Millions Of Android Phones At Risk Due To 'Achilles' Flaw

English

Millions of Android phones at risk due to 'Achilles' flaw In Qualcomm chips.

"Researchers have found that Qualcomm's Snapdragon chip, one of the most widely used in Android phones, has hundreds of bits of vulnerable code that leaves millions of Android users at risk."

Millions of Android phones at risk due to 'Achilles' flaw In Qualcomm chips.

To back up a bit, Qualcomm is a major chip supplier to several well-known tech companies. In 2019, its Snapdragon series of processors could be found on nearly 40% of all Android smartphones, including high-profile flagship phones from Google, Samsung, Xiaomi, LG, and OnePlus.

Researchers from Check Point, a cybersecurity firm, found the digital signal processor (DSP) in Qualcomm Snapdragon chips had over 400 pieces of vulnerable code.

The vulnerabilities, altogether dubbed "Achilles," can impact phones in three major ways.

Attackers would only have to convince someone to install a seemingly benign app that bypasses usual security measures.

Once that's done, an attacker could turn the affected phone into a spying tool.

They'd be able to access a phone's photos, videos, GPS, and location data.

Hackers could potentially also record calls and turn on the phone's microphones without the owner ever knowing.

Alternatively, an attacker could choose to render the smartphone completely unusable by locking all the data stored on it in what researchers described as a "targeted denial-of-service attack."

Lastly, bad actors could also exploit the vulnerabilities to hide malware in a way that would be unknown to the victim and unremovable.

Part of why so many vulnerabilities were found is that the DSP is a sort of "black box."

It's difficult for anyone other than the manufacturer of the DSP to review what makes them work...

Featured Sponsors

Games For Linux

Windows has always been the preferred platform for gaming, but after STEAM's interest in Linux more game developers are making their games natively available for Linux.

Disclaimer

All information on this website is published in good faith and for general educational purposes and for use in safe testing environments only. While linuxexperten.com strives to make the information on this site as accurate as possible, linuxexperten.com does not warrant its completeness, reliability and accuracy.

We are not responsible for any losses or damages associated with the use of our website. While we strive to provide only links to useful websites, we have no control over the content of these sites and links to other sites do not constitute a recommendation for all content contained on these websites.

 

Site Information

This is a professional review site that receives compensation from the companies whose products reviewed. Each service or product are thoroughly tested and given high marks if considered to be the very best. Independently owned and the opinions expressed here are no one elses.