Jump to Main ContentJump to Primary Navigation
Top

A major Android security flaw would let hackers in with a text

hack.jpg

Got an Android phone? Then read on - your beloved smartphone could be at risk from an alarmingly easy hack.

The flaw has been discovered in the way that Android's Hangout app instantly processes videos and images your mobile receives attached to text messages: to make it as easy for users to find media, it analyses attachments before you open the message, saving files such as videos to your gallery.

In theory, a hacker could attach a piece of malicious code to a video in a text attachment that would allow them to remotely access someone's phone as soon as they receive the text message. "This happens even before the sound that you've received a message has even occurred," said Joshua Drake, security researcher with Zimperium and co-author of Android Hacker's Handbook. "That's what makes it so dangerous. [It] could be absolutely silent. You may not even see anything."

Speaking to NPR, Drake detailed how malware attached to videos would be able to open up an Android phone to copy data, delete it, take over your microphone or monitor any passwords you were inputting - "It's really up to their imagination what they do once they get in."

Android

Android phones literally collapsing at news of the hack

While the vulnerability sounds like a serious one, Drake was eager to point out that there are no known hackers currently looking to exploit the hack. He discovered the hack while working on Android security in a lab setting with his employer Zimperium, notifying Google immediately as to the nature of the hack and possible patches to safeguard against it. Google pays developers for identifying exploits in its Android software, actively encouraging people like Drake to break their software and put it back together for financial rewards.

Google has since rolled out a patch for the exploit, notifying all mobile manufacturers and carriers who run the Android system of what they need to do to patch the problem. Drake believes that up to 50 percent of all Android devices could be patched when updates are rolled out, but many users might fail to update their systems, or some providers might not bother implementing the fix due to a lack of financial incentive.

So what should you do to protect your phone? Well, avoiding Hangouts is one step, but the exploit can apparently still be achieved with a normal text message. Best check whether your Android phone has any updates pending, download the latest software and don't go handing out your mobile number to anyone who looks like a hacker. 

You know the type - hoodie, shifty eyes, fingerless gloves. 

[Via: NPR]

Related

phone3.jpg

The best smartphone you've never heard of

2.jpg

The work from home excuse generator

vault.jpg

Fallout 4 is so big it's getting a 400-page survival guide

hawking2.jpg

You can ask Stephen Hawking anything on Reddit right now

Eye.JPG

The places you can and can't use selfie sticks in the UK

terminator2.jpg

Tech giants sign open letter against Terminator-style AI weapons

Comments

More

Amazon's new Alexa update means it can bring you beer in two hours

"Alexa, we're going to need more booze"

by Matt Tate
21 Mar 2017

This terrifying gadget allows you to make private calls in public

Be like Bane

by Gary Ogden
15 Mar 2017

You'll soon be able to pay for your shopping with your sunglasses

I'm still not happy until I can pay with my underwear

by Gary Ogden
15 Mar 2017

This iPhone case is actually just an entire new Android phone

A phone within a phone

by Gary Ogden
14 Mar 2017

There's a new app for opening bottles because everyone is lazy now

Put that wrist away!

by Gary Ogden
06 Mar 2017

These comments from 2001 about the world's first camera phone are gold

"Take pictures of friendly dogs I see when I walk around""I would use the camera phone to take pictures of my best friend, my dog Benson"

by Gary Ogden
01 Mar 2017

This projector turns anything into a touchscreen

We're living in the future

by Gary Ogden
28 Feb 2017

Everything we know about the new Nokia 3310

The brick is back

by Matt Tate
24 Feb 2017

20 Things You'll Only Understand If You Owned A Nokia 3310

14 Feb 2017

The Nokia 3310 is getting a relaunch (yes, really)

The return of the King

by Gary Ogden
14 Feb 2017