Jump to Main ContentJump to Primary Navigation
Top

A major Android security flaw would let hackers in with a text

hack.jpg

Got an Android phone? Then read on - your beloved smartphone could be at risk from an alarmingly easy hack.

The flaw has been discovered in the way that Android's Hangout app instantly processes videos and images your mobile receives attached to text messages: to make it as easy for users to find media, it analyses attachments before you open the message, saving files such as videos to your gallery.

In theory, a hacker could attach a piece of malicious code to a video in a text attachment that would allow them to remotely access someone's phone as soon as they receive the text message. "This happens even before the sound that you've received a message has even occurred," said Joshua Drake, security researcher with Zimperium and co-author of Android Hacker's Handbook. "That's what makes it so dangerous. [It] could be absolutely silent. You may not even see anything."

Speaking to NPR, Drake detailed how malware attached to videos would be able to open up an Android phone to copy data, delete it, take over your microphone or monitor any passwords you were inputting - "It's really up to their imagination what they do once they get in."

Android

Android phones literally collapsing at news of the hack

While the vulnerability sounds like a serious one, Drake was eager to point out that there are no known hackers currently looking to exploit the hack. He discovered the hack while working on Android security in a lab setting with his employer Zimperium, notifying Google immediately as to the nature of the hack and possible patches to safeguard against it. Google pays developers for identifying exploits in its Android software, actively encouraging people like Drake to break their software and put it back together for financial rewards.

Google has since rolled out a patch for the exploit, notifying all mobile manufacturers and carriers who run the Android system of what they need to do to patch the problem. Drake believes that up to 50 percent of all Android devices could be patched when updates are rolled out, but many users might fail to update their systems, or some providers might not bother implementing the fix due to a lack of financial incentive.

So what should you do to protect your phone? Well, avoiding Hangouts is one step, but the exploit can apparently still be achieved with a normal text message. Best check whether your Android phone has any updates pending, download the latest software and don't go handing out your mobile number to anyone who looks like a hacker. 

You know the type - hoodie, shifty eyes, fingerless gloves. 

[Via: NPR]

Related

phone3.jpg

The best smartphone you've never heard of

2.jpg

The work from home excuse generator

vault.jpg

Fallout 4 is so big it's getting a 400-page survival guide

hawking2.jpg

You can ask Stephen Hawking anything on Reddit right now

Eye.JPG

The places you can and can't use selfie sticks in the UK

terminator2.jpg

Tech giants sign open letter against Terminator-style AI weapons

Comments

More

Fidget spinners might contain deadly levels of lead

Is your toy slowly poisoning you to death?

by Gary Ogden
02 Jun 2017

We might be about to get smartphones that charge fully in five minutes

An Israeli start-up claims it's going to go into production next year

by Tom Mendelsohn
15 May 2017

5 of the best fidget toys on the market right now

Tackle your knuckle cracking head on

by Matt Tate
10 May 2017

Some Italians have created a phone cover that also makes espresso

No, we don't know why either

by Tom Mendelsohn
08 May 2017

New app will rebalance the London rental market in favour of landlords

Finally, the capital's hard-up property owners will get their due with Rentberry

by Tom Mendelsohn
26 Apr 2017

This knife-toting robot playing stabby hand will make you nervous

I for one welcome our new robot overlords

by Tom Mendelsohn
25 Apr 2017

Now you can turn your iPhone into a retro mac

For the man who has everything

by Tom Mendelsohn
21 Apr 2017

The best turntables of 2017

How the tables have turned

by David Cornish
20 Apr 2017

The Tamagotchi is back

Great news for fans of neglecting responsibilities and watching tiny creatures literally shit themselves to death!

by Emily Reynolds
11 Apr 2017

Self-healing smartphone screens could exist by 2020

Could it be curtains for shady smartphone repair stalls across Britain?

by Tom Mendelsohn
05 Apr 2017