Story JGQT Major Android remote-access vulnerability is now being exploited Similar

Story

Major Android remote-access vulnerability is now being exploited

Similar News

Curated Application Security Reading List
Comments
Android kernel vulnerability and exploit with full source code
Comments
The Blerg is an Android Podcast you should listen to
I've recently pared down the number of podcasts to which I'm subscribed. (We'll discuss the reason for that at a later date.) But one that I'm absolutely glad I've kept — and it's a podcast that's still in its infancy — is The Blerg, from app developer Chris Lacy. You know him from Action Launcher, of course, as well as Link Bubble and Tap Path — which he recently sold — and from the fan-favorite Tweet Lanes Twitter app.
Keep it classy with Luxury WatchFaces Android Wear
Sometimes our technology works as a status symbol, and you want a watchface that reflects that. If that's the case, or if you're a fan of beautifully designed analog faces, then check out Luxury WatchFaces Android Wear. This app has several faces, all gorgeously designed to show off that piece of tech adorning your wrist.
ASUS ZenFone 2E review: A $120 Android phone
AT&T has a special version of the ASUS ZenFone 2 for their GoPhone prepaid network plans named the ZenFone 2E. It's a very scaled-back version of the ZenFone 2 you've seen people on the Internet gushing over, and at just $120 out the door, with no contracts and no strings attached, it's something we wanted to take a long look at. So what do you get when you buy a smartphone that costs about the same as a good dinner and a movie for two? That was our question as well. While it's not in the same class as the very expensive phones you'll see lining the shelves at the AT&T store, or even the great mid-range phones we've seen in 2015 and grown to love, it's not too terrible if you've tempered your expectations a bit.
Security News This Week: US Admits It Uses Predictions, Not Data, to Blacklist Flyers
DefCon may be in the books, but the hacks keep coming. Here’s the news this week that we didn’t cover. The post Security News This Week: US Admits It Uses Predictions, Not Data, to Blacklist Flyers appeared first on WIRED.
With Calendar for Android Wear, your schedule is never more than a tap away
Being in control of your schedule and keeping track of the many events that fill our lives can feel like a juggling act. Smartphones have made it easier, by giving us easy access to our calendars while we're on the go. Calendar for Android Wear takes the ease of seeing your upcoming appointments a step further, by letting you see your full schedule from your Smartwatch. A simple calendar that lets you view your appointments, and syncs to the calendar on your Smartphone. If you don't always have the time to check your phone, then this Calendar for Android Wear might be right up your alley. To open up Calendar for Android Wear, just say 'Ok Google, open calendar' or grab it manually. It should automatically sync with your current calendar app. There aren't any real options for customization, or settings, but that's because the app concentrates on doing everything right. It's a basic calendar view, with the month and year at the top of your screen. The current date is denoted by a red box around the date. You'll also notice that while some numbers are black, there are red ones as well. The red dates are the days on which you have appointments in your calendar. If you want to check on your calendar for months other than the current one, a quick swipe to the left or right will let you go forward or back in time.
Android Central 249: Samsungpalooza
We're back from the Samsung events in New York and London, so we'll wrap up everything Galaxy Note 5 and GS6 edge+. And Samsung Pay. And that weird keyboard thing. Plus we've got the OnePlus 2 in our hot little hands, we'll check in on the latest with the Stagefright saga, and we answer more of your questions live! Thanks to this week's sponsors:
Australia's national security should be above politics but not beyond scrutiny | Tanya Plibersek
We learnt about a national security matter from a newspaper rather than the prime minister when a Liberal backbencher floated the idea of bombing SyriaThe most important duty of a government is to keep its people safe.That’s why Labor has worked sensibly and co-operatively with the Government on national security, and will continue to do so. Continue reading...
Apple releases OS X version 10.10.5 with important security fixes
Apple has released OS X version 10.10.5, and with it comes a bevy of fixes. Although the company states that this update "improves the stability, compatibility, and security of your Mac," the star of the show here may be a fix for the DYLD_PRINT_TO_FILE privilege escalation vulnerability. That bug was discovered by Stefan Esser, and it's apparently under attack in the wild. Esser had previously published an OS X kernel extension called SUIDGuard that users could install to mitigate the problem.The story would end there, but there's one more thing. Esser has since tweeted that Apple "fixed some bugs and made another security problem worse" in 10.10.5. ...Read more...
VW has spent two years trying to hide a big security flaw, conference told
Thousands of cars from a host of manufacturers have spent years at risk of electronic car-hacking, according to expert research that Volkswagen has spent two years trying to suppress in the courts.
Show HN: CloudSploit – Continuous AWS Security Scanning
Comments
How good are cheap Android tablets?
I feel myself wanting to play with Android to see what it is all about. How usable are these ~150 Android tablets that seem to be all over the place? Are some better than others? Anything to look...
Video Friday: Erica the Android, Autonomous Drifting, and Birds Don't Like Drones
The week's best robot videos are here
Android Central's back to school guide
It's time to go back to school, and we'll make sure you're well-equipped. For many students, it's time to hit the books again. Whether you're loading up for your first day at high school, finding your stride in college, or you're making the long haul in university graduate programs, we've got the best tech for back to school season right here.
All Android OSs infringe Java API packages, Oracle says
The ongoing legal saga known as the Oracle-Google copyright battle took a huge leap Wednesday when Oracle claimed the last six Android operating systems are "infringing Oracle's copyrights in the Java platform."That's according to the latest paperwork Oracle filed in the five-year-old closely watched case that so far has resulted in the determination that Application Programming Interfaces (APIs) are, indeed, copyrightable.Oracle is the cesspit of the industry. What a horrible, horrible company.
Friday's security advisories
Arch Linux has updated freeradius(certificate verification botch) and subversion (two vulnerabilities).CentOS has updated kernel (C6:two remote denial of service flaws).Fedora has updated gnutls (F22:denial of service), nbd (F22; F21: denial of service), pcre (F22: code execution), andwordpress (F22; F21: multiple vulnerabilities).Mageia has updated gdk-pixbuf2.0(M5: code execution) and owncloud (three vulnerabilities).openSUSE has updated glibc (13.1:denial of service from 2014) and kernel(13.2: multiple vulnerabilities, some from 2014).Oracle has updated kernel (OL6:two remote denial of service flaws).Red Hat has updated kernel(RHEL6: two remote denial of service flaws).Scientific Linux has updated kernel (SL6: two remote denial of service flaws).SUSE has updated firefox(SLE11SP4, SP3: information leak).
Google ramps up the Android M mystery hype
We may soon find out what the M in Android M stands for, as a new video which showcases all of the previous releases, and then teases about the new one has surfaced. Each year, there are tons and tons of guesses about what Google decided to call the upcoming Android release, and this year is no different.
VW Has Spent Two Years Trying to Hide a Big Security Flaw
Comments
20 best new Android apps and games this week
Ninja Jamm, Microsoft Translator, Dreamify, MSTY, Fallout Shelter, Down The Mountain, March of Empires and moreWelcome to this week’s roundup of the latest, greatest Android apps and games, covering smartphones and tablets.All these apps have been released for the first time – ie not updates – since the last roundup. All prices are correct at the time of writing, with “IAP” indicating use of in-app purchases. Continue reading...
Google eröffnet Android Experiments für kreative Open-Source-Apps
Nachdem das Unternehmen 2009 bereits mit Chrome Experiments versuchte zu zeigen, was im Web möglich ist, soll Android Experiments nun ähnliches für die Mobilplattform erreichen.
Lenovo does it again as LSE component removed after security fears
Chinese company releases firmware update after fears new problem software could, as with Superfish, be used to let hackers access vulnerable computersSix months after apologising to users for pre-installing security-busting malware Superfish on its consumer laptops, Chinese PC manufacturer Lenovo has again had to remove another pre-installed component from its laptops over security fears.But this time, the problem software, called the “Lenovo Service Engine (LSE)”, is built into the firmware of the laptops themselves, in a low-level operating system called the BIOS, invisible even to Windows. (The BIOS is what is running the screens of white-on-black text seen on many computers as they start up). It launches when the computer is turned on, before Windows loads, and then replaces Microsoft’s start-up diagnostics program (which ensures that the system was shut down properly, that the disk isn’t corrupted, and that it’s safe to launch Windows) with its own. Continue reading...
Stagefright-Lücken in Android: Googles Patch ist fehlerhaft
Die Geräte seiner Nexus-Serie hat Google schon gegen die Stagefright-Bugs abgesichert. Doch ein Patch wurde nicht sauber programmiert und Angreifer könnten das als Einfallstor für DoS-Angriffe ausnutzen.
LXer: All Android operating systems infringe Java API packages, Oracle says
Published at LXer: The ongoing legal saga known as the Oracle-Google copyright battle took a huge leap Wednesday when Oracle claimed the last six Android operating systems are "infringing Oracle's...
Greens call for Wilson Security ban at Nauru amid claims of spying on senator
Richard Di Natale urges Australian federal police to investigate allegations Sarah Hanson-Young was followed by Wilson guards while visiting the island in 2013The Greens are demanding Wilson Security be barred from rebidding for work at the Nauru immigration detention centre after claims one of its senators was subject to systematic spying.An unnamed whistleblower alleges Sarah Hanson-Young had her every move tracked by a team of eight Wilson guards while visiting the island in 2013, a claim at odds with evidence the company has given to a Senate inquiry. Continue reading...
Preacher Junaid Thorne jailed under highest security classification
Thorne, who was last week sentenced to eight months’ prison for flying under a false name, is in segregation at Goulburn’s supermax prisonA controversial preacher jailed for flying under a false name is being held at Goulburn’s supermax prison in segregation under the highest security classification in New South Wales.Junaid Thorne, 26, was last week sentenced to eight months’ prison, with a minimum four months behind bars, for using false ID to obtain an airline ticket and flying under a false name. Continue reading...
Verizon pushing Android 5.1.1 and Stagefright fixes to Galaxy S6, S6 edge, Tab 4 10.1
Verizon has started pushing out an update to the Samsung Galaxy S6, Galaxy S6 edge, and Galaxy Tab 4 10.1, bringing Android 5.1.1 along with fixes for the Stagefright exploit. Alongside patching up the Stagefright exploit, the update to Android 5.1.1 brings along a switch for the parallax wallpaper effect, a new camera quick exposure setting, caller ID for Advanced Calling, and added Chinese language support. Verizon first started pushing out fixes for the Stagefright exploit last week with the Note Edge, Note 4, and S5. These updates may take a bit to show up on your specific phone, but they shouldn't be too far off now that changelogs have been posted.
No-Fee, Stock-Trading App Robinhood Is Now On Android
Zero-fee, stock-trading app Robinhood is now on Android. The app launched on iOS late last year and has grown to “hundreds of thousands of customers” and made over $1 billion in trades on the platform, according to the startup. Read More
Manage your very own Fallout Shelter on Android devices
Greeting, overseers in the lands of Android. You can now have your own Vault, thanks to Bethesda: the company has released Fallout Shelter for Android today. ...Read more...
LXer: Oracle security chief to customers: Stop checking our code for vulnerabilities
Published at LXer: Oracle's chief security officer is tired of customers performing their own security tests on Oracle software, and she's not going to take it anymore. Read More......
Android security on the ropes with one-two punch from researchers
Faulty Stagefright patch and newly reported sandbox bypass leave users exposed.
Google flubs patch for Stagefright security bug in 950 million Androids
Update flawed, new one needed for countless gadgets Google's security update to fix the Stagefright vulnerability in millions of Android smartphones is buggy – and a new patch is needed.…
Take the State of the Mobile Nations phones survey for a chance at $600 for a new Android phone!
Silly season for new phones is upon us, so it's time to find out what you think of it all. Samsung just announced the Galaxy Note and Galaxy S6 edge+, BlackBerry recently outed the Passport Silver Edition, Apple's expected to unveil the iPhone 6s in just a few weeks, and Microsoft just rolled out Windows 10 and is preparing to launch new Windows 10 Mobile flagship phones. The carriers are changing things up too — so we want to know where you stand on all these things. We want to know what's important to you in a phone and what you look for in a carrier. So we put together a quick survey to get to the bottom of all these questions, and one lucky participant will win $600 to put towards a brand new phone! That's right, it's time for the State of the Mobile Nations Phones Survey! State of the Mobile Nations Phones Survey! We've got questions about phones and carriers that only you can answer.
All Android operating systems infringe Java API packages, Oracle says
Judge asked to block "continued acts of infringement of the Java platform."
Xiaomi brings Android 5.1 Lollipop to its handsets with MIUI 7
At an event in Beijing, Xiaomi unveiled MIUI 7, the manufacturer's latest OS. Based on Android 5.1 Lollipop, MIUI 7 brings a host of UI changes, themes, features and a whole new way to receive calls.Laugh about Xiaomi all you want, but they will bring their Android 5.1 (MIUI 7) to virtually all of its phones - only a phone form 2011 is not getting it.This is how you do it.
Android libstagefright still exploitable
Comments
Nvidia broadens the Shield's Android game library
Seems like just yesterday, we were talking about the Shield's library of native games being on the small side. Nvidia must have heard our pleas, because the company has announced two new games for the Shield, as well as Android TV and Shield-specific updates for several more. These games all look to be a cut above most other games on the Android TV platform, something Nvidia's little console desperately needs. ...Read more...
Samsung launches Samsung Pay, which might beat Android Pay to market
Coming to new S6 Edge+, Galaxy Note 5, along with Galaxy S6 and S6 Edge.
Gratis-Download: Fallout Shelter ab sofort auch für Android
Mit zwei Monaten Verspätung erscheint Fallout Shelter nun auch für Android-Geräte. Gleichzeitig wurde die iOS-Fassung auf Version 1.1 aktualisiert.
Nvidia AndroidWorks and fast Android development
Comments
Security updates for Thursday
Debian has updated request-tracker4 (cross-site scripting).Red Hat has updated flash-plugin(RHEL5&6: many vulnerabilities).SUSE has updated firefox (SLE12:information leak), java-1_7_0-ibm(SLE11SP3, SP2: many vulnerabilities), and kernel-rt (SLE11SP3: many vulnerabilities,including some from 2014).
Android: Und noch eine schwere Sicherheitslücke
Forscher von IBM haben in Googles mobilem Betriebssystem eine Lücke entdeckt, die über die Hälfte aller Android-Geräte betrifft. Sie erlaubt das Übernehmen privilegierter Prozesse durch einen Angreifer. Google hat die Lücke bereits geschlossen.
Google creates Android Security Updates Google Group for more transparency
One of the big takeaways from the recent Black Hat security conference was Google announcing plans to issue monthly security updates, and that it would strive to keep us all better informed. Lead engineer for Android security at Google Adrian Ludwig has announced a big step in the right direction with the creation of the Android Security Updates Google Group. The focus of the group is to provide more information about security issues and bulletins, and the first post details exactly what's in the current update for Nexus devices.
Oracle Adds New Android Versions to Copyright Battle with Google
Comments
Xiaomi brings Android 5.1 Lollipop to its handsets with MIUI 7
At an event in Beijing, Xiaomi unveiled MIUI 7, the manufacturer's latest OS. Based on Android 5.1 Lollipop, MIUI 7 brings a host of UI changes, themes, features and a whole new way to receive calls.
Android Auto: Alternative ROMs auf AVIC-Geräten von Pioneer lauffähig
Android-Entwicklern ist es gelungen, die Software von Pioneers AVIC-Geräten so zu manipulieren, dass sie auch andere ROMs mit Android Auto booten.
LXer: Docker 1.8 Improves Container Security With Content Trust
Published at LXer: The open-source container technology now benefits from technology that can digitally sign and verify application containers. Read More......
SourceDNA (YC S15) finds hidden security and quality flaws in apps
Comments
Android Central Photo Contest: Clouds
Connecting nicely to our last photo contest, the latest photo contest is looking for your best "clouds" photos. Whether you have a view from above in an airplane or high building, are looking straight up at something overhead or maybe are in a deep fog, we're sure you'll be able to get in some great cloud pictures.
Study shows gaps in food security and access in Brant widening
A new study on food security and access shows many Brantford and Brant households struggle with not having enough to eat and challenges accessing food. In 2012 and 2014, respectively, 1,247 and 792 Brant residents aged 18 and over participated in th
12345678910