Android Flaw Lets Hackers Break in With an MMS: Report

Advertisement
By Agence France-Presse | Updated: 28 July 2015 10:24 IST
Cyber-security firm Zimperium on Monday warned of a flaw in the world's most popular smartphone operating system that lets hackers take control with a text message.

"Attackers only need your mobile number, using which they can remotely execute code via a specially crafted media file delivered via MMS (text message)," Zimperium Mobile Security said in a blog post.

"A fully weaponised successful attack could even delete the message before you see it. You will only see the notification."

Android code dubbed "Stagefright" was at the heart of the problem, according to Zimperium.

Advertisement

Stagefright automatically pre-loads video snippets attached to text messages to spare recipients from the annoyance of waiting to view clips.

Advertisement

Hackers can hide malicious code in video files and it will be unleashed even if the smartphone user never opens it or reads the message, according to research by Zimperium's Joshua Drake.

"The targets for this kind of attack can be anyone," the cyber-security firm said, referring to Stagefright as the worst Android flaw discovered to date.

Advertisement

"These vulnerabilities are extremely dangerous because they do not require that the victim take any action to be exploited."

Malicious code executed by hackers could take control of smartphones and plunder contents without owners knowing.

Advertisement

Stagefright imperils some 95 percent, or an estimated 950 million, of Android phones, according to the security firm.

Zimperium said that it reported the problem to Google and provided the California Internet firm with patches to prevent breaches.

"Google acted promptly and applied the patches to internal code branches within 48 hours, but unfortunately that's only the beginning of what will be a very lengthy process of update deployment," Zimperium said.

It did not appear as though hackers had taken advantage of the Stagefright vulnerability, according to Zimperium.

Updating Android software powering mobile devices is controlled by hardware makers and sometimes telecommunication service carriers, not Google.

While Apple controls the hardware and software in iPhones, iPads, and iPods powered by its mobile operating system, Google makes Android available free to device makers who customize the code and update it as they see fit.

More about Drake's research was to be disclosed at a Black Hat computer security conference taking place in Las Vegas early in August.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Google Pixel 10a Review: More of the Same?
  2. Here's When the Poco C85x 5G Will be Launched in India
  3. This AI Device Claims to Stop Microphones From Recording Your Voice
  4. OTT Releases This Week: Gandhi Talks, Subedaar, War Machine, Hello Bachhon, and More
  1. Annagaru Vostaru OTT Release: When, Where to Watch Karthi’s Telugu Action-Comedy
  2. Local Times OTT Release: Know When and Where to Watch the Tamil Comedy Drama Online
  3. Vivo X300 Max With Zeiss Cameras and Android 16 Spotted at MWC 2026, Could Launch Soon
  4. WhatsApp Update Introduces Support for Discovering Stickers While Typing Emoji: How It Works
  5. This AI-Powered Portable Device Claims to Detect Microphones and Jam Audio Recordings
  6. Poco X8 Pro Series Global Launch Date Leaked Ahead of Anticipated Debut: Expected Price, Specifications
  7. MacBook Neo Geekbench Scores Indicate It Performs on Par With iPhone 16 Pro Max
  8. Xiaomi Testing Experimental AI Agent Miclaw, Can Perform Complex Tasks Across Devices
  9. Dear Radhi OTT Release: Where to Watch the Tamil Thriller Online?
  10. With Love Now Streaming on Netflix: Know Everything About Plot, Cast, and More
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.