Blog | G5 Cyber Security

Android 0-Day exploit granting attackers root access found running in the wild

A new zero-day vulnerability has been identified in the vanilla Android operating system. It only requires the execution of untrusted app code. The exploit has likely already been used in the wild by the NSO Group, an Israeli-based security company. The vulnerability is exploitable in Chrome’s renderer processes under Androids isolated_app SELinux domain, leading to us suspecting Binder as the vulnerable component. Google Pixel 3 and 3a phones are not affected by the bug, and a patch in October update should close the vulnerability for the rest of the Pixels.”]

Source: https://www.bitdefender.com/blog/hotforsecurity/android-0-day-exploit-granting-attackers-root-access-found-running-in-the-wild/

Exit mobile version