Trojan tin upload the maximum serious vulnerabilities Jingxian Android Android, trojans, vulnerability,
Supra Trinity NS Shoes, File
said playing software iPhone, Android activity firmware,
Supra Skytop III Shoes, this sentence truly nobody erroneous. Android open ecology catered for the massive number of downstream firms the chance to become their own MOD, built the boom of the dynasty Android, although,
Supra Bullet Shoes, namely extensive management Google Android Market likewise bring a lot of problems,
Supra Shoes, an serious problem: security vulnerability .
▲ Android security vulnerability is a serious problem of extensive treatment
earlier we reported, Android inquiry fixed Coverity has been arrested 88 out of kernel-level vulnerabilities, whereas ghastly ample, merely today's 88 apertures and was off by disclosing a defect likened to simply pale into insignificance .
information security researcher Thomas Cannon of this vulnerability will be made public today, the characteristic implementation process as:
1. Android built-in browser does not hint the user to quietly download a file,
Supra Skytop II Shoes, such for
2. flee the file via Javascript, and the Android browser to display the regional file, escape the process without any prompts;
3. successful while opened, Javascript will be competent to read any local file content and additional data;
4. Once the Javascript as the contents of a file, the Trojan ambition be automatically sent with the feature and legislature, apt win the documents sent to anyone specified position.
That is, whether there are Trojans take advantage of this loophole, your compartment call memories card file,
Supras, documents, and even Yan Zhao, security was not certified to entire. How, you vibrate?
▲ this vulnerability will be nailed in the Android 2.3
Thomas Cannon has been notified a few days antecedent Google, Android development team answered within 20 minutes, and that the work has been displayed for the vulnerability will be in the imminent Android 2.3 version of the operating system to repair, and this vulnerability is likely that Google released Android 2.3 version of the system lag of the reasons.
But such fixes will not retention all of the Android apparatus, for the 2.3 edition of the system afterward the release of merely a few models can receive updates, tens of thousands of Android devices either can not update the 2.3 edition of the system, or running a vendor creation Custom user interface system, the menace will still exist. Google should do is to launch a separate system for the different versions of the browser upgrade or fix patch to shut out the spiteful Trojan.