logo

Android Security Undermined by OEMs

ID: 13bc01c7-02a9-5bf1-ad11-8663e0cafd2c

STIX ID: report--13bc01c7-02a9-5bf1-ad11-8663e0cafd2c

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2015-10-26

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

Researchers at Aalto University found that Android OEMs frequently relax Google’s SEAndroid confinement policies in Lollipop devices—relying on default domains, sharing broad allow rules across apps, and leaving obsolete or auto-generated drivers—creating misconfigurations that increase attackers’ opportunities; a related Cambridge study notes roughly 88% of Android devices remain exposed to at least one known critical vulnerability.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.