Android Security Undermined by OEMs
ID: 13bc01c7-02a9-5bf1-ad11-8663e0cafd2c
STIX ID: report--13bc01c7-02a9-5bf1-ad11-8663e0cafd2c
Feed Name: Security Ledger
Threat Score
Researchers at Aalto University found that Android OEMs frequently relax Google’s SEAndroid confinement policies in Lollipop devices—relying on default domains, sharing broad allow rules across apps, and leaving obsolete or auto-generated drivers—creating misconfigurations that increase attackers’ opportunities; a related Cambridge study notes roughly 88% of Android devices remain exposed to at least one known critical vulnerability.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
