Monday, July 4, 2016

SECURITY ALERT: Millions of Android devices have series of security issues

You have an Android device running 5.0 (Lollipop) or later and it has a Qualcomm processor?

If yes, you should be aware that Gal Beniamini,a researcher found series of security vulnerabilities on Android devices and demonstrated how to crack the full-disk encryption with brute-force attacks which makes possible for hackers to attack ad break into million of Android devices that are using full disk encryption.

Some of these problems have already been addressed and fixed, however the remaining ones may not be patchable and it might even require changes to hardware.

What is Full disk encryption (FED)?

Full disk encryption camouflages all the data stored on your device and makes it as not recognizable to third parties – the one without a unique key. However, Beniamini found extreme flaws on this level so now hackers have a great chance to get that key and to export all the data from you device.

Don’t put your complete trust in Full disk encryption

Majority of users are not at threat since now everyone has a reliable Android security application running on their devices which is keeping them safe. However, those who have only put their complete trust in full disk encryption need to act now and install a security app that will make sure nothing happens to them. In the end you still have your device and you are safe.

Beniamini, addressed also another problem where he stated that it is not only the problem with possible attackers. He said that OEMs might comply with law enforcement to break Android’s full-disk encryption. “Since the key is available to TrustZone, OEMs could simply create and sign a TrustZone image which extracts the KeyMaster keys and flash it to the target device,” he wrote. “This would allow law enforcement to easily brute-force the FDE password off the device using the leaked keys.” - source.

As we all can see from here is that the current encryption system is very vulnerable. 

The best possible way is to upgrade your phone with a security app that will make sure that your device and all you data is fully safe. Zemana Mobile Antivirus, does all this and even more by providing you real time protection, running all the time in the background waiting for some malicious behavior so it can immediately block it.


