Factory Reset Protection Bypass Found for Nexus Devices With May Security Update: Report

Advertisement
By Abhinav Lal | Updated: 6 May 2016 17:02 IST
Highlights
  • The bypass method is complex, involving over a dozen steps.
  • With the method, thieves can completely reset a stolen device.
  • The bypass was supposedly reported to Google, and allegedly dismissed.

An Android security researcher has found a way to bypass the factory reset protection (FRP) in the latest Android 6.0.1 Marshmallow build complete with the latest May Android Security Update.

While it's a complicated process, the method detailed by RootJunky apparently manages to bypass the factory reset protection system on the Huawei-made Nexus 6P. The researcher has detailed the bypass, meant specifically for Nexus devices, in a YouTube video seen later in the article.

RootJunky explains that when Nexus users (or thieves) have reset their smartphones, they can skip the FRP check by disconnecting the Wi-Fi they're currently connected to. Once they have done so, they can then create a Google account by using a special apk file and the preloaded Chrome browser. After they have signed into the new account, and the phone syncs to the account, they can then reset the smartphone again - but this time, they know the password to the account the smartphone is associated with, and will have full access to the smartphone.

Advertisement

To recall, Google first introduced Factory Reset Protection, also known as Device Protection, with Android 5.1 Lollipop. The system is meant to ensure that if an Android device has been stolen, the thief cannot gain full access to the device even after factory resetting it. 

Advertisement

The researcher says he submitted this bypass, which he says works on Nexus devices with older security patches as well, to Google along with other privilege escalation methods as security risks. Google however did not acknowledge the bypass to be a real security risk. Of course, while the method is complex, it is not so complex that determined smartphone thieves cannot use it to reset a large number of stolen devices.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. ACT Fibernet Launches New Broadband Plans With Free OTT Subscriptions
  2. OnePlus 15R Surfaces on Benchmarking Site Ahead of India Launch
  3. Motorola Edge 70 With Pantone's 2026 Colour, Swarovski Crystals Launched
  4. Flipkart Buy Buy 2025 Sale: Nothing Phone 3, Phone 3a Deals Revealed
  5. Flipkart Buy Buy 2025 Sale With Discounts on iPhone 16 Begins on This Date
  6. Samsung May Limit Exynos 2600 to South Korea's Galaxy S26 Units
  7. HMD 101, HMD 100 With Built-In Radio Launched in India at These Prices
  8. Apple Announces App Store Awards 2025 Winners: Check List
  9. Realme Watch 5 Launched in India With Up to 16-Day Battery Life: See Price
  1. NotebookLM App Gets an In-Built Camera, Lets Users Upload Images as a Source
  2. HMD 101 Launched in India With 1,000mAh Battery, Auto Call Recording Alongside HMD 100: Price, Features
  3. Crypto Traders Await US Fed Signals as Bitcoin Price Drops to $91,900
  4. Nothing Phone 3a Lite Goes on Sale in India: See Price, Offers, Availability
  5. Realme Narzo Phones Confirmed to Launch in India Soon via Amazon
  6. Samsung Galaxy Watch Ultra 2 Launch Timeline Leaked; Could Debut Alongside Samsung Galaxy Watch 9
  7. Samsung Galaxy S26 Series May Get Exynos 2600 Chipset Exclusively in South Korea: Report
  8. Apple’s FaceTime Reportedly Blocked in Russia Alongside Snapchat’s Video Calling Feature
  9. Anthropic Releases New Claude Tool That Interviews Users About Their AI Usage
  10. ACT Fibernet Launches Revamped Broadband Plans Starting at Rs. 499
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.