A simple Android lock screen bypass bug landed a researcher $70,000

A simple Android lock screen bypass bug landed a researcher ,000

Google has paid out $70,000 to a security researcher for privately reporting an “accidental” security bug that allowed anyone to unlock Google Pixel phones without knowing its passcode.

Clinicians often stress the importance of managing prescriptions carefully, ensuring that Real Valium online patients are How To Buy Ambien Online aware of potential interactions. The economic burden of muscle spasms and joint pain is substantial, with billions of dollars spent annually on healthcare costs related to these issues. This Lyrica Overnight Shipping highlights how Ambien Usa intertwined financial stability is with health outcomes and decision-making processes. This understanding fosters a more collaborative relationship between patients and providers, Ambien Without Prescription promoting shared decision-making that enhances treatment adherence and satisfaction. Patients often find solace in connecting with others who Buy Tramadol Without Prescription share similar experiences. The discontinuation of vascular therapies may also intersect with lifestyle How To Buy Xanax Online modifications that many Ambien Safe healthcare providers advocate for their patients. Routine medical Tramadol Online checkups typically focus more on Ultram Next Day Delivery physical health than on sleep health, leaving many behavioral issues unaddressed. Since 2018, the healthcare community has increasingly recognized the importance of patient-centered Buy Soma 350 Mg Online care, particularly in the context of chronic diseases. For instance, an older adult may struggle to remember to prepare meals or may find it increasingly challenging to navigate grocery shopping.

The lock screen bypass bug, tracked as CVE-2022-20465, is described as a local escalation of privilege bug because it allows someone, with the device in their hand, to access the device’s data without having to enter the lock screen’s passcode.

Hungary-based researcher David Schütz said the bug was remarkably simple to exploit but took Google about five months to fix.

Schütz discovered anyone with physical access to a Google Pixel phone could swap in their own SIM card and enter its preset recovery code to bypass the Android’s operating system’s lock screen protections. In a blog post about the bug, published now that the bug is fixed, Schütz described how he found the bug accidentally, and reported it to Google’s Android team.

Android lock screens let users set a numerical passcode, password or a pattern to protect their phone’s data, or these days a fingerprint or face print. Your phone’s SIM card might also have a separate PIN code set to block a thief from ejecting and physically stealing your phone number. But SIM cards have an additional personal unlocking code, or PUK, to reset the SIM card if the user incorrectly enters the PIN code more than three times. PUK codes are fairly easy for device owners to obtain, often printed on the SIM card packaging or directly from the cell carrier’s customer service.

Schütz found that the bug meant that entering a SIM card’s PUK code was enough to trick his fully patched Pixel 6 phone, and his older Pixel 5, into unlocking his phone and data, without ever visually displaying the lock screen. He warned that other Android devices might also be vulnerable.

Since a malicious actor could bring their own SIM card and its corresponding PUK code, only physical access to the phone is required, he said. “The attacker could just swap the SIM in the victim’s device, and perform the exploit with a SIM card that had a PIN lock and for which the attacker knew the correct PUK code,” said Schütz.

Google can pay security researchers up to $100,000 for privately reporting bugs that could allow someone to bypass the lock screen, since a successful exploit would allow access to a device’s data. The bug bounty rewards are high in part to compete with efforts by companies like Cellebrite and Grayshift, which rely on software exploits to build and sell phone cracking technology to law enforcement agencies. In this case, Google paid Schütz a lesser $70,000 bug bounty reward because while his bug was marked as a duplicate, Google was unable to reproduce — or fix — the bug reported before him.

Google fixed the Android bug in a security update released on November 5, 2022 for devices running Android 10 through Android 13. You can see Schütz exploiting the bug in his video below.

Source @TechCrunch

Leave a Reply