Skip to main content

Android hole could be used to disable antivirus apps

posted onOctober 4, 2011
by l33tdawg

L33tdawg: Further details of Riley's talk is here and the finalized conference agenda (PDF) is also available for download 

Researchers say they have uncovered vulnerabilities in a "popular" component of Android that is used by antivirus and other apps that could be exploited to do things like disable the apps. A malicious app could be created to turn off the antivirus so an attacker could infect the phone with malware and in some cases the same weakness could be used to compromise the antivirus app itself, said Riley Hassell, founder of Privateer Labs, in a recent briefing.

Privateer co-founder Shane Macaulay uncovered the vulnerabilities but had not found any attacks exploiting them in the wild. Hassell declined to reveal details about the vulnerabilities. "We're working with top (antivirus) vendors to come up with a solution," Hassell said. "There's a way for them to...accomplish the same task without them having to utilize this component."

Google representatives did not respond to e-mails seeking comment. Hassell and Macaulay are scheduled to present their findings, including a potential workaround, at the Hack in the Box Security Conference in Malaysia next week.

Source

Tags

HITB Android Google Viruses & Malware

You May Also Like

Recent News

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th