Sanctioned billion-dollar cybersecurity company from Russia finds 11 vulnerabilities in Google and Apple products…
- A macOS flaw could give hostile apps the highest system privileges
- An NFC tag could trigger an Android app without owner approval
- Android flaw lets apps change Wi-Fi settings without requesting extra permissions
Russian cybersecurity firm Positive Technologies has claimed it discovered 11 security flaws affecting Android and Apple devices.
The company, which is currently under American sanctions, gave the findings to Russian news agency TASS.
Nine of the flaws affected Apple devices and software, while two affected Android, including Pixel phones, and were reportedly rated high severity.
How a tag and an app exposed Android phones
The first Android flaw let attackers use a crafted NFC tag to fetch, set up, and run an app while the owner approved nothing.
The second flaw allowed an app already on the phone to alter network settings, including joining a chosen Wi-Fi network, without any extra permissions, and also let the...
Copyright of this story solely belongs to www.techradar.com. To see the full text click HERE