Security bug means virtually all Android devices could be prone to hackers

Virtually all Android devices may be prone to hackers due to bug
Android needs some serious damage control

A security flaw discovered in almost all Android devices means that post-1.6 versions of the OS could be open to intrusion.

The information was released by Bluebox Security, which claims that the "Android master key" makes 99 per cent of devices vulnerable – that's about 900 million devices.

The flaw is down to the way Android app updates are verified, as developers are able to modify the code of an app update without breaking the cryptographic signature. In other words, it's easy for them to hack in and put some nasty code in an app on the store that appears perfectly innocent.

"Depending on the type of application, a hacker can exploit the vulnerability for anything from data theft to creation of a mobile botnet," said Bluebox on the potential risks.

Paranoid Android

What's worse, the flaw has existed ever since Android 1.6. Bluebox claimed that the Samsung Galaxy S4 is the only device not prone to the problem, suggesting a patch may have already been installed on the phone.

Google, which was informed of the exploit in February and is said to have since notified its device partners, and apparently working on an update for its Nexus line, but the responsibility to create and dispatch the patch for other devices lies with their respective manufacturers.

We contacted Google for a response and will update if we hear more.

Via Venturebeat

Hugh Langley

Hugh Langley is the ex-News Editor of TechRadar. He had written for many magazines and websites including Business Insider, The Telegraph, IGN, Gizmodo, Entrepreneur Magazine, WIRED (UK), TrustedReviews, Business Insider Australia, Business Insider India, Business Insider Singapore, Wareable, The Ambient and more.

Hugh is now a correspondent at Business Insider covering Google and Alphabet, and has the unfortunate distinction of accidentally linking the TechRadar homepage to a rival publication.

Latest in Android
The bottom left corner of an Android phone, showing the Phone, Messages, Google icons and Google Search bar
Google Messages remote delete will soon save you from texting embarrassment – and here's how it works
A phone displaying the Google Messages logo
Google Messages could finally be getting this WhatsApp-style group chat feature
Android 16 logo on a phone
Android 16 Beta 3 has arrived – here are the 4 features I think will be the most useful
Google Pixel 9
Android 16 could bring an improved Samsung DeX-style desktop mode to more phones
Android 16 logo on a phone
Android 16 beta users are reporting major battery drain issues – but I’m not too worried about it
The Oppo Find N5 open to Google Maps
Android 16 brings a much-needed upgrade to Google Maps that iOS users already have
Latest in News
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand
Hatch Restore 3 in Putty
You can finally start your day with The Office theme song, and I couldn't be more excited
Cassian Andor looking nervously over his shoulder in Andor season 2
New Andor season 2 trailer has got Star Wars fans asking the same question – and it includes an ominous call back to Rogue One's official teaser
Ncuti Gatwa as The Fifteenth Doctor in Doctor Who
Disney+ drops new trailer for Doctor Who season 2 that promises an epic adventure across time and space
23andMe
23andMe is bankrupt and about to sell your DNA, here's how to stop that from happening
A phone showing a ChatGPT app error message
ChatGPT was down for many – here's what happened