The Indian Computer Emergency Response Team (CERT-In) has issued a high-risk security advisory concerning multiple vulnerabilities discovered across Android versions 12, 12L, 13, 14, and 15. The vulnerabilities could potentially enable unauthorized access to sensitive data, elevated system privileges, arbitrary code execution, and system crashes. The advisory comes as Google continues to strengthen its Android security infrastructure, following recent major security enhancements that blocked over 2.36 million malicious apps in 2024.
The identified security flaws affect various Android components, including the Framework, Platform, System, Conscrypt component, Kernel, Arm components, Imagination Technologies, MediaTek components, Unisoc components, and Qualcomm components. One vulnerability, identified as CVE-2024-53104, is currently being actively exploited in the wild. The development is particularly significant for India’s mobile security landscape, where authorities have recently intensified efforts to protect mobile users through initiatives such as the verification of suspicious mobile connections.
“Multiple vulnerabilities have been reported in Android which could be exploited by an attacker to obtain sensitive information, gain elevated privileges, execute arbitrary code or cause denial of service (DoS) condition on the targeted system,” CERT-In researchers reported.
To mitigate these security risks, CERT-In has outlined several recommended security practices for users. These include promptly installing security updates as they become available through the Android Security Bulletin, downloading applications exclusively from the Google Play Store, enabling Google Play Protect, reviewing and managing app permissions, exercising caution with suspicious links, and maintaining regular data backups. Google Play Protect, recently enhanced with automated security features, serves as a crucial first line of defense against malicious applications and security threats.
The advisory emerges during a period of evolving digital security challenges where artificial intelligence-driven cyber threats are becoming more prevalent. While sophisticated attacks targeting networks and smartphones continue to emerge, individual user vigilance remains a critical factor in maintaining device security. The development is part of broader efforts in India to strengthen digital security, including recent initiatives by the Reserve Bank of India to enhance digital banking security.
Sources: Times Now News, Times of India, The UNN
Follow Us