform in a massive way. Apps 4 Army is a key example. The push is so large and widespread that I think it will force the whole US Gov't along with it. Everyone from political leaders, to soldiers, to doctors at VA hospitals, to employees at defense contractors, will be required to use Android because of government security certifications and custom apps. There's a good chance…

I've heard this before. Remember 15+ years ago when the US Army chose WebObjects because it was so obscure it had no security issues? How is their adoption of Apple server gear since then?

[deleted]
Post reply on HN