Security News

Google Pixel phones had a serious data leakage bug – here’s what to do!
2023-03-21 19:58

In the image editing tool on Google's Pixel phones. The old data - the tail-end of last week's football game, in our VCR analogy - would remain behind on the stoarge device, but it would no longer be part of the digital file containing the new image.

Google suspends top Chinese shopping app Pinduoduo
2023-03-21 05:58

Google has suspended Chinese shopping app Pinduoduo from its Play store because versions of the software found elsewhere have included malware. Interestingly, Google told Bloomberg versions of Pinduoduo hosted on outside Play were the source of the infected software, yet it chose to ban the app from the Play store and users of Android devices not to run the apps.

Privacy fail: Pictures cropped, redacted by Google Pixel phones can be recovered
2023-03-20 21:13

aCropalypse Now, starring any 2018-or-later device If you've owned a Google Pixel smartphone since the 3 series came out in 2018, bad news: any screenshot that you've cropped or redacted on your...

Hackers mostly targeted Microsoft, Google, Apple zero-days in 2022
2023-03-20 17:08

Hackers continue to target zero-day vulnerabilities in malicious campaigns, with researchers reporting that 55 zero-days were actively exploited in 2022, most targeting Microsoft, Google, and Apple products. According to Mandiant, most of last year's zero-day flaws were exploited by Chinese state-sponsored actors and most concerned operating systems, web browsers, and network management products.

Google Pixel flaw allowed recovery of redacted, cropped images
2023-03-20 14:54

An 'Acropalypse' flaw in Google Pixel's Markup tool made it possible to partially recover edited or redacted screenshots and images, including those that have been cropped or had their contents masked, for the past five years. The Markup tool is a built-in image editor that allows you to redact, crop, and change images on an Google Pixel device.

Google: Turn off Wi-Fi calling, VoLTE to protect your Android from Samsung hijack bugs
2023-03-17 20:35

Google security analysts have warned Android device users that several zero-day vulnerabilities in some Samsung chipsets could allow an attacker to completely hijack and remote-control their handsets knowing just the phone number. Between late 2022 and early this year, Google's Project Zero found and reported 18 of these bugs in Samsung's Exynos cellular modem firmware, according to Tim Willis, who heads the bug-hunting team.

Samsung, Vivo, Google phones open to remote compromise without user interaction
2023-03-17 12:28

Several vulnerabilities in Samsung's Exynos chipsets may allow attackers to remotely compromise specific Samsung Galaxy, Vivo and Google Pixel mobile phones with no user interaction."With limited additional research and development, we believe that skilled attackers would be able to quickly create an operational exploit to compromise affected devices silently and remotely," Google Project Zero researchers have noted.

Google Uncovers 18 Severe Security Vulnerabilities in Samsung Exynos Chips
2023-03-17 06:53

Google is calling attention to a set of severe security flaws in Samsung's Exynos chips, some of which could be exploited remotely to completely compromise a phone without requiring any user interaction. The 18 zero-day vulnerabilities affect a wide range of Android smartphones from Samsung, Vivo, Google, wearables using the Exynos W920 chipset, and vehicles equipped with the Exynos Auto T5123 chipset.

Google finds 18 zero-day vulnerabilities in Samsung Exynos chipsets
2023-03-16 20:33

Project Zero, Google's zero-day bug-hunting team, discovered and reported 18 zero-day vulnerabilities in Samsung's Exynos chipsets used in mobile devices, wearables, and cars. "The baseband software does not properly check the format types of accept-type attribute specified by the SDP, which can lead to a denial of service or code execution in Samsung Baseband Modem," Samsung says in a security advisory describing the CVE-2023-24033 vulnerability.

Google finds 18 baseband zero-day bugs in Samsung Exynos chipsets
2023-03-16 20:33

Project Zero, Google's zero-day bug-hunting team, discovered and reported 18 baseband zero-day vulnerabilities in Samsung's Exynos chipsets used in mobile devices, wearables, and cars. "The baseband software does not properly check the format types of accept-type attribute specified by the SDP, which can lead to a denial of service or code execution in Samsung Baseband Modem," Samsung says in a security advisory describing the CVE-2023-24033 vulnerability.