Knowingly placing a device under control of a remote system ? As a Blackberry user, and an email admin I'm not so sure the employee would be aware of this potential unless informed and having signed something to state the access and modification as authorised by them. The UK Computer Misuse Act is a criminal matter and requires the party accessing a system and data and modifying it to be authorised to do this by the owner of the system. This seems potentially risky for the company and its email admin employees if they get this wrong.