Samsung acknowledges Exynos security issue, promises update ‘as quickly as possible’

It may have taken longer than we would have liked, but Samsung has finally confirmed that it's aware of the Exynos security exploit discovered this weekend. The smartphone maker hasn't issued a timeline for plugging the hole, but it is indeed on the case, stating "Samsung is aware of the potential security issue related to the Exynos processor and plans to provide a software update to address it as quickly as possible." Project Voodoo's François Simond (Supercurio) released his own root-free fix just hours after the vulnerability was discovered on Sunday, so you're welcome to use that simple solution in the meantime (at the source link below). You can also head over to Android Central for the full statement from Samsung.

Filed under: , ,

Comments

Source: Project Voodoo, Android Central

Security exploit opens Samsung Galaxy S III, Note II to attack, could let apps from Google Play write to Kernel

Security exploit opens Samsung Galaxy S III, Note II to attack, could let apps from Google Play write to Kernel

Amid the XDA community's ongoing quest to root every Android handset it comes across, one forum user appears to have found a serious exploit that affects certain Exynos devices. While fiddling with his Galaxy S III, XDA user Alephzain discovered a way to obtain root without flashing with Odin. The Samsung kernel apparently allows read / write access to all physical memory on the device, including the kernel itself. This makes for an easy root, Alephzain writes, but leaves devices open to attack -- allowing Kernel code injections and RAM dumps from malware-laden apps from the Google Play store.

It isn't the only avenue for attack on an Android handset, but it is an exceedingly easy attack. Luckily, a community fostered fix seems pretty simple too -- XDA user RyanZA has already created a patch to modify write permissions on affected devices -- though Galaxy S III users are reporting that the fix cripples the phone's camera app. So far, Alephzain has confirmed that the Galaxy S II, III, Note II and the Meizu MX are at risk, but notes that the exploit might work on any device running a Exynos 4210 or 4412 processor. Samsung has not yet made a comment about the vulnerability, but forum members say that the issue has been reported. As for the exploit's lasting implications? Head on over to the XDA forums to join the discussion.

Update: François Simond (aka Supercurio) wastes no time plugging holes, and has already released a root-free fix for the vulnerability. Simond's solution is wrapped up in a simple APK, and requires no root, no flashing and no special know-how. It can be enabled or disabled manually, too -- allowing Galaxy S III users to regain full use of their front-facing camera, which as previously stated, is disrupted by the fix. Best of all, it's free -- skip on over to Project Voodoo at the source to get protected.

Filed under: , ,

Comments

Via: The Next Web

Source: XDA-Developers (1), (2), Project Voodoo

Verizon Samsung Galaxy Note II now open to pleasures of the rooted kind

Verizon Samsung Galaxy Note II rooted

Shame you can't do anything about that obnoxious home button branding, but thanks to the folks over at XDA you can now squeeze some root juice onto your VZW Samsung Galaxy Note II. As per usual with Sammy's Android devices, the process involves the use of Odin to flash an image before you can enjoy the perks. Do note however, the hackery only gives you superuser access -- there's no way to cram in a custom ROM just yet. Early users have reported a few issues, including busted mics, broken signal strength indicators and general slow-coach behavior, but it sounds like updates have now plugged most of those holes. You'll find the payload and instructions waiting at the source link -- just be careful not to orphan that S Pen.

Filed under: , , ,

Comments

Via: Pocketnow

Source: XDA Developers

Barnes & Noble Nook HD+ tentatively rooted for the paper UI-phobic (video)

Barnes & Noble Nook HD tenatively rooted for the paperphobic video

There's no doubt that Barnes & Noble in love with the paper-like interface of the Nook HD+. Not all of its new owners are quite so taken with the retro chic, with the proof being XDA-Developers member verygreen's early root for the Android tablet (and possibly its HD cousin). The preliminary code is enough to offer a glimpse of a more digital interface as well as teasers of a CyanogenMod port and booting from SD cards. Before racing to use the instructions at the source, be aware that the root's usefulness may vary wildly in the near future -- as of this writing, a familiar defense mechanism dating back to the Nook Color has kicked in that rejects the root and restores itself to factory stock after eight failed boot attempts. That there's a root at all will nonetheless be a comfort in the long run to those who like the idea of a budget tablet without the enforced nostalgia for dead trees.

Continue reading Barnes & Noble Nook HD+ tentatively rooted for the paper UI-phobic (video)

Filed under:

Barnes & Noble Nook HD+ tentatively rooted for the paper UI-phobic (video) originally appeared on Engadget on Fri, 09 Nov 2012 18:26:00 EDT. Please see our terms for use of feeds.

Permalink Liliputing  |  sourceXDA-Developers  | Email this | Comments

Motorola reveals Atrix HD Developer Edition, highlights unlockable bootloader

Motorola reveals Atrix HD Developer Edition, highlights unlockable bootloader

Digging the idea of picking up an Atrix HD, but bummed about that whole "locked bootloader" situation? Problem solved. Motorola has just introduced the Atrix HD Developer Edition, which offers up the exact same specifications as the original, but allows near infinite customizations thanks to an unlockable bootloader. For the laypeople in attendance, that allows tinkerers to install custom ROMs on the phone without any additional hackeration, thus giving them to power to overhaul Android's look and feel in a major way. As of now, Moto's not talking pricing or release, but you can follow the source link to sign up for updates. (Oh, and if you're hoping for a quick turnaround, don't even think about looking at how long it took the Galaxy S III Developer Edition to finally go on sale.)

Filed under: ,

Motorola reveals Atrix HD Developer Edition, highlights unlockable bootloader originally appeared on Engadget on Tue, 06 Nov 2012 13:42:00 EDT. Please see our terms for use of feeds.

Permalink   |  sourceMotorola  | Email this | Comments

Refresh Roundup: week of October 22nd, 2012

Refresh Roundup week of October 22nd, 2012

Your smartphone and / or tablet is just begging for an update. From time to time, these mobile devices are blessed with maintenance refreshes, bug fixes, custom ROMs and anything in between, and so many of them are floating around that it's easy for a sizable chunk to get lost in the mix. To make sure they don't escape without notice, we've gathered every possible update, hack, and other miscellaneous tomfoolery we could find during the last week and crammed them into one convenient roundup. If you find something available for your device, please give us a shout at tips at engadget dawt com and let us know. Enjoy!

Continue reading Refresh Roundup: week of October 22nd, 2012

Filed under: , , , , , , ,

Refresh Roundup: week of October 22nd, 2012 originally appeared on Engadget on Sun, 28 Oct 2012 21:00:00 EDT. Please see our terms for use of feeds.

Permalink   |   | Email this | Comments

DMCA update shuts down new phone unlocking next year, allows rooting (but not for tablets)

CyanogenMod adds 'pull' OTA updates to latest CM10 nightly builds

And so it passed that Congress didst layeth its blessing on the jailbreaking and rooting of all manner of devices; the hacking community saw the miracle and rejoiced. But that amendment to the DMCA two years ago was just a temporary exemption and the Electronic Frontier Foundation has been vigorously lobbying to get it reinstated. The Library of Congress has now done just that through a new three year extension, but with some serious caveats: After 90 days, unlocking of new phones will be verboten and all tablet mods will still be illegal. This differs from the 2010 decision which did allow unlocking, because the Librarian decided that a recent copyright ruling means fair use rules no longer apply to a handset's OS. It also said the exception isn't needed anymore because carrier rules regarding unlocking are now more liberal -- although the lawmaker may be confounding chicken with egg by that reasoning.

Filed under: , ,

DMCA update shuts down new phone unlocking next year, allows rooting (but not for tablets) originally appeared on Engadget on Fri, 26 Oct 2012 08:01:00 EDT. Please see our terms for use of feeds.

Permalink Ars Technica  |  sourceLibrary of Congress (Amazon)  | Email this | Comments

Refresh Roundup: week of October 15th, 2012

Refresh Roundup week of October 15th, 2012

Your smartphone and / or tablet is just begging for an update. From time to time, these mobile devices are blessed with maintenance refreshes, bug fixes, custom ROMs and anything in between, and so many of them are floating around that it's easy for a sizable chunk to get lost in the mix. To make sure they don't escape without notice, we've gathered every possible update, hack, and other miscellaneous tomfoolery we could find during the last week and crammed them into one convenient roundup. If you find something available for your device, please give us a shout at tips at engadget dawt com and let us know. Enjoy!

Continue reading Refresh Roundup: week of October 15th, 2012

Filed under: , , ,

Refresh Roundup: week of October 15th, 2012 originally appeared on Engadget on Sun, 21 Oct 2012 20:48:00 EDT. Please see our terms for use of feeds.

Permalink   |   | Email this | Comments

Kindle Paperwhite gets its own jailbreak, E Ink spews everywhere

DNP Kindle Paperwhite gets its own jailbreak, E Ink spews everywhere

If you're an avid tinkerer who managed to secure a Kindle Paperwhite before they sold out, then we have some news that may well brighten up your day. A jailbreak based off of the hack for the Kindle Touch has been developed for Amazon's new e-reader and is now available for fearless Paperwhite owners. If you're up to the task, your bravery will award you some elite features which include: using your device as a weather station display and serial terminal access with Raspberry Pi systems. If all of this sounds like a fun weekend project waiting to happen, head on over to source link for step by step instructions.

Filed under:

Kindle Paperwhite gets its own jailbreak, E Ink spews everywhere originally appeared on Engadget on Fri, 05 Oct 2012 17:40:00 EDT. Please see our terms for use of feeds.

Permalink SlashGear  |  sourceMobileRead forums  | Email this | Comments

Kindle Fire HD 7-inch rooted in spite of Amazon, unstoppable force meets the unhackable object (video)

Amazon Kindle Fire HD 7-inch review

We were worried there, for a minute. After code explorers found that Amazon's Kindle Fire HD 7-inch had both a locked bootloader and extra security measures, there was a brief concern that the pseudo-Android tablet might be very tough to hack. As it turns out, there was no reason to lose faith. Hashcode, Justin Case, Reverend Kyle and Sparklym3 from the XDA and RootzWiki forums have successfully rooted the smaller Kindle Fire HD in a repeatable form, giving anyone courageous enough to load ADB the control they want over the tablet they bought. Just remember the usual caveats if you choose to dive in: while the root isn't a lengthy process, as you'll see in the video after the break, there's still the ever-present risk of bricking the device should something go wrong. Having seen what can be done with the original Kindle Fire after a little tinkering, we're intrigued as to what happens with its more capable sequel.

Continue reading Kindle Fire HD 7-inch rooted in spite of Amazon, unstoppable force meets the unhackable object (video)

Filed under:

Kindle Fire HD 7-inch rooted in spite of Amazon, unstoppable force meets the unhackable object (video) originally appeared on Engadget on Wed, 19 Sep 2012 07:19:00 EDT. Please see our terms for use of feeds.

Permalink Android Police, DroidDog  |  sourceRootzWiki, XDA-Developers  | Email this | Comments