Twitter finds security vulnerability in Android OS

The vulnerability could potentially be exploited by malicious apps installed on users’ devices, which work around Android’s system permissions.

August 06, 2020 06:45 pm | Updated 07:05 pm IST

(Subscribe to our Today's Cache newsletter for a quick snapshot of top 5 tech stories. Click here to subscribe for free.)

Twitter on Wednesday said it discovered a vulnerability in Twitter for Android, which could allow an attacker to access to Direct Messages.

The micro-blogging platform said the vulnerability was related to an underlying Android OS security issue, affecting Android OS versions 8 and 9. The vulnerability could potentially be exploited by malicious apps installed on users’ devices, which work around Android’s system permissions.

“We don’t have evidence that this vulnerability was exploited by attackers,” Twitter said in a blog post.

The company also confirmed that it is not completely sure whether there was any breach due to this vulnerability.

To safeguard its users, Twitter has updated it Android app and restricted access to in-app data for external applications.

The company said the vulnerability was fixed, and that it affects only 4% of all Twitter for Android users. The remaining 96% already have a security patch that protects them.

Twitter also recommends all Android users to update their app to the latest version to keep their data safe. Twitter users on iOS and Twitter.com have not been impacted by this issue.

0 / 0
Sign in to unlock member-only benefits!
  • Access 10 free stories every month
  • Save stories to read later
  • Access to comment on every story
  • Sign-up/manage your newsletter subscriptions with a single click
  • Get notified by email for early access to discounts & offers on our products
Sign in

Comments

Comments have to be in English, and in full sentences. They cannot be abusive or personal. Please abide by our community guidelines for posting your comments.

We have migrated to a new commenting platform. If you are already a registered user of The Hindu and logged in, you may continue to engage with our articles. If you do not have an account please register and login to post comments. Users can access their older comments by logging into their accounts on Vuukle.