Live data from Hacker News

Hackers can pwn your Android in 10 seconds, if you use Bing App in Starbucks

blog.trustlook.com

1–10 of 34 posts

Re: Hackers can pwn your Android in 10 seconds, if you use Bing App in Starbucks

#4
Sounds like very dangerous attack and not very difficult to implement.

DNS hijacking:

1. Quicker DNS response than router to pollute the Android's DNS

2. Rouge AP that pretend to be common free public wifi like "att", "starbucks", "cablewifi" or "Free Public WiFi"

3. De-authenticate valid AP connections and force user to try rouge WIFI

MITM attack: 1. ARP spoofing

Re: Hackers can pwn your Android in 10 seconds, if you use Bing App in Starbucks

#5

Sounds like very dangerous attack and not very difficult to implement. DNS hijacking: 1. Quicker DNS response than router to pollute the Android's DNS 2. Rouge AP that pretend to be common free public wifi like "att", "starbucks", "cablewifi" or "Free Public WiFi" 3. De-authenticate valid AP connections and force user to try rouge WIFI MITM attack: 1. ARP spoofing

Correct ;-)

Re: Hackers can pwn your Android in 10 seconds, if you use Bing App in Starbucks

#10

Sounds like very dangerous attack and not very difficult to implement. DNS hijacking: 1. Quicker DNS response than router to pollute the Android's DNS 2. Rouge AP that pretend to be common free public wifi like "att", "starbucks", "cablewifi" or "Free Public WiFi" 3. De-authenticate valid AP connections and force user to try rouge WIFI MITM attack: 1. ARP spoofing

Correct ;-)

That's a universal network attack though, how is it an exclusive vulnerability to this app?
Post reply on HN