New malware bypasses one of the latest Android 13 security features

South Africa News News

New malware bypasses one of the latest Android 13 security features
South Africa Latest News,South Africa Headlines
  • 📰 PhoneArena
  • ⏱ Reading Time:
  • 56 sec. here
  • 2 min. at publisher
  • 📊 Quality Score:
  • News: 26%
  • Publisher: 59%

The virus gets access to Google's accessibility API even when it has been blocked by the OS

Tech companies vs hackers: a cat and mouse game. No, this is not a title for a new movie. This is the reality we live in. It's always the same deal: tech companies release a new piece of software, and hackers find ways to bypass its security measures. The latest confirmation of these words is the fact that a hacker group called Hadoken is already working on a new app with a built-in method that can bypass one of Android 13's new security features .

With Android 13, Google now prevents sideloaded apps from getting access to your phone's accessibility services. This became necessary because Google's accessibility API can be exploited by hackers to control your phone and steal important data like bank accounts, for example.found out, Hadoken's app — which the researchers named BugDrop — bypasses Android 13's new prevention using Google's session-based package installation API.

As we can see from the picture below, Android 13 restricts the app from accessing the phone's accessibility services, but it doesn't block the downloaded payload. The malware can still activate and exploit the accessibility API. Now, it looks like BugDrop is still in development because the team from ThreatFabric found out that the app doesn't request the"REQUEST_INSTALL_PACKAGES" permission, without which it can't install anything on your phone. However, this will probably soon change, so we hope that Google will find a way to fix the loophole, which Hadoken is trying to abuse. A cat and mouse game indeed.

We have summarized this news so that you can read it quickly. If you are interested in the news, you can read the full text here. Read more:

PhoneArena /  🏆 322. in US

South Africa Latest News, South Africa Headlines

Similar News:You can also read news stories similar to this one that we have collected from other news sources.

The Charming Bloke Who Dominates GeoGuessrThe Charming Bloke Who Dominates GeoGuessrGeoGuessr, a game that drops you at a random place in Google Street View and challenges you to guess where you are, has been made popular by the viral phenomenon of streamers narrating their guesses and strategies.
Read more »

Prepare your inbox: Google to help GOP evade your spam filterPrepare your inbox: Google to help GOP evade your spam filterThe FEC opened the door for Google to test out a new program that will let politicians get around spam filters to beg you for money.
Read more »

Google employees circulate petition demanding abortion benefits for contractorsGoogle employees circulate petition demanding abortion benefits for contractorsThey say the company’s response to Roe v. Wade has been inadequate.
Read more »

Make Big Tech play fairMake Big Tech play fairWho do you trust more: your local newspaper or Google content moderators in California?
Read more »

Google AI flagged parents’ accounts for potential abuse over nude photos of their sick kidsGoogle AI flagged parents’ accounts for potential abuse over nude photos of their sick kidsGoogle scanned pictures taken to send to a doctor
Read more »

Discounts and gifts for bugs: Google trying to trick people into buying new Pixel phones?Discounts and gifts for bugs: Google trying to trick people into buying new Pixel phones?Unimaginable discounts and gifts for buggy Pixel 6 phones. Is Google trying to buy your happiness and patience with amazing deals?
Read more »



Render Time: 2025-03-04 22:39:24