Researchers at Palo Alto Networks’ Unit 42 have disclosed the details behind a widespread vulnerability that impact 49.5 percent of Android users. The flaw enables attackers the ability to hijack the installation of an application, without the user’s knowledge. Google has not detected any attempts to exploit this vulnerability on user devices. The Android Open Source Project includes the patches needed to mitigate the issue on Android 4.3 and later versions. A large chunk of users are still vulnerable, as they have no way to update their devices to the latest Android build.”]

