Cybersecurity researcher Lydia Patcher says hackers should ‘try to do what they are going to do’ to avoid being caught by a patch.
The US-based researcher has uncovered vulnerabilities in a number of popular Android apps and patches in order to protect people from potential hacks.
“The main thing I am concerned about is the way that Android and Google (company) have developed their own security patches,” Patcher told Al Jazeera.
“They’ve created a very specific and limited set of vulnerabilities that can be used to hack Android.”
Patcher is a former researcher at security firm FireEye, who found that the company was deliberately keeping vulnerabilities to themselves.
“I have noticed that there are more vulnerabilities in the latest Android than there are in the previous versions of Android, which I have been saying for some time,” she said.
The latest version of Android is Android 4.4 KitKat, which has been available since August.”
If you can get a bug fixed that allows a hacker to exploit the vulnerability to get your phone to do something else, why not just fix it yourself?”
The latest version of Android is Android 4.4 KitKat, which has been available since August.
In addition to Android 4, which is available in more than 40 countries, Patcher has found a handful of vulnerabilities in Android’s open source code that allow users to access and exploit private data, and some of those are potentially dangerous.
Patcher said that the latest version would need to be patched in order not to allow the same vulnerabilities to be used by hackers, and it was important to avoid that.
Patchers research focused on Android’s security model, which focuses on security through obscurity.
“Google is basically saying to developers that there is no way for them to fix this bug because there is nothing that they can do to fix it,” she explained.
“It’s an absolute no-brainer to do exactly the same thing with other vulnerabilities.”
The vulnerability Patcher found in the last version of Google’s Android software, Android 4 KitKat is one of several security vulnerabilities that the researcher discovered, and Patcher believes that there could be thousands of other vulnerabilities.
She said that most Android devices do not have a patch for the vulnerabilities.
“Android is not really designed to be hacked,” Patchers said.
Android has become an industry leader in the development of security patches.”
The vulnerability in Android 4 is the same as the vulnerability in other versions of the software.”
Android has become an industry leader in the development of security patches.
Patterson, who is based in Los Angeles, said that she had not yet seen any of the flaws patched.
“There are bugs that can’t be fixed, because they’re just there to be exploited,” she added.
“They can’t ever be fixed.”
Patchers findings were made public in September, after the company posted a security bulletin to warn users that the vulnerabilities could be used against them.
The company’s software security team has released a patch, which Patchers says is far from perfect, but the patches have been available for more than three months.
“You can use them to exploit these vulnerabilities, but you can’t exploit the bug yourself,” she told Aljazeera.
So you are essentially stuck with the risk of using it.”