A network-related or instance-specific error occurred while establishing a connection to SQL Server. The server was not found or was not accessible. Verify that the instance name is correct and that SQL Server is configured to allow remote connections. (provider: Named Pipes Provider, error: 40 - Could not open a connection to SQL Server) Your Android Phone Could be Hacked by a Single Text Message, Electronics & Gadgets : Today Indya

Latest News

Your Android Phone Could be Hacked by a Single Text Message
Friday, September 6, 2019 IST
Your Android Phone Could be Hacked by a Single Text Message

That makes it more than a billion Android phones globally, including those made by Samsung and Huawei, which are at the risk of being hacked by text messages.

 
 

As it turns out, you should be wary of the text messages that land up in the inbox in your Android phone. A major security vulnerability in the Android operating system has left a billion phones vulnerable to getting hacked, by a plain and simple text message. Check Point Research, the Threat Intelligence arm of Check Point Software Technologies Ltd. has revealed that there is “a security flaw in Samsung, Huawei, LG, Sony and other Android-based phones that leaves users vulnerable to advanced phishing attacks.”
 
The security firm says that the hack works by making use of the over the air (OTA) method that mobile network operators use to update new phones joining their network, also known as an OMA CP message. Researchers say that this method involves limited authentication methods. Therefore, hackers or someone working remotely can exploit this route to pose as a network operator that you have just connected to and send a deceptive OMA CP message to Android phones. The message can then trick users into accepting malicious settings that would start to route the phone’s incoming and outgoing Internet traffic through a proxy server owned by the hacker. The Android phone user would not realize what is happening, and the data in the phone can be accessed by the hacker.
 
“Researchers determined that certain Samsung phones are the most vulnerable to this form of phishing attack because they do not have an authenticity check for senders of OMA CP messages. The user only needs to accept the CP and the malicious software will be installed without the sender needing to prove their identity,” says Check Point Research.
 
The research also says that phones made by Huawei, LG, and Sony do have a form of authentication, but hackers only need the International Mobile Subscriber Identity (IMSI) of the recipient’s phone to ‘confirm’ their identity. And it is not difficult for attackers to get their hands on a phone’s IMSI details—this can be done by creating a rogue Android app that reads a phone’s IMSI once it is installed or the attacker can simply bypass the need for an IMSI by sending the user a text message posing as the network operator and asking them to accept a pin-protected OMA CP message. If the user then enters the provided PIN number and accepts the OMA CP message, the CP can be installed without an IMSI.
 

 
 

“Given the popularity of Android devices, this is a critical vulnerability that must be addressed,” said Slava Makkaveev, Security Researcher at Check Point Software Technologies. Researchers say Samsung included a fix addressing this phishing flow in their Security Maintenance Release for May (SVE-2019-14073), LG released their fix in July (LVE-SMP-190006), and Huawei is planning to include UI fixes for OMA CP in the next generation of Mate series or P series smartphones. Sony refused to acknowledge the vulnerability, stating that their devices follow the OMA CP specification.

 
 
 
 
 

Related Topics

 
 
 

Trending News & Articles

 Article
The Top 5 Best USB/PD Phone Charger in India 2023

View Top 5 Mobile Chargers in India as on 08 Feb 2023. This rundown is compiled according t...

Recently posted . 5K views . 6 min read
 

 Article
Pocophone F1 to be the fastest handset in its class, Snapdragon 845 confirmed

Two days ago Xiaomi teased the arrival of its new

Recently posted . 4K views . 4 min read
 

 Article
India's Top 5 Mobile Charger manufacturer Brand 2019

The following list of India's Top 5 Mobile Charger manufacture Brand 2019  

Recently posted . 4K views . 0 min read
 

 Article
How to make you car as silent as a Rolls Royce inside

Rolls Royce cars are extremely luxurious. While there are many expensive pieces of equipment in Rolls Royce cars, their most relaxing feature is the silence that ...

Recently posted . 4K views . 2 min read
 

 
 

More in Electronics & Gadgets

 Article
Mobvoi announces second gen TicWatch Pro with 4G connectivity

Exactly one year ago today, Mobvoi announced the TicWatch Pro, a Wear OS smartwatch with stacked dual displays for maximizing battery life along with a premium desi...

Recently posted. 1K views . 1 min read
 

 Article
Uber Resumes Self-Driving Programme Three Days After Arizona Crash

Uber Technologies Inc put its self-using vehicles lower back on the road on Monday, voicing self-belief in its self-sufficient vehicle programme 3 days aft...

Recently posted. 1K views . 23 min read
 

 Article
Samsung Galaxy S8 Tipped to Have Multiple-City Launch Event on March 29

Samsung's upcoming Galaxy S8 smartphone has already seen the fair proportion of leaks in past one month but one of the mysteries surrounding the cell p...

Recently posted. 819 views . 14 min read
 

 Video
Innovations



Recently posted . 1K views
 

 Reviews
Best Coffee Makers Brands in India 2018



Recently posted . 2K views . 21 min read
 

 Reviews
Best Hot Air Heat Guns In India 2018 – Buyer’s guide



Recently posted . 2K views . 93 min read
 

 Article
Coolpad Cool 1 Dual 3GB RAM Available Online at Rs. 10,999

HIGHLIGHTS The Cool 1 Dual is controlled by a Qualcomm Snapdragon 652 SoC

Recently posted. 1K views . 53 min read
 

 Article
Reliance Jio delights gamers - brings Pokémon GO to India

With this partnership, thousands of Reliance Digital stores and  pick out  partner premises in India will appear as ‘PokéStops’ or &lsq...

Recently posted. 1K views . 19 min read
 

 
 
 

   Prashnavali

  Thought of the Day

“Life has many ways of testing a person’s will, either by having nothing happen at all or by having everything happen all at once.”
Paulo Coelho

Be the first one to comment on this story

Close
Post Comment
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST
Shibu Chandran
2 hours ago

Serving political interests in another person's illness is the lowest form of human value. A 70+ y old lady has cancer.

November 28, 2016 05:00 IST


ads
Back To Top