Android Exploit: Force Factory Reset remotely


1 min read
Android Exploit:  Force Factory Reset remotely

Android Exploit: Force Factory Reset remotely

"Android can be Exploited Remotely ". now just Clicking one wrong link can cause malicious code to execute, which could do anything Like infecting your computer with malware to wiping your phone data completely.

Researcher Ravi Borganokar demonstrated at the Ekoparty security conference in Argentina last week, that Only  a single line of HTML code can be used to run a factory reset or even clear the SIM card on certain Samsung phones.

This code can trigger a full factory reset of Samsung’s best-selling Galaxy S3 smartphone, deleting contacts, photographs, music, apps and other valuable data. To Execute this code hackers just have to Inject code in a web page.

The devastating flaw lies in Samsung's dialling software, triggered by the tel protocol in a URL.  It isn't applicable to all the company's Android handsets, but those that are vulnerable can take Precautions like Changing their PIN or is to disable automatic site loading in QR and NFC readers, and be careful about clicking potentially dodgy links or be wiped completely just by visiting a web page or snapping a bad QR code, or even bonking up against the wrong wireless NFC tag.

The tel protocol is generally used with phone numbers to provide clickable "call me" links on websites: tapping on the hyperlink in the handset's web browser opens up the dialling software and calls the number contained in the link.

For the time being, however, it appears that only Samsung phones running TouchWiz are susceptible (so not the Galaxy Nexus or any device running stock Android), and only if the malicious URL is loaded in the stock browser, rather than Chrome.

Follow us on Telegram and Twitter for all such latest cybersecurity news and updates.


Anonymous Releases 60 Hours of NYPD Footage
Previous article

Anonymous Releases 60 Hours of NYPD Footage

Anonymous Releases 60 Hours of NYPD Footage from Occupy Wall Street Raid Members of the hacktivist group Anonymous have released sixty hours of footage of

Critical vulnerability in Java
Next article

Critical vulnerability in Java

Critical vulnerability in Java - Billions of Users affected Security Explorations Researchers disclosed a new Serious vulnerability in Java that could allow an attacker to


GO TOP

🎉 You've successfully subscribed to Hack Reports!
OK