A vulnerability that left millions of AirDroid users vulnerable to phone data hijacking attacks has been patched. The flaw (CVE-2015-8112) allowed an attacker to execute malicious code during an AirDoid session. Attackers can send a seemingly innocent contact card containing malicious code via MMS/WhatsApp/email/etc. All an attacker needs is the phone number associated with the targeted account. The main threat is a complete theft of private information imagine just receiving an SMS message can result in all of the users data being stolen.”]
Source: https://grahamcluley.com/airdroid-patches-vulnerability-exposed-millions-users-phone-data-hijacking/

