Android Security Flaw Leaves 950 Million Phones Vulnerable

Android Security Flaw Leaves 950 Million Phones Vulnerable

A researcher has discovered a security flaw in Android phones that can be utilized through a simple MMS message.

Joshua Drake, VP of platform research and exploitation for Zimperium, discovered the vulnerabilities in the OS known as ‘Stagefright,’ which is used to play, create and edit multimedia files according to a report.

The vulnerabilities could be exploited by receiving a message or watching a video file in web browser that has been carefully constructed.

Hackers could easily intercept someone’s phone without their authorization by sending a message, taking control of the device, and then deleting the message; thus eliminating any evidence of the hack.

Different Android devices have different access capabilities for Stagefright, so not all devices will be affected the same way. Drake also offered patches and says he gave them to Google in April, although the update has yet to reach users.

About the Author

Matt Holden is an Associate Content Editor for 1105 Media, Inc. He received his MFA and BA in journalism from Ball State University in Muncie, Indiana. He currently writes and edits for Occupational Health & Safety magazine, and Security Today.

Featured

New Products

  • Unified VMS

    AxxonSoft introduces version 2.0 of the Axxon One VMS. The new release features integrations with various physical security systems, making Axxon One a unified VMS. Other enhancements include new AI video analytics and intelligent search functions, hardened cybersecurity, usability and performance improvements, and expanded cloud capabilities

  • 4K Video Decoder

    3xLOGIC’s VH-DECODER-4K is perfect for use in organizations of all sizes in diverse vertical sectors such as retail, leisure and hospitality, education and commercial premises.

  • Automatic Systems V07

    Automatic Systems V07

    Automatic Systems, an industry-leading manufacturer of pedestrian and vehicle secure entrance control access systems, is pleased to announce the release of its groundbreaking V07 software. The V07 software update is designed specifically to address cybersecurity concerns and will ensure the integrity and confidentiality of Automatic Systems applications. With the new V07 software, updates will be delivered by means of an encrypted file.