Tag Archive for: preinstalled

700 million Android phones have spying firmware preinstalled – BGR


BGR

700 million Android phones have spying firmware preinstalled
BGR
The term “mobile phone security” is something of a joke these days, with the number of exploits, bugs, and breaches that are endlessly assaulting us and putting our personal information at risk. So, when security outfit Kryptowire sounded the alarm on …
Trustlook Mobile Security looks into the ADUPS security breach issueAndroid Community
New report says Android phones by Lenovo and others may be …ITworld
Lenovo, ZTE, and others also spotted running Adups OTA spywareAndroid Authority (blog)

all 9 news articles »

“android security” – read more

Powerful backdoor/rootkit found preinstalled on 3 million Android phones

Enlarge

Almost three million Android phones, many of them used by people in the US, are vulnerable to code-execution attacks that remotely seize full control of the devices, researchers said Thursday.

Until recently, the flaw could have been exploited by anyone who took the time to obtain two Internet domains that remained unregistered despite being hardwired into the firmware that introduced the vulnerability. After discovering the vulnerability, researchers from security ratings firm BitSight Technologies registered the addresses and control them to this day. Even now, the failure of the buggy firmware to encrypt communications sent to a server located in China makes code-execution attacks possible when phones don’t use virtual private networking software when connecting to public hotspots and other unsecured networks.

Since BitSight and its subsidiary company Anubis Networks took possession of the two preconfigured domains, more than 2.8 million devices have attempted to connect in search of software that can be executed with unfettered “root” privileges, the researchers said. Had malicious parties obtained the addresses before BitSight did, the actors could have installed keyloggers, bugging software, and other malware that completely bypassed security protections built into the Android operating system. The almost three million devices remain vulnerable to so-called man-in-the-middle attacks because the firmware—which was developed by a Chinese company called Ragentek Group—doesn’t encrypt the communications sent and received to phones and doesn’t rely on code-signing to authenticate legitimate apps. Based on the IP addresses of the connecting devices, vulnerable phones hail from locations all over the world, with the US being the No. 1 affected country.

Read 10 remaining paragraphs | Comments

Technology Lab – Ars Technica

LG G5 to come with McAfee Mobile Security pre-installed in India tomorrow – Pc-Tablet Media


Pc-Tablet Media

LG G5 to come with McAfee Mobile Security pre-installed in India tomorrow
Pc-Tablet Media
Intel Security has announced that the LG smartphones will come pre-installed with McAfee Mobile Security. The new deal will secure its G4 devices against security threats along with providing theft protection. With McAfee Mobile Security pre-installed
McAfee Mobile Security Will Come Pre-Installed On LG G5TechVorm (blog)
Mobile Device & Network Security Marke is further expected to grow at CAGR of nearly 21% over the 2016 to 2020NewsMaker (press release)

all 3 news articles »

“mobile security” – read more