Android Vulnerability: anyone can easily bypass the lock screen password
Many Android users like to use a few figures as a lock screen password, and feel so safe. However, the latest loopholes found shocking: do not need any skills and complex operations, anyone can easily bypass the lock screen password into your phone!
A security analyst from a university in the United States, Texas, found the vulnerability, which is widely found in Android 5.0 and above version of the Android phone, through a few simple steps to bypass the lock screen password into the main screen. The specific method of operation is: first click on the emergency call for help, enter the emergency dial interface, randomly enter a set of numbers, and repeat the copy and paste it, after several times automatically jump back to the lock screen interface, then open the camera, Repeated several times after you can enter the system !
John Gordon, who discovered the vulnerability, also produced a demo video of the operation, and made sure that you were stunned. At the same time John Gordon also pointed out that after bypassing the lock screen, others can easily enter the developer mode, through USB to your phone to install malware.
“I am more concerned about those who temporarily custody of the phone for you, they can take advantage of when you do not pay attention to enter your cell phone, steal privacy or install malicious programs.For example, when you cross the customs, when you put the phone to work Staff, they have enough time to operate. “Gordon is currently only tested on the Nexus phone, but he believes that other Android5.0 and above running Android phones can be cracked.
Gordon at the end of June to Google to respond to this problem, last month Google released a patch on this issue. However, due to the fragmentation of Android mobile phone is too serious, in addition to Google’s own Neuxs mobile phone, other manufacturers of mobile phones currently do not receive this patch, which also means that most of the Android phone is still at risk. But Google has not yet made a statement. It should be noted that this vulnerability is limited to those who use the unlock password is a mobile phone, for the use of pattern unlock and PIN password phone is invalid, although not all mobile phones, but the number can not be underestimated.
In fact, Google on this loophole is defined as “moderate threat”, because unlike other loopholes as hackers can remotely attack your phone, this need to personally get the phone to operate. Even so, it is recommended that you update the system in time and use a more secure pattern unlock or PIN code to unlock.