Google’s April Android Security Bulletin Warns of 9 Critical Bugs

Google updates its Android OS to address its own OS and component partners Qualcomm and Broadcom. Continue reading Google’s April Android Security Bulletin Warns of 9 Critical Bugs

Google awards record $112,500 bug bounty for Android exploit chain

Google awarded a record $112,500 bug bounty to a Chinese security researcher after he submitted the first working Android remote exploit chain since the company’s Android Security Rewards program raised top payout levels in 2017. Guang Gong, a researcher who works for billion-dollar Chinese security firm Qihoo 360 Technology, submitted the bugs in August. The bugs, CVE-2017-5116 and CVE-2017-14904, were resolved in a December 2017 security update. Google announced the full payout this week. The exploit chain goes after the Pixel, Google’s own flagship mobile device. It’s widely touted as the most secure Android phone on the market. The first vulnerability allows a remote attacker to execute arbitrary code, via crafted HTML, inside the Chrome browser’s sandbox. The second is a bug that allows an escape from Chrome’s sandbox. Combined, the vulnerabilities allow attackers to remotely inject arbitrary code into the Pixel’s system_server process if the phone’s user accesses certain malicious URLs in Chrome. Gong and the Qihoo 360 team know a thing or two […]

The post Google awards record $112,500 bug bounty for Android exploit chain appeared first on Cyberscoop.

Continue reading Google awards record $112,500 bug bounty for Android exploit chain

Google Patches Critical Encryption Bug Impacting Pixel, Nexus Phones

As part of its December Android and Pixel/Nexus security updates, Google has issued patches addressing a bevy of flaws, 11 of which are rated critical. Continue reading Google Patches Critical Encryption Bug Impacting Pixel, Nexus Phones

Flip-Dot Display Brought Out of Retirement by New Drivers

LED matrix displays and flat-screen monitors have largely supplanted old-school electromechanical models for public signage. We think that’s a shame, but it’s also a boon for the tinkerer, as old displays can be had for a song these days in the online markets.

Such was the case for [John Whittington] and his flip-dot display salvaged from an old bus. He wanted to put the old sign back to work, but without a decent driver, he did what one does in these situations — he tore it down and reverse engineered the thing. Like most such displays, his Hannover Display 7 …read more

Continue reading Flip-Dot Display Brought Out of Retirement by New Drivers

Google Patches 10 Critical Bugs in August Android Security Bulletin

Google’s August Android Security Bulletin featured patches for nearly a dozen remote code execution bugs impacting Google’s Pixel and Nexus handsets. Continue reading Google Patches 10 Critical Bugs in August Android Security Bulletin