#android-security

[ follow ]
Information security
fromZDNET
23 hours ago

Your Android phone may be in critical danger - update it ASAP

Google released the December 2025 Android security update fixing 107 vulnerabilities, including critical kernel and framework flaws, with two vulnerabilities possibly already exploited.
Gadgets
fromThe Hacker News
1 day ago

ThreatsDay Bulletin: Wi-Fi Hack, npm Worm, DeFi Theft, Phishing Blasts- and 15 More Stories

Android introduces in-call scam warnings for participating financial apps on Android 11+, pausing calls and screen sharing to interrupt social-engineering scams.
fromTheregister
2 days ago

Two Android 0-day bugs patched, plus 105 more fixes

The two vulnerabilities are CVE-2025-48633, an information-disclosure flaw in Android's framework component, and CVE-2025-48572, an elevation-of-privilege bug also in the framework component. Both are ranked high severity, and according to Google, both "may be under limited, targeted exploitation." Both of these - plus an additional 105 security holes - all have patches, so it's a good idea to update your Android software ASAP.
Information security
Mobile UX
fromGSMArena.com
6 days ago

iQOO 15's global model picks up first software update following international rollout

iQOO 15 receives a 750MB update improving system stability, network and gaming performance, optimizing battery and translations, raising Android security patch to November 1, 2025.
Information security
fromTech Advisor
3 weeks ago

Google warns Android users: Don't install these apps on your phone!

Fake VPN apps on Android can secretly install malware, steal credentials, and compromise privacy; only install trusted, verified VPNs from official sources.
Privacy professionals
fromThe Independent
3 weeks ago

Google warns billions of users over critical VPN threat

Fake VPN apps impersonate legitimate services to spy on users and steal financial credentials, cryptocurrency and other sensitive data from Android devices.
Gadgets
fromThe Hacker News
4 weeks ago

Securing the Open Android Ecosystem with Samsung Knox

Samsung Knox on Galaxy devices combines hardware, software, AI, and enterprise controls to protect data, prevent sideloading, and detect malware at scale.
Gadgets
fromThe Hacker News
1 month ago

Google's Built-In AI Defenses on Android Now Block 10 Billion Scam Messages a Month

Android scam defenses block over 10 billion suspected malicious calls and messages monthly and preemptively block RCS numbers using on-device AI and messaging protections.
#pixnapping
fromInfoQ
1 month ago
Information security

Pixnapping: Side-Channel Vulnerability Allows Android Apps to Capture Sensitive Screen Data

fromWIRED
1 month ago
Information security

A New Attack Lets Hackers Steal 2-Factor Authentication Codes From Android Phones

fromInfoQ
1 month ago
Information security

Pixnapping: Side-Channel Vulnerability Allows Android Apps to Capture Sensitive Screen Data

fromWIRED
1 month ago
Information security

A New Attack Lets Hackers Steal 2-Factor Authentication Codes From Android Phones

#side-channel-attack
fromZDNET
1 month ago
Information security

This new 'Pixnapping' exploit can steal everything on your Android screen - even 2FA codes

fromZDNET
1 month ago
Information security

This new 'Pixnapping' exploit can steal everything on your Android screen - even 2FA codes

Information security
fromIT Pro
1 month ago

This new Android attack could let hackers swipe 2FA codes and snoop on private messages - 'Pixnapping' affects Samsung and Google smartphones, but experts warn more could be at risk

Pixnapping enables malicious Android apps to steal displayed pixels from other apps using a GPU side channel, revealing 2FA codes and sensitive data without permissions.
#oneplus
fromZDNET
2 months ago

You should update your Samsung phone ASAP - this zero-day flaw just got patched

Samsung recently issued a patch to resolve a critical vulnerability impacting its Android smartphone users. All impacted phone models will receive the fix, which patches a vulnerability tracked as . The security flaw, issued a critical base score of 8.8 by Samsung Mobile (a CNA), is described as an "out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code."
Gadgets
fromZDNET
2 months ago

Update your Samsung phone ASAP to patch this zero-day flaw exploited in the wild

Samsung has issued a patch to resolve a critical vulnerability impacting its Android smartphone users. All impacted phone models will receive the fix, which patches a vulnerability tracked as . The security flaw, issued a critical base score of 8.8 by Samsung Mobile (a CNA), is described as an "out-of-bounds write in libimagecodec.quram.so prior to SMR Sep-2025 Release 1 allows remote attackers to execute arbitrary code."
Information security
Gadgets
fromTechCrunch
2 months ago

Samsung patches zero-day security flaw used to hack into its customers' phones | TechCrunch

Samsung fixed a zero-day in its image-display library that allowed remote planting of malicious code on devices running Android 13–16.
Information security
fromZDNET
2 months ago

Google may shift to risk-based Android security patch rollouts - what that means for you

Google plans a risk-based Android security update system prioritizing critical actively exploited vulnerabilities while moving lower-risk fixes to less frequent patch cycles.
fromTheregister
3 months ago

Boffins build automated Android bug hunting system

The authors claim that the A2 system achieves 78.3 percent coverage on the Ghera benchmark, surpassing static analyzers like APKHunt (30.0 percent). And they say that, when they used A2 on 169 production APKs, they found "104 true-positive zero-day vulnerabilities," 57 of which were self-validated via automatically generated proof-of-concept (PoC) exploits. One of these included a medium-severity flaw in an Android app with over 10 million installs.
Information security
fromTheregister
3 months ago

Android drops 120 flaw fixes, two exploited in the wild

Patch Tuesday is next week, but Android is ahead of the game, dropping its biggest patch bundle this year while attackers actively exploit two of the now-fixed flaws. This month, the world's most popular mobile operating system pushed out 120 patches, its biggest monthly dump this year. It's a far cry from July, when Android didn't issue a single patch as everything was apparently fine, but in September, two of the flaws may be under "limited, targeted exploitation."
Information security
Information security
fromTechCrunch
3 months ago

Google will require developer verification for Android apps outside the Play Store | TechCrunch

Google will require identity verification for developers distributing apps on certified Android devices beyond the Play Store, with phased rollout beginning March 2026.
fromThe Hacker News
4 months ago

Google's August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild

The vulnerabilities include CVE-2025-21479 (CVSS score: 8.6) and CVE-2025-27038 (CVSS score: 7.5), both of which were disclosed alongside CVE-2025-21480 (CVSS score: 8.6) by the chipmaker back in June 2025.
Privacy technologies
Mobile UX
fromArs Technica
5 months ago

Android phones could soon warn you of "Stingrays" snooping on your communications

Android phones will soon offer enhanced network security notifications for potential attacks.
Current devices lack the necessary hardware support for detecting fake cell towers.
Newer models releasing later this year will enable detection of malicious network activities.
fromTechCrunch
6 months ago

Phone chipmaker Qualcomm fixes three zero-days exploited by hackers | TechCrunch

Qualcomm's recent patching of vulnerabilities in its chips is critical, especially given the existence of three zero-days that may be actively exploited by hackers.
Tech industry
Privacy technologies
fromZDNET
6 months ago

Your Android phone's latest security upgrade makes it more thief-proof - here's how

Google is enhancing Factory Reset Protection to make Android phones less appealing to thieves.
Privacy technologies
fromTechCrunch
6 months ago

Google announces new security features for Android for protection against scam and theft | TechCrunch

Google announced new security features for Android to enhance user protection against scams and unauthorized device access.
Privacy technologies
fromZDNET
6 months ago

Your Android phone is getting a huge security upgrade for free - what's new

Android devices are enhancing security with new protections against scam calls and malicious actions.
Games
fromForbes
6 months ago

Delete Any Apps On Your Phone That Are On This List

Over 2.5 million dangerous apps are installed on Android devices monthly, as users fall for malicious replicas of legitimate apps.
Marketing tech
fromForbes
6 months ago

Delete Any Apps On Your Phone That Are On This List

Up to 2.5 million dangerous apps are installed monthly on Android devices, posing a significant threat to users.
The 'Kaleidoscope' threat involves fake app replicas that generate ad fraud for cyber criminals.
[ Load more ]