New Android attack: Google Voice Search attack

Source: Internet
Author: User

New Android attack: Google Voice Search attack

Researchers from the Chinese Emy of Hong Kong published a paper (PDF) on the website, introducing a novel method of Permission Bypass attack: Google Voice Search attack. Attackers can use VoicEmployer, a zero-Permission Android app, to activate Google Voice Search, a built-in Voice assistant module in the operating system, and play prepared audio files in the background, voice Search can recognize voice commands and perform corresponding operations. With this mechanism, attackers can call arbitrary phone numbers without any permission, forge text messages or emails, access private information, transmit sensitive data, and achieve remote control. Researchers believe that theoretically, any Android device with the built-in Google Services Framework may be affected by this attack.

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.