Detects 146 security holes in pre-installed Android applications
Unless you use Google Pixel or a handful of Android-powered smartphones, you'll never get the most 'original' experience of this operating system because nearly all smartphone manufacturers choose to. Develop a customized Android version to create unique features for your product.
The development of customized Android platforms is nothing bad, even praiseworthy because it can be considered as a factor that helps create diversity - a characteristic factor when it comes to the Android ecosystem. However, the problem is that most custom versions not only contain bloatware (software that is pre-installed on the device by the manufacturer), but also full of security flaws.
Researchers from security firm Kryptowire recently discovered a total of 146 security holes in pre-installed applications on customized Android versions of 29 OEMs (also known as device manufacturers). ), ranging from simple vulnerabilities such as unauthorized application installation, to serious issues such as the ability to modify system settings, and even sneakily take screenshots, record calls to Send data to a third party.
Notably, this list also contains applications from some famous OEMs, with a large number of users such as Asus, Samsung and Xiaomi.
Since last year, Google has used a system called Build Test Suite (BTS) to scan harmful pre-installed applications on custom Android builds for devices that come with its services. But despite the emergence of such security checks, the malicious application continues to slip through the 'narrow gap' and is evidenced by research by Kryptowire experts.
One thing worth noting is that many of the applications that contain vulnerabilities are those of the OEMs themselves. When third-party applications downloaded by users are found to contain malware, there is at least one solution: uninstall. But with the application installed by the manufacturer is different, users will not be able to delete these applications and have to accept 'living with floods'.
In addition, there is no guarantee that OEMs will release a security patch for these applications, and things will be bad for users of older devices, which have stopped supporting.
For its part, Google has also made great efforts to eliminate harmful applications on its platform. The Mountain View giant has recently teamed up with three reputable security companies: ESET, Lookout and Zimperium to push further tighter measures against malicious third-party applications before they can. harm to users.
Perhaps it is time to apply the same rigorous control procedures to the applications developed by OEMs themselves.
You should read it
- Google 'purged' 24 applications downloaded nearly 500,000 times containing malicious malware
- Android apps contain malicious code that uses motion sensors to avoid detection
- 9 malicious applications on Google Play, if installed, should be removed immediately
- Malware and user security bugs are found in top free VPN applications
- How to detect malicious apps on Android
- If using an Android phone, be careful: You may be being tracked without knowing
- 23 malicious apps that steal Facebook and Instagram accounts and blackmail users, need to be removed immediately
- 136 Money-stealing malicious apps, you must delete them now!
May be interested
- If using an Android phone, be careful: You may be being tracked without knowingandroid - google's mobile operating system has behaviors that silently monitor users that make them unaware. more seriously, it can also access a user's personal data store through a large number of pre-installed applications that are virtually difficult to uninstall.
- 5 Security application you should consider removing and replacingyou have used these tools for years. but it turns out, they may not be as great as you think. perhaps these applications are no longer supported. and maybe there are better new applications instead. then one day, these apps and utilities won't keep data safe anymore. so it's time to remove and replace them. here are the five security applications you should remove and some alternatives.
- Discovering many applications containing malware on Google Play Store, Android users should worry graduallythe new google play store has discovered a lot of malware-infected applications never seen before. security companies have been reporting malware campaigns hidden in the android app on the google play store.
- Protect Android devices by sending unspecified applications to Googleplay protect feature can find and block harmful applications with your device. by default, this feature only blocks applications installed through the play store. but you can also change the settings to scan all unknown applications installed on your device.
- The security flaw threatens more than 2 billion Google Chrome usersjust released three weeks ago, chrome 81 version contained two dangerous security holes that allowed hackers to attack and control the entire computer system of the victim.
- New settings help hackers test security for Facebook and Instagram applications more easilyfacebook recently introduced a new feature on both web platforms and mobile applications, designed to help the 'money hunters' (pentester) easily find the possible security holes in the facebook's messenger and instagram application on the android platform.
- AMD patched a series of security holes in the graphics driver for Windows 10amd has just patched a series of security holes in their graphics driver for windows 10 devices. these vulnerabilities allow hackers to perform privilege escalation attacks or execute arbitrary code on the victim's machine. .
- Fortnite for Android has a security vulnerabilitysecurity experts at google have discovered a security hole in epic games' fortnite game installer. by taking advantage of an application using an external memory system to store data, hackers can invade the device to download and install malware.
- 5 types of mobile applications should not be installed on smartphoneswith millions of apps available on smartphones today, it's no surprise that not all apps are reliable. indeed, many mobile applications are designed to attack users' devices or steal personal information.
- Instructions to transfer applications from memory to SD memory card on Android deviceandroid applications are installed by default on internal storage, but you can also set the sd card as the default installation location or transfer installed android apps to sd memory cards. here are a few ways to transfer installed apps on your phone to an sd card.