Tag Archive for: patched

Have you patched your IoT devices against the KrØØk Wi-Fi chip flaw?

Unpatched IoT gadgets, smartphones, tablets, laptops, Wi-Fi access points and routers with Broadcom chips are all at risk from the KrØØk vulnerability.

Read more in my article on the Bitdefender BOX blog.

Graham Cluley

Twitter to Android users: We’ve just patched this nasty bug so update your app ASAP – ZDNet

Twitter to Android users: We’ve just patched this nasty bug so update your app ASAP  ZDNet
“android security news” – read more

Vulnerability in fully patched Android phones under active attack by bank thieves

Vulnerability in fully patched Android phones under active attack by bank thieves

Enlarge (credit: portal gda / flickr)

A vulnerability in millions of fully patched Android phones is being actively exploited by malware that’s designed to drain the bank accounts of infected users, researchers said on Monday.

The vulnerability allows malicious apps to masquerade as legitimate apps that targets have already installed and come to trust, researchers from security firm Promon reported in a post. Running under the guise of trusted apps already installed, the malicious apps can then request permissions to carry out sensitive tasks, such as recording audio or video, taking photos, reading text messages or phishing login credentials. Targets who click yes to the request are then compromised.

Researchers with Lookout, a mobile security provider and a Promon partner, reported last week that they found 36 apps exploiting the spoofing vulnerability. The malicious apps included variants of the BankBot banking trojan. BankBot has been active since 2017, and apps from the malware family have been caught repeatedly infiltrating the Google Play Market.

Read 11 remaining paragraphs | Comments

Biz & IT – Ars Technica

Android devices hit by zero-day exploit Google thought it had patched – Naked Security

  1. Android devices hit by zero-day exploit Google thought it had patched  Naked Security
  2. Experts On Attackers Exploit Zero-Day Vulnerability That Gives Full Control Of Android Phones  ISBuzz News
  3. Actively exploited zero-day vulnerability found in Google Pixel, Huawei, Xiaomi, Samsung, and other devices  XDA Developers
  4. Android Zero-Day Bug Gives Hackers Remote Access To Samsung, Xiaomi & Google Pixel Phones  India Times
  5. Zero-day Android vulnerability can give hackers full control of devices  Siliconrepublic.com
  6. View full coverage on read more

“zero day exploit” – read more