Android Master Key: Bluebox discovers vulnerability that can allow hackers to take over any Android phone

 (Google Android)

An "Android Master Key" has been discovered by The Bluebox Security research team, which could lead to millions of Android users' security vulnerable.

The team discovered that the security flaw, which allows a hacker to modify APK code without breaking an app's cryptographic signature, which can turn any app into a Trojan without the user knowing.

This could mean that potentially 99 percent of all Android phone owners who owns a phone from the last 4 years could be affected.

The vulnerability may affect all Android-based phones that have been released in the last 4 years.

The researchers claim that anyone who breaks into an app could even "take over normal functioning of a phone."

According to Bluebox, "All Android applications contain cryptographic signatures, which Android uses to determine if the app is legitimate and to verify that the app hasn't been tampered with or modified. This vulnerability makes it possible to change an application's code without affecting the cryptographic signature of the application – essentially allowing a malicious author to trick Android into believing the app is unchanged even if it has been."

The security has been reported to Google in February, according to Jeff Forristal, chief technology officer of Bluebox Security research firm. He also said that some manufacturers have released updates to fix the problem, such as the Samsung Galaxy S4.

Clich here to read more about the Bluebox's findings.

News
Poverty and destitution is driving our mental health crisis - and Christians must act
Poverty and destitution is driving our mental health crisis - and Christians must act

We must acknowledge Britain’s shameful poverty crisis as the major driver of mental illness in this country, says ex-gangster turned bishop.

MSP wants to expand Scotland's controversial abortion buffer zones
MSP wants to expand Scotland's controversial abortion buffer zones

Perhaps one day all of Scotland will be a buffer zone.

Why the 1700th anniversary of the Council of Nicaea and the Nicene Creed matters
Why the 1700th anniversary of the Council of Nicaea and the Nicene Creed matters

You might be wondering: what does a fourth-century church meeting have to do with me today? Actually, quite a lot.

Calvin Robinson loses priest licence after just 9 days in new denomination
Calvin Robinson loses priest licence after just 9 days in new denomination

The Reformed Episcopal Church has withdrawn its licence from Fr Calvin Robinson, the second such incident in the life of the controversial cleric in just five months.