Cyber security news for all

More

    Hacking attacks on smartphones are increasing in 2020

    Security researchers have discovered vulnerabilities in several older Android smartphones that were able to exploit via USB and Bluetooth connections.

    The researchers identified the vulnerabilities with their own program, which sent fictitious commands to the firmware of the baseband processor through Bluetooth or USB connection between a prepared peripheral device and the smartphone. For this, devices with a simple Bluetooth connection were sufficient; according to the researchers, USB chargers could also be used as tools. Different types of attacks were successful with some smartphones from different manufacturers; The effects achieved selective blocking or rerouting of calls via denial-of-service conditions and forced switching to slower internet connections to the publication of the numbers of the devices.

    Android smartphones vulnerabilities

    The researchers tested different Android smartphones from some manufacturers, which turned out to be vulnerable to different degrees: the Huawei Nexus 6P, Nexus 5 and G3 from LG and the HTC Desire 10 Lifestyle. The Samsung devices Galaxy S8 plus and Note 2 were also affected. The various attack options were not equally available for all devices, only the Samsung devices could be coaxed out of Bluetooth using the IMEI numbers. By contrast, the researchers apparently succeeded via USB with significantly more devices. The Android versions running on the smartphones ranged from Android 8.0, the models all appeared 2 years ago or earlier. The manufacturers of the devices and chips had informed the researchers about the vulnerabilities before publication, two of the gaps were assigned the CVE numbers. In the meantime, Samsung announced that it wanted to deliver patches, while Google emphasized that the errors on pixel devices with current security updates did not occur. Huawei has not yet commented.

    Not Only Private Individuals Are Affected By Smartphone Hacks

    According to Security Report 2020, around 25 percent of organizations were affected by cyberattacks on mobile devices last year.IT specialists see the causes of the vulnerability of mobile devices in two main ways: First, mobile devices are more difficult to protect. Second, mixed professional and private use poses a significant risk. For example, mobile devices are at risk from logging into untrustworthy WLAN networks. In public places such as airports, hackers use a free airport WLAN to trick users logging into unsecured networks. In addition, the constantly switched on mobile devices are right at the front with regard to phishing emails. Because the devices are constantly on, recipients usually receive them there first and swallow the bait of legitimate-looking emails faster on their smartphones.

    Recent Articles

    macOS Trojans: Traces lead to Vietnam

    Security researchers have discovered a new macOS Trojans. Behind this could be a well known hacker group that has spied on Vietnamese dissidents in...

    Court forces Tutanota to perform a surveillance function

    Tutanota email only stores its user mails in encrypted form and cannot read them itself. Tutanota is one of the few email providers that...

    Manchester United have been blackmailed by cyber attackers

    The Premier League club Manchester United fell victim to a cyber attack according to the Daily Mail. The cyber criminals are apparently demanding ransom in...

    TikTok has fixed a serious security gap issue

    TikTok accounts paid a researcher a reward of 4000 dollars after he reported two vulnerabilities as part of a disclosure. A combination of both...

    Passwords should be changed for Fortinet VPNs

    Administrators should change the access for Fortinet VPNs in use. Log-in information for almost 50,000 VPN networks has appeared in various cyber blogs. A security...

    Related Stories

    Leave A Reply

    Please enter your comment!
    Please enter your name here

    Stay on op - Ge the daily news in your inbox