Many Android devices ship with firmware vulnerabilities, researchers find

Asus, Essential, LG, and ZTE have all vowed to patch security flaws found by mobile security firm Kryptowire, according to Wired. The firm’s research was meant to point out that some security meltdowns stem from code written by phone companies to modify Android.

Researchers found bugs in the firmware of 10 separate devices carried across the major American carriers, according Wired, which saw an early version of Kryptowire’s report. The security lapses could lead to everything from letting an attacker lock someone out of their device, to getting control over their microphone and more — though most of the attacks that the researchers detailed required users to download some sort of malicious app before they could take advantage of the…

Continue reading…

Go to Source