Many Android Devices Had a Pre-Installed Backdoor, Google Reveals

The list of affected devices includes Leagoo M5 Plus, Leagoo M8, Nomu S10, and Nomu S20.

Advertisement
By Jagmeet Singh | Updated: 7 June 2019 14:58 IST
Highlights
  • Google has confirmed Dr. Web report revealing malware on Android devices
  • It worked with handset makers to fix the backdoor access
  • Google provides OEMs with a "Build Test Suite" examine Android ROMs

Android phones were spotted to have Triada as a preloaded backdoor in 2017

Android phones had a pre-installed framework backdoor that made them vulnerable even before they hit stores, Google revealed in a detailed study on Thursday. The story starts with the "Triada family" of trojans that was first discovered early in 2016. The Mountain View, California-headquartered company initially removed Triada samples from all Android devices using Google Play Protect. But in 2017, it was found that Triada evolved and ultimately became a preloaded backdoor on Android devices. Notably, the latest phones aren't likely to be affected by what has been discovered by Google. The vulnerability did have an impact on various models in the past, though.

Security researchers at Kaspersky highlighted the presence of Triada back in 2016 when it was noted as a rooting trojan designed to exploit hardware after getting elevated privileges. The key aim of the trojan was found to install apps that could be used to send spam and display ads. Google implemented detection through its Play Protect to remove Triada samples.

Advertisement

However, as per a blog post detailing the backdoor access, Google's in-house researchers in 2017 spotted a backdoored log function version of Triada that was used to download and install modules. The preloaded log function was importantly placed in the system section that wasn't noticed by many smartphone manufacturers at the initial stage.

"Triada was inconspicuously included in the system image as third-party code for additional features requested by the OEMs," wrote Lukasz Siewierski from Android Security and Privacy team at Google in the blog post. "This highlights the need for thorough ongoing security reviews of system images before the device is sold to the users as well as any time they get updated over-the-air (OTA)."

Advertisement

Google worked with original equipment manufacturers (OEMs) and provided them with instructions to remove the threat from devices. It also eventually pushed OTA updates to reduce the spread of pre-installed Triada variants and removed infections from the affected phones.

It is worth noting here that Google hasn't mentioned the names of devices that had the questionable backdoor access. However, security firm Dr. Web in a report published in late July 2017 revealed that several Android devices had Triada within their firmware. The devices including Leagoo M5 Plus, Leagoo M8, Nomu S10, and Nomu S20. Moreover, Google confirmed the findings of the Dr. Web report.

Advertisement

To ensure the security of devices, Google is claimed to have provided OEMs with a "Build Test Suite" that helps them examine Android ROMs before launching the hardware publicly and scan for malware like Triada to reduce their impact.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Triada, Android, Google
Advertisement
Popular Mobile Brands
  1. Oppo Find X10 Series Tipped to Launch With Notable Battery Upgrades
  2. CMF Phone 3 Pro Launch Timeline Leaks as Tipster Reveals Key Specs
  3. Oppo Find X9s Review: Almost 'Pro'
  4. Vivo X500 Pro Max Might Launch This Year With an 8,000mAh Battery
  5. Oppo Find X9s vs Vivo X300 FE vs OnePlus 15: Price and Features Compared
  6. Xiaomi Clip Open-Ear Earbuds Launched With Up to 38 Hours Total Battery Life
  7. Xiaomi 17 Max Debuts With 8,000mAh Battery, Leica-Tuned Cameras: See Price
  8. Maa Behen OTT Release: When and Where to Watch it Online?
  9. PS Plus Prices Hiked Across All Tiers in India: Check New Pricing
  10. Scientists Find a Hidden Shortcut to the Moon That Saves Fuel
  1. Scientists Discover New Fuel-Saving Route to the Moon
  2. Madhu Vidhu OTT Release: Where to Watch, Plot, Cast, IMDb Rating, and More
  3. Maa Behen OTT Release Revealed: When and Where to Watch it Online?
  4. LOL: Last One Laughing Germany Season 7 Out on OTT: Know Where to Watch it Online
  5. Warrant: From the World of Vilangu OTT Release Date: When and Where to Watch it Online?
  6. Xiaomi Clip Open-Ear Earbuds Launched With LHDC 5.0 Audio, Up to 38 Hours Total Battery Life: Price, Specifications
  7. Sathi Leelavathi Now Streaming on SunNXT: Everything You Need to Know About Plot, Cast, and More
  8. Xiaomi Smart Band 10 Pro Launched With 1.74-Inch AMOLED Screen, Up to 21 Days Battery Life: Price, Features
  9. Honor Developing Wide-Foldable Phone With Snapdragon 8 Elite Gen 6 SoC, Tipster Claims
  10. Google’s Gemini Offers Agentic Design Creation With New Adobe and Canva Connectors
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.