News  Android
Monkey facepalm

If at first you don't succeed...

Google just rushed out a fix for the notorious Stagefright bug but in their haste appears to have missed something critical, leaving even "fixed" devices still open to attack. That's the finding from Exodus Intelligence who have detailed the code provided in the patch, along with the vulnerability which was missed.

Google rolled out their patch to 950 million devices this week but it looks like they'll have to do it all over again once they've wiped the egg from their face. Exodus said "Google employs a tremendously large security staff, so much so that many members dedicate time to audit other vendor’s software and hold them accountable to provide a code fix within a deadline period. If Google cannot demonstrate the ability to successfully remedy a disclosed vulnerability affecting their own customers then what hope do the rest of us have?"