Google Reportedly Directs OEMs to Push Android Security for at Least 2 Years

Advertisement
By Jagmeet Singh | Updated: 25 October 2018 14:13 IST
Highlights
  • Google has reportedly brought a new contract for OEMs
  • The new contract is designed to mandate Android security updates
  • It is already applied to 75 percent of "security mandatory models"

Devices with over 100,000 users are reportedly obligated to receive 4 security updates in one year

Google was spotted to have mandated two years of Android security updates for all popular smartphones and tablets. The new development is reportedly a part of the contract that device manufacturers need to sign to use the Android operating system on their hardware. It comes months after Android Security Head David Kleidermacher at developer-focused Google I/O 2018 revealed the modification of OEM agreements to include revisions related to regular security patches. Interestingly, the search giant already offered its Project Treble to help manufacturers easily push new software updates to their Android devices.

According to the terms of the new contract, as obtained by The Verge, any Android device launched after January 31, 2018 that has over 100,000 users is required to receive security updates for at least two years and at least four security updates within one year of its launch. It is reported that as of July 31, the new security update requirements were applied to 75 percent of a manufacturer's "security mandatory models", though this will be expanded to all security mandatory models starting January 31, 2019.

Advertisement

It is worth pointing out that the manufacturers won't be obligated to provide each security update to their devices. However, Google has reportedly added the condition of "at least four updates" within the first year after the launch of the device to ensure that all the major vulnerabilities will be fixed. The company didn't specify the number of updates required in the second year, though. Having said that, the Android device makers are also required to protect the security mandatory models against all vulnerabilities identified over 90 days ago - irrespective of how many updates they've already pushed, as per the reported contract.

If a manufacturer fails to follow the terms specified in the reported contract, it is said that Google could withhold approval of future devices from the same manufacturer. This would encourage all the major device makers to honour the terms.

Advertisement

The reported terms initially appear in Google's EU licensing agreement that is designed for Android phones and tablets using Google apps and services in the European Union. However, Google could roll them out in the global markets to limit security issues on Android devices.

A Google spokesperson didn't explicitly confirm whether the reported contract will be valid for devices available in the global markets though in a statement to The Verge said 90-day patches were a "minimum security hygiene requirement" and stated that "the majority of the deployed devices for over 200 different Android models from over 30 Android device manufacturers are running a security update from the last 90 days."

Advertisement

During I/O 2018 in May, Android Security's Klidermacher reportedly hinted at the development by revealing a modification in Google's OEM agreements to include the requirement of regular security patches. "We've also worked on building security patching into our OEM agreements," Kleidermacher was quoted as saying.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Android Security, Android, Google
Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 70 Pro Arrives With a 6,500mAh Battery at This Price in India
  2. Vivo X300 FE Roundup: Expected Price in India, Specifications
  3. GeForce Now Review:  Is Nvidia's High-End Cloud Gaming Service For You?
  4. Oppo F33 Pro 5G Review: The Best Looking Phone Under Rs. 40,000?
  5. Oppo Find X9 Ultra With 200-Megapixel Periscope Camera Launched Globally
  1. Apple's iOS 27, macOS 27 and iPadOS 27 Updates Will Introduce Stricter Network Security Settings
  2. Vivo X300 Ultra, Vivo X300 FE India Launch Date Announced; Colour Options, Key Features Revealed
  3. MeitY Adds Stricter AI-Generated Content Disclosure Rule, Extends IT Rules Feedback Deadline
  4. Cryptocurrency Prices Rise as Accumulation Strengthens Market Sentiment; Bitcoin Nears $78,100
  5. Tesla Model Y L Premium Launched in India With 3-Row Seating, Up to 681km WLTP Range: Price, Features
  6. Capcom Says Its New IP Pragmata Surpassed 1 Million Copies Sold in Just Two Days of Launch
  7. Sony 1000X The Collexion Reportedly Listed on Regional Websites, Expected to Launch Soon
  8. Apple Working on 200-Megapixel Periscope Telephoto Camera for Future iPhone Models, Tipster Claims
  9. Motorola Edge 70 Pro Launched in India With 6,500mAh Battery, 50-Megapixel Sony LYT-710 Camera: Price, Features
  10. Oppo Find X9s Launched With Dimensity 9500s SoC, Hasselblad-Tuned 50-Megapixel Cameras: Price, Specifications
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.