Google Rolls Out Updates for Android Security Hole

May 19, 2011 -

Responding to reports that 99.7 percent of Android-based phones suffered from a security hole that made vital personal data vulnerable to hackers, Google has released an automatic fix to deal with the problem. Google is trying to assure users that no action is needed on their part.

"Today we're starting to roll out a fix which addresses a potential security flaw that could, under certain circumstances, allow a third party access to data available in calendar and contacts," said Google in a statement. "This fix requires no action from users and will roll out globally over the next few days."

The flaw was identified by Ulm University (Germany) researchers who who tested the security hole on a number of smart phones using the Android operating system. They also found that some phones sent unencrypted data, which clever hackers could "eavesdrop" on with the right tools.

"We wanted to know if it is really possible to launch an impersonation attack against Google services and started our own analysis," said researchers Bastian Könings and Jens Nickels.

"The short answer is: Yes, it is possible, and it is quite easy to do so. Further, the attack is not limited to Google Calendar and Contacts, but is theoretically feasible with all Google services using the ClientLogin authentication protocol for access to its data APIs."

Source: GameIndustry.biz


Comments

Re: Google Rolls Out Updates for Android Security Hole

Good, quick turnaround.  That's what I like to see.  Being able to rapidly fix security holes is as important a skill as preventing them in the first place -- because sooner or later, you're going to need to know how to do both.

 
Forgot your password?
Username :
Password :

Poll

Whose next half decade of superhero films are you most looking forward to?:

Shout box

You're not permitted to post shouts.
Matthew WilsonRECOMMENDED: OS: Windows 7 Processor: Intel Core2 Duo @ 2.8GHz (or equivalent) Memory: 3 GB RAM Graphics: NVIDIA GeForce GTX 280 (or equivalent) Hard Drive: 25 GB available space10/30/2014 - 5:49pm
Matthew Wilsonhere hare the system requirements. make of ithem what you will. MINIMUM: OS: Windows Vista/Windows 7 Processor: Intel Core2 Duo @ 2.0GHz (or equivalent) Memory: 2 GB RAM Graphics: NVIDIA GeForce GTS 240 (or equivalent) Hard Drive: 25 GB available spa10/30/2014 - 5:48pm
Andrew EisenStill a game I really want to play. Hope it's a solid port.10/30/2014 - 5:42pm
Matthew WilsonValkyria Chronicles pc port needs 25ggb. not bad exept this game came out in 08 on the ps3.10/30/2014 - 4:56pm
james_fudgeEZK: my sarcasm senses are tingling ;)10/30/2014 - 4:21pm
Andrew EisenIf it's any consolation, Xbox owners, Wii U owners don't get the game at all. And if we did, we'd probably never get the DLC.10/30/2014 - 4:19pm
MaskedPixelantehttp://kotaku.com/destinys-new-dlc-kinda-screws-over-xbox-players-1652294153 Sucks when the shoe's on the other foot, huh.10/30/2014 - 4:12pm
E. Zachary KnightSo a vocational school in Oklahoma is being evacuated because someone found a briefcase in the bathroom. Imagine that. A briefcase ina school. That's unpossible.10/30/2014 - 3:33pm
prh99Also, Nintendo wants to watch you sleep..for Science! (*in best Cave Johnson voice) http://arstechnica.com/gaming/2014/10/nintendo-wants-to-watch-you-sleep-for-science/10/30/2014 - 2:47pm
prh99I got it in a Humble Bundle, it's ok but the hype is definitely over blown. Also, only being able dig in the four cardinal directions made for some irksome digging..10/30/2014 - 2:38pm
E. Zachary KnightI enjoyed it. It was very short, but rewarding and fun.10/30/2014 - 2:35pm
Andrew EisenAgainst my better judgement (game looks boring to me), I purchased Steamworld Dig. It's highly praised and it was on sale. Hopefully I'll be wrong about it and think it's as awesome as everyone else.10/30/2014 - 2:09pm
quiknkoldhttp://www.pastemagazine.com/articles/2014/10/femme-doms-of-videogames-bayonetta-doesnt-care-if.html10/30/2014 - 1:15pm
quiknkoldIf he calls himself the Effing Robot King, I can die happy10/30/2014 - 1:14pm
Michael ChandraAlso, yay for him being Ultron. :D10/30/2014 - 1:08pm
Michael Chandra"We become who we are. You can’t judge a book by its cover, but you can by its first few chapters. And most certainly by its last."10/30/2014 - 1:07pm
prh99""We are what we repeatedly do..."10/30/2014 - 12:30pm
Andrew EisenI would, however, call someone who routinely kills time by playing random games on their phone a gamer.10/30/2014 - 12:15pm
E. Zachary KnightMatthew, AE, Yeah, that is why I have a hard time understanding critics of Sarkeesian. I look at her videos as a Feminist review of video games, but for some reason, others look at them as personal attacks.10/30/2014 - 12:01pm
E. Zachary KnightDefinitely a good answer. That is the way I lean. If you actively chose to stop gaming, or just stopped out of habit, then yeah, you are no longer a gamer.10/30/2014 - 11:45am
 

Be Heard - Contact Your Politician