Wednesday, September 16, 2015

Bypasssing Android Lock Feature.


                  Android has been used by millions of users and now the latest version yet to be released is the version #Android M and one of the feature that prevents the hackers from entering into the device is the lock. Recently a hacker revealed the way to bypass #Android lock.

                  Whatever smart device it may be it is secured with the PIN lock or Pattern lock or any Password lock to prevent the an unauthorized access to the device. The PIN or Pattern lock can be bypassed using the ADB earlier since it is saved in the local file.

                  Now a security researcher and a hacker revealed the method which is very simple and very less time consuming to bypass the Android Lock. To perform the hack the version vulnerable to the hack is #Android 5.0 and 5.1 (LMY47V).

                  The hack is named as #Magic Trick and it is assigned a vulnerability #CVE-2015-3860 "Elevation of Privilege Vulnerability in Lock Screen". 

                   To perform the magic trick only the following actions are required.

Get access to device and open Emergency Dialer
Type a long string and copy paste it until it reach the input limit 
Copy the text and open camera app accessible without unlocking
Drag Notification bar and  select Settings icon it will prompt to enter a password
Paste the long string copied earlier
Go to camera app click some photos simultaneously inputting the password string

                   That's all after some few seconds the home button on the bar will disappear and it is the indication of the camera app crashing. The camera app will crash in few seconds and the Home screen will be displayed with all its contents.

                    The patch has been released for the users from Google and it can be found here. 

P.S : The post is to create awareness and not to be misused.
               

No comments:

Post a Comment