I dont know about the phone spyware, but mobile phones now are just portable computers. So any application you install could make and answer calls and access all the data on the phone. This application could be installed as a nice widget or a hidden d/l from an internet surf.
Think of how your pc can get infected.
I cant think of any way to stop an application not calling the internet or making a call. Even if you set the user pref to no auto connection to the internet, whats stopping a bit of malware resetting the flag and makeing the connection. Telcos now just allow you to do it and change top dollar if not an an ISP plan.
So, I guess your down to user habbits. What sites do you visit. What software do you install. What screen savers, ringtones,games have you d/l or had someone send you.
I kinda put all these screen saver and phone ringtone sites in the same boat as porn sites. There are some clean ones that offer a valid service, but there are plenty that will be full of virus and spyware.... Do you trust the sites you connect to.
I have a pc that sits in a dmz that I use when looking for stuff on doggy sites. At least twice a year I send a file to the AV company and they reply with a yes we found a NEW virius and will now work on adding it to the av software.
At differnt times pc has had the following installed; avg, ca security and symentic endpoint as well as windows defender and spybot. None of them seem to stop it getting infected, while most will tell you that it has been infected and your left with the mess to clean up... (so a reimage of that pc).
I digress... A phone is just a computer with phone attached that can connect to the net. Treat it as such.
Bookmarks