Re: [id-android] Wti :New RAMpage attack affects all Android phones released since 2012

2018-07-02 Terurut Topik Jim
Pake Android jadul yang rilis sebelum 2012, RAM kurang dari 2GB.

Mungkin aman dari RAMpage, tapi dihajar sama exploit yang lain.

-- 
===
Install  #MyTelkomsel Apps Terbaru dari Play Store
https://play.google.com/store/apps/details?id=com.telkomsel.telkomselcm

--
Kontak Admin, Twitter  @agushamonangan
---
FB Groups :  https://www.facebook.com/groups/android.or.id

Aturan Umum  ID-ANDROID >> goo.gl/mL1mBT

==
--- 
Anda menerima pesan ini karena Anda berlangganan grup "[id-android] Indonesian 
Android Community" dari Google Grup.
Untuk berhenti berlangganan dan berhenti menerima email dari grup ini, kirim 
email ke id-android+unsubscr...@googlegroups.com.
Kunjungi grup ini di https://groups.google.com/group/id-android.


Re: [id-android] Wti :New RAMpage attack affects all Android phones released since 2012

2018-06-29 Terurut Topik Akbar Mia
Ga dijelaskan soal ciri2 serangan dan/atau cara menghindarinya ya?


regards

Akbar Mia
@ruhbanullail

» sent from sexy slim yet powerful OnePlus 3T «

On Fri, Jun 29, 2018, 13:39 Defriando Riza  wrote:

> Fyi..
> RAMpage can access passwords, photos, documents, and more.
>
> There's a new security vulnerability, boys and girls. It's called RAMpage
> and is the latest type of Rowhammer attack to hit the scene.
>
> 
>
> RAMpage was discovered by a group of eight academics across three
> different universities and the official research paper was published on
> June 28, 2018. It reads as follows:
>
> RAMpage breaks the most fundamental isolation between user applications
> and the operating system. While apps are typically not permitted to read
> data from other apps, a malicious program can craft a RAMpage exploit to
> get administrative control and get hold of secrets stored in the device.
>
> As for what kind of secrets RAMpage could access, the paper notes that
> "this might include your passwords stored in a password manager or browser,
> your personal photos, emails, instant messages and even business-critical
> documents."
>
> RAMpage targets the ION subsystem in Android which is a memory allocation
> driver that was first launched by Google alongside Android 4.0 Ice Cream
> Sandwich. However, even though Android's the focus of the attack right now,
> it's expected that RAMpage could also impact iOS devices, desktops, and
> more.
>
> Because RAMpage targets ION, gadgets that use LPDDR2/3/4 RAM are all
> impacted. In other words, if your Android phone was released during or
> after 2012, it's vulnerable to the attack.
>
> The research going into RAMpage is still quite new, but now that a
> spotlight is being placed on it, hopefully we'll see Google and other OEMs
> do their part to get devices patched up for users around the globe.
>
> Read through the full research paper here
>
> Read full article at
> https://www.androidcentral.com/rampage-attack-discovered
>
> Not lapan
>
> --
> ===
> Install #MyTelkomsel Apps Terbaru dari Play Store
> https://play.google.com/store/apps/details?id=com.telkomsel.telkomselcm
>
> --
> Kontak Admin, Twitter @agushamonangan
> ---
> FB Groups : https://www.facebook.com/groups/android.or.id
>
> Aturan Umum ID-ANDROID >> goo.gl/mL1mBT
>
> ==
> ---
> Anda menerima pesan ini karena berlangganan grup "[id-android] Indonesian
> Android Community" di Google Grup.
> Untuk berhenti berlangganan dan berhenti menerima email dari grup ini,
> kirim email ke id-android+unsubscr...@googlegroups.com.
> Kunjungi grup ini di https://groups.google.com/group/id-android.
>

-- 
===
Install  #MyTelkomsel Apps Terbaru dari Play Store
https://play.google.com/store/apps/details?id=com.telkomsel.telkomselcm

--
Kontak Admin, Twitter  @agushamonangan
---
FB Groups :  https://www.facebook.com/groups/android.or.id

Aturan Umum  ID-ANDROID >> goo.gl/mL1mBT

==
--- 
Anda menerima pesan ini karena Anda berlangganan grup "[id-android] Indonesian 
Android Community" dari Google Grup.
Untuk berhenti berlangganan dan berhenti menerima email dari grup ini, kirim 
email ke id-android+unsubscr...@googlegroups.com.
Kunjungi grup ini di https://groups.google.com/group/id-android.


[id-android] Wti :New RAMpage attack affects all Android phones released since 2012

2018-06-29 Terurut Topik Defriando Riza
Fyi..
RAMpage can access passwords, photos, documents, and more.

There's a new security vulnerability, boys and girls. It's called RAMpage
and is the latest type of Rowhammer attack to hit the scene.



RAMpage was discovered by a group of eight academics across three different
universities and the official research paper was published on June 28,
2018. It reads as follows:

RAMpage breaks the most fundamental isolation between user applications and
the operating system. While apps are typically not permitted to read data
from other apps, a malicious program can craft a RAMpage exploit to get
administrative control and get hold of secrets stored in the device.

As for what kind of secrets RAMpage could access, the paper notes that
"this might include your passwords stored in a password manager or browser,
your personal photos, emails, instant messages and even business-critical
documents."

RAMpage targets the ION subsystem in Android which is a memory allocation
driver that was first launched by Google alongside Android 4.0 Ice Cream
Sandwich. However, even though Android's the focus of the attack right now,
it's expected that RAMpage could also impact iOS devices, desktops, and
more.

Because RAMpage targets ION, gadgets that use LPDDR2/3/4 RAM are all
impacted. In other words, if your Android phone was released during or
after 2012, it's vulnerable to the attack.

The research going into RAMpage is still quite new, but now that a
spotlight is being placed on it, hopefully we'll see Google and other OEMs
do their part to get devices patched up for users around the globe.

Read through the full research paper here

Read full article at
https://www.androidcentral.com/rampage-attack-discovered

Not lapan

-- 
===
Install  #MyTelkomsel Apps Terbaru dari Play Store
https://play.google.com/store/apps/details?id=com.telkomsel.telkomselcm

--
Kontak Admin, Twitter  @agushamonangan
---
FB Groups :  https://www.facebook.com/groups/android.or.id

Aturan Umum  ID-ANDROID >> goo.gl/mL1mBT

==
--- 
Anda menerima pesan ini karena Anda berlangganan grup "[id-android] Indonesian 
Android Community" dari Google Grup.
Untuk berhenti berlangganan dan berhenti menerima email dari grup ini, kirim 
email ke id-android+unsubscr...@googlegroups.com.
Kunjungi grup ini di https://groups.google.com/group/id-android.