You are here: silicon.com > Software > Malware

Malware

Google working on browser patch for Android flaw

Impact of flaw limited by 'compartmentalisation'

Tags: malware, google, os, android

By David Meyer

Published: 28 October 2008 08:39 GMT

A flaw exists in the Google-led Android mobile platform that could let users be tricked into visiting malware-laden websites and unwittingly have their keystrokes recorded, The New York Times has reported.

According to the weekend article, a researcher and former US National Security Agency computer-security specialist, Charles Miller, told Google about the flaw last week. The article also quotes a Google security engineer, Rich Cannings, as saying the flaw's impact would be limited due to the compartmentalisation of the Android platform.

"We wanted to sandbox every single application because you can't trust any of them," Cannings told The New York Times.

A Google spokesperson told silicon.com sister site ZDNet UK on Monday that the company was "working on a browser software patch for Android" and "co-ordinating with T-Mobile on a plan to soon deliver this update over-the-air to customers' G1 handsets" - the HTC-made G1 being the first Android handset to be released to market.

Google's spokesperson also said the company did not believe the matter would "negatively impact" customers' experience with the G1, which will be launched by T-Mobile in the UK on Thursday.

Miller has reportedly not yet publicised the technical details of the problem but has said the flaw in the browser used in Android means a visit to a malicious website could lead to software being secretly installed on the handset. Such software could record keystrokes made by the user, thereby discovering private information and passwords.

Android is a complete mobile stack - from operating system to applications - that is being developed by the Open Handset Alliance, an industry consortium headed up by Google.

Original article: Researcher warns of Android browser vulnerability from ZDNet UK

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
PHP Developer, Online Design Agency, Basingstoke - 35k - 40k

Knowledge of browser quirks and variations SEO and SEM understanding and ability to use Google Analytics PHP Developer, Online Design Agency, ...

Web Developer / PHP Developer- Joomla or Magento CMS - Google Accredited Agency

This means that you would be joining a company with a reputation for delivering the best work and results to some of the county's leading brands.We ...

.NET Web Developer (C#, ASP.Net, SQL Server) - York

.Net Web Developer (C#, ASP.Net, SQL Server) - York My client, the market leader in their field, are looking to recruit a .NET Web Developer to join ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: