Author Topic: Android VPN redirect vuln now spotted lurking in Kitkat 4.3 + 4.4  (Read 5315 times)

Offline maxbudin

  • BolehVPN Subscriber
  • Lieutenant
  • **
  • Posts: 107
In case its not been brought up yet, just a heads up if anyone is interested. Article is here for kit kat 4.4 http://www.theregister.co.uk/2014/01/28/android_vpn_vuln_also_in_kitkat_44/

and for kit kat 4.3 http://www.theregister.co.uk/2014/01/22/israeli_android_researchers_demo_vpn_vulnerability/

Offline Chris

  • BolehVPN Staff
  • Admiral
  • *****
  • Posts: 2200
  • Beneath a cobalt moon
Re: Android VPN redirect vuln now spotted lurking in Kitkat 4.3 + 4.4
« Reply #1 on: February 06, 2014, 11:38:27 AM »
A big flaw, but still one that relies on the user installing a malicious app. As long as you stick to the Play store and be very careful as to what you download, you should be fine. Same precautions you should take for any tech device really.

Offline maxbudin

  • BolehVPN Subscriber
  • Lieutenant
  • **
  • Posts: 107
Re: Android VPN redirect vuln now spotted lurking in Kitkat 4.3 + 4.4
« Reply #2 on: February 06, 2014, 01:13:18 PM »
Yes Chris, though innitially it was thought the VPN weaknesses were in apps such as Samsung Knox. Later on it became apparent the problem is with Android itself, not third party apps.  While Google is still addressing apps with malware in the playstore, compounded by how apps intrude/track personal info, they might still have to address Android VPN leaks as they have admitted.