What's new
DroidForums.net | Android Forum & News

This is a sample guest message. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your own topics and posts, as well as connect with other members through your own private inbox!

MicroSD Access Vulnerability in Android 2.3/Gingerbread

dgstorm

Editor in Chief
Staff member
Premium Member
sick_andy.jpg


A security vulnerability that allows a hacker to access personal information when the user simply clicks on a web-link with their Android phone has been found by Xuxian Jiang, a computer security researcher at NC State University. The exploit allows a malicious Web-site to read and upload the entire contents of the phone’s microSD card, including saved voicemails, photos or online banking data. This vulnerability is similar to one found on all previous versions of the Anroid OS, and Google thought they had it fixed with Gingerbread. Unfortunately, Mr. Jiang found a way to bypass their new security measures. According to Sources, the best option to protect yourself from this vulnerability is to switch to a third-party browser, such as Firefox, until Google develops a fix.

Yikes! It's a good thing it was found by a researcher before some unscrupulous Malware hacker figured it out.

Source: Engadget
 
... Yikes! It's a good thing it was found by a researcher before some unscrupulous Malware hacker figured it out.

Source: Engadget

Unless they already have, and we just don't know about it. You said use an alternate browser like firefox.. I guess it's just an issue with the stock browser? Too bad firefox isn't supported by Droid1. DolphinBrowser it is!
 
Maybe this explains why the Nexus S doesn't have an SD card slot :D :D Talk about conspiracy theories...
 
Does this include ROMS with Gingerbread parts like PE4.2? It is still using the FRG83D so I think it is technically Froyo. Anyone know?
 
Back
Top