Security researchers from Exodus Intelligence are warning that Google’s fix for the Stagefright vulnerability can be bypassed. “The public at large believes the current patch protects them when it in fact does not,” the company blogged. For its part, Google says that 90 percent of Android devices are not vulnerable to the bug.
“Stagefright is the early warning alert to a much bigger challenge,” said David Baker, security officer at Okta. “There isn’t a comprehensive update solution for Android, since there are so many device makers modifying the software.”
Exodus Intelligence added, “If Google cannot demonstrate the ability to successfully remedy a disclosed vulnerability affecting their own customers then what hope do the rest of us have?”