Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Because sometimes it is rocket science.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews




spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. Visual C++ Redistributable Runtimes AIO Repack
5. Visual C++ Runtime Installer (All-In-One)
6. McAfee Removal Tool (MCPR)
7. MusicBee
8. Rufus
9. K-Lite Mega Codec Pack
10. Sergei Strelec's WinPE
More >>

top reads

Star How to Disable 1-Click Ordering on Amazon (and Avoid Surprise Charges)

Star How to Fix Shallow Paint Layer Depth in Bambu Studio

Star Aviator Betting Game Secrets: Unlock 97% RTP & Triple Your Wins

Star Windows Recall: What It Is, Why Hackers Will Love It, and How to Stay Safe

Star Star Trek Fleet Command Promo Codes: Redeem Codes for Free Shards, Blueprints And Resources

Star How To Use VLC Media Player to Trim Video Clips

Star What Is the $WinREAgent Folder and Can I Delete It?

Star Swear Your Way to Better Search Results

Star How to Get a Dark Start Menu and Taskbar in Windows 10 & 11

Star Enable, Disable, Manage, Delete or Create a System Restore Point


MajorGeeks.Com » News » May 2014 » Android OS loophole allows secret photos to be taken

Android OS loophole allows secret photos to be taken


Posted by: Jon Ben-Mayor on 05/27/2014 06:28 AM [ comments Comments ]


A security researcher recently discovered an exploitable flaw in the Android operating system which allows photos to be snapped without the user knowing.

Szymon Sidor discovered the flaw and according Ubergizmo, he was able to get an app to snap photos of its user without an indication that a photo was snapped. Typically this requires the viewfinder to be brought up, to let the user known that the camera is active, but by exploiting the loophole, Sidor made it so that the viewfinder was just a single pixel wide, meaning that unless you were looking with a microscope, you’d never know the camera was activated.



According to Sidor, “The result was amazing and scary at the same time – the pixel is virtually impossible to spot on Nexus 5 screen (even when you know where to look)! Also it turned out that even if you turn the screen completely off, you can still take photos, as long as the pixel is still there.” Sidor has since uploaded a video demonstrating the exploit, and has also notified Google about the flaw.

Sidor follows up by saying; if you are as disturbed by this find as I am you will start asking what can we do to avoid such situations. The bad news is that it's kind of a cat and mouse game - no matter how hard you try attackers can find more ways to obfuscate malicious activity. The good news is there are some ways that seem (at least given my current knowledge hard to circumvent:

-Pay attention to permissions (for example does Simple Notepad* really need access to your camera?)
-Keep your Google Account secure - if somebody can access your Google account they can install apps on your phone remotely without you approving it! Set up two step verification. Change your password from time to time. Set up secure password.
-Uninstall unused apps.
-High battery consumption (settings -> battery), and high bandwidth (settings -> data usage) are potential culprits
-Look at the background services that are running (settings -> apps -> running) - does Simple Notepad* really require background service
-Swiping app out of application list does not switch off background services (if you want to completely switch it off go to App Info (long press app icon inside menu and drag it to app info section) and click force stop - this ensures no background services are running.
*Simple Notepad is a made up example - I am not referring to any app in particular.



« 'Watch Dogs' release is today, hack away gamers · Android OS loophole allows secret photos to be taken · Names of US citizens spied on by NSA to be published »




Comments
comments powered by Disqus

MajorGeeks.Com » News » May 2014 » Android OS loophole allows secret photos to be taken

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition