Free Republic
Browse · Search
General/Chat
Topics · Post Article

The patch for the StageFright exploit released last week doesn't work in all cases and hackers can go ahead and breech Android anyway! Plus a new flaw in Android allows apps to break through the sandboxing. . . and steal data and passwords from other apps. Information in the Ars Technica article. — Swordmaker
1 posted on 08/13/2015 9:27:48 PM PDT by Swordmaker
[ Post Reply | Private Reply | View Replies ]


To: dayglored; ShadowAce; ~Kim4VRWC's~; 1234; Abundy; Action-America; acoulterfan; AFreeBird; ...
Two more security hits on Android . . . the patch released by Google for StageFright last week, which they are still pushing out, doesn't fix the problem, and a new vulnerability that breaks the Android sandbox that allows apps to steal data and passwords revealed today. Info from Ars Technica. — PING!

Ping to dayglored and Shadow Ace for your lists. . .


Android Security
Ping!

If you want on or off the Mac Ping List, Freepmail me.

2 posted on 08/13/2015 9:32:15 PM PDT by Swordmaker ( This tag line is a Microsoft insult free zone... but if the insults to Mac users continue...)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

M4L Android


7 posted on 08/13/2015 9:56:35 PM PDT by Scrambler Bob (Using 4th keyboard due to wearing out the "/" and "s" on the previous 3)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: rdb3; Calvinist_Dark_Lord; JosephW; Only1choice____Freedom; amigatec; Ernest_at_the_Beach; ...

8 posted on 08/14/2015 3:44:01 AM PDT by ShadowAce (Linux - The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

http://www.theverge.com/2015/8/5/9099627/google-stagefright-android-vulnerability-protect-patch

Stagefright has had trouble getting around Android’s Address Space Layout Randomization protections (commonly known as ASLR). The bug can still be used to trigger unauthorized code — a troubling result under any circumstances — but ASLR system has made it difficult to reliably run any specific piece of code across a range of devices, a difficulty acknowledged by Drake himself.

from Twitter:
Hey guys! Instead of redoing/reproducing my work, why don’t you see if you can bypass ASLR via Stagefright!
— Joshua J. Drake (@jduck) August 3, 2015

Not as easy an exploit on the Android to execute, Ars Technica has lots of hype.

Huge PR hit for Android, and it is speeding up security updates to phones from months to weeks.


11 posted on 08/14/2015 6:35:30 AM PDT by dila813
[ Post Reply | Private Reply | To 1 | View Replies ]

To: Swordmaker

If you do start an Android Ping list, please add me to it.


12 posted on 08/14/2015 6:41:32 AM PDT by ibheath
[ Post Reply | Private Reply | To 1 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson