Categories: NewsTech

Apps are tracking your Android smartphone—with or without your permission

You’ve probably heard that Android smartphones are less secure than their iOS counterparts. And thought, whatever. As long as you set your app permissions and security settings correctly, there shouldn’t really be an issue, right?

Well, not really. Recent research has shown that hundreds, if not thousands, of apps have found a loophole in Android’s permission system; transmitting your device’s unique identifier and possibly location data as well. And if you set app permissions to prevent it from accessing personal data, the app can still access the data obtained by another app that has it in shared storage.

This is made possible by the fact that many apps are build using the same software development kits (SDK); the owners of these kits are also receiving this data, allegedly. If you’re wondering what apps are vulnerable, the list even includes apps from Samsung and Disney—pretty scary stuff.

These utilise SDKs built by Chinese company, Baidu, as well as an analytics firm called Salmonads. In fact, researchers found that apps developed using Baidu’s SDK may actually be storing this data as well.

There is more. Some apps also transmit the unique MAC addresses in your network and router, as well as your wireless access point and SSID. But the study, which was presented at PrivacyCon 2019, specifically mentions Shutterfly, the image processing app; the app sends GPS coordinates back to its serves regardless of permission settings. This data, according to the study, is taken from EXIF metadata within the photos. This allegation has been denied by Shutterfly, however.

Will this be fixed?

Google has been notified on the vulnerabilities within the system, which should mean that the loopholes will be patched in the upcoming Android Q update. But that doesn’t help the remaining Android users—especially devices that will not support Android Q when it’s officially rolled out.

Google hasn’t officially commented on the issue as of yet, but The Verge reports that Android Q will be hiding geolocation info from photo apps, while permissions should be tightened on accessibility to location metadata for apps.

[ SOURCE ]

Recent Posts

DC Handal deploys 240kW DC Charger at Symphony Suites Hotel Ipoh

DC Handal has deployed a new high-powered DC charger in Ipoh and it is currently…

5 hours ago

Infinix opens 1 Utama brand store this Sunday: Here are the opening day promos

Infinix is expanding its physical retail footprint in Malaysia with a new brand store at…

8 hours ago

CMF Clip Pro: Nothing’s budget open-wearable earbuds with Smart Dial and Hi-Res audio

Following earlier teasers, CMF by Nothing has officially launched the CMF Clip Pro, marking the…

10 hours ago

BMW iX3 50 xDrive now in Malaysia: The first Neue Klasse EV, priced at under RM400k

The 2nd generation BMW iX3 is now officially in Malaysia, marking the beginning of the…

11 hours ago

MBSB Bank Visa Debit Card-i now supports Samsung Wallet and Google Pay

MBSB Bank customers can now add their Visa Debit Card-i to Samsung Wallet and Google Pay, allowing them…

24 hours ago

Alliance Bank announces Apple Pay support: Only for Visa credit cards, offers RM30 launch cashback

Almost 4 years after the feature arrived in Malaysia, Apple Pay is now finally available…

1 day ago

This website uses cookies.