Warning: mkdir(): No space left on device in /var/www/tgoop/post.php on line 37

Warning: file_put_contents(aCache/aDaily/post/technical_with_love/--): Failed to open stream: No such file or directory in /var/www/tgoop/post.php on line 50
科技无意义@technical_with_love P.570
TECHNICAL_WITH_LOVE Telegram 570
Forwarded from Abhishek mishra
Bug found in Android lets you unlock someone's device just a SIM card
Source

A recently disclosed vulnerability gives any attacker with physical access to your Android device the ability to unlock it.

All devices running Android 10 to Android 13 were affected with this bug whether they are running OneUI, MIUI or even Pixel's stock OS. Custom ROMs are also affected by it.

The attacker only needs a SIM card with the PIN and PUK code to run this exploit. PUK (Personal Unlocking Key) is an 8-digit code unique to your SIM card. It is used to unlock your mobile and reset your SIM PIN.

The vulnerability is tracked with CVE-2022-20465 with patches for this issue being now available for AOSP 10-13.

The security researcher reported this bug to Android’s Vulnerability Rewards Program in the middle of this year, but Google did not move on the issue until September after some in-person prompting. It resulted in a $70,000 reward and is listed in the November security patch under a “System” issue with “High” severity.
🤡31



tgoop.com/technical_with_love/570
Create:
Last Update:

Bug found in Android lets you unlock someone's device just a SIM card
Source

A recently disclosed vulnerability gives any attacker with physical access to your Android device the ability to unlock it.

All devices running Android 10 to Android 13 were affected with this bug whether they are running OneUI, MIUI or even Pixel's stock OS. Custom ROMs are also affected by it.

The attacker only needs a SIM card with the PIN and PUK code to run this exploit. PUK (Personal Unlocking Key) is an 8-digit code unique to your SIM card. It is used to unlock your mobile and reset your SIM PIN.

The vulnerability is tracked with CVE-2022-20465 with patches for this issue being now available for AOSP 10-13.

The security researcher reported this bug to Android’s Vulnerability Rewards Program in the middle of this year, but Google did not move on the issue until September after some in-person prompting. It resulted in a $70,000 reward and is listed in the November security patch under a “System” issue with “High” severity.

BY 科技无意义




Share with your friend now:
tgoop.com/technical_with_love/570

View MORE
Open in Telegram


Telegram News

Date: |

Channel login must contain 5-32 characters Don’t publish new content at nighttime. Since not all users disable notifications for the night, you risk inadvertently disturbing them. Unlimited number of subscribers per channel To delete a channel with over 1,000 subscribers, you need to contact user support There have been several contributions to the group with members posting voice notes of screaming, yelling, groaning, and wailing in different rhythms and pitches. Calling out the “degenerate” community or the crypto obsessives that engage in high-risk trading, Co-founder of NFT renting protocol Rentable World emiliano.eth shared this group on his Twitter. He wrote: “hey degen, are you stressed? Just let it out all out. Voice only tg channel for screaming”.
from us


Telegram 科技无意义
FROM American