{"id":82249,"date":"2018-09-02T01:22:23","date_gmt":"2018-09-02T08:22:23","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2018\/09\/here-we-go-again-newly-discovered-android-vulnerability-can-be-used-to-spy-on-you"},"modified":"2018-09-02T01:22:23","modified_gmt":"2018-09-02T08:22:23","slug":"here-we-go-again-newly-discovered-android-vulnerability-can-be-used-to-spy-on-you","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2018\/09\/here-we-go-again-newly-discovered-android-vulnerability-can-be-used-to-spy-on-you","title":{"rendered":"Here we go again: Newly discovered Android vulnerability can be used to spy on you"},"content":{"rendered":"<p><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/here-we-go-again-newly-discovered-android-vulnerability-can-be-used-to-spy-on-you.jpg\"><\/a><\/p>\n<p>We write often here about the security vulnerabilities of Android devices that are due, at least in part, to how much of a delay there can be in the latest software updates making the rounds. Which can leave some handsets dangerously vulnerable if the device manufacturer is slow on the uptake.<\/p>\n<p>Which means we\u2019re constantly writing posts like this one: Researchers from Nightwatch Cybersecurity this week <a href=\"https:\/\/wwws.nightwatchcybersecurity.com\/2018\/08\/29\/sensitive-data-exposure-via-wifi-broadcasts-in-android-os-cve-2018-9489\/\" rel=\"nofollow\" target=\"_blank\">put out an<\/a> <a href=\"https:\/\/wwws.nightwatchcybersecurity.com\/2018\/08\/29\/sensitive-data-exposure-via-wifi-broadcasts-in-android-os-cve-2018-9489\/\" rel=\"nofollow\" target=\"_blank\">advisory<\/a> about an Android vulnerability that purportedly exposes information about a user\u2019s device to all applications running on the device. There\u2019s a fix for it, but not if you\u2019re running a too-old version of Android.<\/p>\n<p>According to the advisory, the information includes \u201cthe Wi-Fi network name, BSSID, local IP addresses, DNS server information and the MAC address. Some of this information (MAC address) is no longer available via APIs on Android 6 and higher, and extra permissions are normally required to access the rest of this information. However, by listening to these broadcasts, any application on the device can capture this information thus bypassing any permission checks and existing mitigations.\u201d<\/p>\n<p><!-- Link: <a href=\"https:\/\/bgr.com\/2018\/09\/01\/android-vulnerability-discovered\/\">https:\/\/bgr.com\/2018\/09\/01\/android-vulnerability-discovered\/<\/a> --><\/p>\n","protected":false},"excerpt":{"rendered":"<p>We write often here about the security vulnerabilities of Android devices that are due, at least in part, to how much of a delay there can be in the latest software updates making the rounds. Which can leave some handsets dangerously vulnerable if the device manufacturer is slow on the uptake. Which means we\u2019re constantly [\u2026]<\/p>\n","protected":false},"author":396,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[34,418,6],"tags":[],"class_list":["post-82249","post","type-post","status-publish","format-standard","hentry","category-cybercrime-malcode","category-internet","category-robotics-ai"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/82249","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/396"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=82249"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/82249\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=82249"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=82249"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=82249"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}