New OnePlus Watch 2 is different from the current one

0
[ad_1]

OnePlus has just announced a new OnePlus Watch 2 smartwatch, and it’s different from the current one. Confused? Well, we’re not surprised. Let’s take it one step at a time.

The new OnePlus Watch 2 is different from the current (global) model

OnePlus announced the Watch 2 already, for global markets, and we reviewed it. That watch never launched in the company’s homeland, however. Well, now it did, but it’s not the same watch that was announced for global markets.

You will immediately notice that this device looks different. Its design is closer to that of other smartwatches, without any frame protrusions on the right-hand side. That’s not the only difference, but it’s the most notable one.

A circular display is included, while the watch comes in two colors

This watch still has a circular display, while there are two physical buttons on the right-hand side, which have a good placement. The watch comes with a silicone strap in two colors, green and black. The green one is combined with a silver watch, while the black one is combined with a black OnePlus Watch 2.

This watch also has a different case than the global model. It has an aluminum alloy case compared to the stainless steel model that was launched globally. Most of its specs are similar, but there are some differences compared to the global model.

New OnePlus Watch 2 image China model 1

There is a 1.43-inch AMOLED display included here

This OnePlus Watch 2 has a 1.43-inch 466 x 466 AMOLED display with a default maximum brightness of 600 nits, while its peak brightness is 1,000 nits. The Snapdragon W5 and BES2700BP processors are used here

OnePlus also included 2GB of RAM on the inside and 32GB of storage. ColorOS Watch 6.0 skin comes pre-installed, and the watch is compatible with both Android (8+) and iOS (13+).

The new OnePlus Watch 2 supports over 100 workout modes and is 5 ATM rated

The company included over 100 workout modes on the watch, and it also features automatic workout detection for 6 workouts. There are a bunch of sensors included here: acceleration, gyroscope, geomagnetic, optical heart rate, blood oxygen, ambient light, and barometer.

The watch is 5 ATM rated, while a 500mAh battery is included here. The company says you can get up to 4 days of use in smart mode and 12 days in Power Saver Mode. VOOC magnetic charging is used here, and it can fully recharge the device in an hour.

Bluetooth 5.3 is supported here, while the watch does come with a speaker. The new OnePlus Watch 2 measures 47.6 x 46.6 x 12.1mm, and weighs 37 grams.

New OnePlus Watch 2 image China model 2


[ad_2]
Source link

Google Nest Cam & Doorbell blurry video quality to be fixed soon

0
[ad_1]

Google is already working on a fix for the blurry video issue that is affecting some Nest Cams and Doorbells. The problem occurs during livestreams and does not seem to have a solution on the user’s side. Affected people have been struggling with the annoying bug since the middle of this month.

According to reports, the image quality during livestreams is really poor on some devices. The very low video resolution in these conditions results in blurry or pixelated images. In general, this reduces the livestream feature’s usefulness by not being able to clearly distinguish what is happening outside your home. This could even be dangerous in emergency situations.

Google to fix the blurry video quality during Nest Cam and Doorbell livestreams

Nest Cams and Doorbells support livestreams from the Google Home app. This allows users to receive a real-time image directly on their phone or compatible device. So, the sudden worsening in image quality was causing frustration among users who could not find how to solve or mitigate it. Factors such as internet speed were not relevant. Plus, the video recordings maintained good quality, further denoting the difference with livestreams.

Fortunately, Google has acknowledged the bug and confirmed that the problem is not with the devices. Actually, the “blurry video” issue that is affecting some Nest Cams and Doorbells occurs on the server side. The company confirmed that they are already working on a fix. Google did not offer an ETA to get things back to normal. However, they say they are actively working on a solution to implement it “as soon as possible.”

Let’s hope that Google doesn’t take much longer to resolve the problem. Affected users have been struggling with the issue for a couple of weeks now. At least they can now be sure that their devices are not damaged.


[ad_2]
Source link

Google Chat and Sheets get significant improvements in latest updates

0
[ad_1]

Google updates some of its apps every week, and this time around two of the search giant’s most popular apps, Chat and Sheets, are getting some major improvements via updates. Although these improvements might not concern everyone, they feel like major achievements for both apps.

Let’s start with Google Chat, which has just received support for 500,000 members. Yes, you read it right. Spaces in Google Chat can have up to 500,000 members starting today.

This is especially important for very big organizations that want to make major announcements that concern every employee. Obviously, it will take some time to populate a space with so many members, so here is how long companies will have to wait for all (or most) of their employees to pop up in a Google Chat space:
  • 100 members: 10 seconds
  • 1,000 members: 1 minute
  • 150,000 members: 45 minutes
  • 500,000 members: 150 minutes

The upgrade to 500,000 members is an incredible milestone considering that last year Google increased the number of users organizations can add to a space from 8,000 to 50,000. The jump to half a million people is quite impressive.The updated version of Google Chat will be rolled out in waves starting on June 26, and it will take up to 15 days to be visible to everyone. This one is available to all Google Workspace customers.

Moving on to Sheets, Google managed to improve the calculation speed in this app by a lot. The Mountain View company claims that it had doubled the speed of calculation in Google Sheets on Google Chrome and Microsoft Edge browsers.

The latest Sheets update improves the speed of actions, including formulas, pivot tables, conditional formatting, and more, regardless of the file size.

The improvements are already available for all users, including Google Workspace customers, Workspace Individual Subscribers, and users with personal Google accounts.


[ad_2]
Source link

Qualcomm plans to make Android update process smoother

0
[ad_1]

Android smartphone manufacturers have been able to improve their software update process in the past few years. Many brands have increased the years of software update support they provide for their devices. Companies like Samsung and Google are now promising as many as seven years of Android update support on select phones. Now, the chipset maker Qualcomm is planning to make the Android update process smoother in the near future.

Qualcomm acknowledges that providing the latest Android updates is a complex process for OEMs

In a recent interview with Android Authority, Chris Patrick, Qualcomm’s SVP and General Manager of Handsets, said that Android updates are a significant concern for the company. Qualcomm acknowledges that it’s “very expensive and very complicated” for OEMs to get the latest Android and security updates to the consumers. The company has been working towards a solution to improve this situation.

Patrick mentioned that he doesn’t think Qualcomm is the main bottleneck for issues around Android updates. The chipset maker has been working towards a solution to make things easier for quite a while. “One of the things we’ve been working on for the past several years with Google and with the OEMs is to change the structure of inline code — to kind of change the machinery for how we do those updates”, he told the publication.

The code optimization to provide smoother Android updates has been in the process for years. A solution from the chipset maker will certainly make things easier for OEMs to provide the latest Android updates. We could see longer Android and security update support for devices with older Qualcomm chipsets in the future.

Qualcomm could make some announcements around the topic at the upcoming IFA or Snapdragon Summit

The Qualcomm executive didn’t provide many details about what’s to come. However, he did hint that the company will announce “something” around this topic “later this year”. There’s a possibility that we will see a solution from the brand regarding Android updates at the upcoming IFA in early September.

The source also suggests that the chipset maker could make some announcements at the annual Snapdragon Summit event in October. At the event, the company will also introduce its upcoming flagship chipset, the Snapdragon 8 Gen 4. It will be powering the latest high-end products from major OEMs like Samsung, Xiaomi, and OnePlus.


[ad_2]
Source link

OnePlus intros 12,000mAh power bank with 100W charging support

0
[ad_1]

During its press event in its homeland, OnePlus announced a bunch of products. It announced the OnePlus Ace 3 Pro, OnePlus Pad Pro, and a new version of the OnePlus Watch 2. In addition to that, OnePlus also announced the product we’ll talk about here, a 12,000mAh power bank with 100W charging support.

OnePlus announced a 12,000mAh power bank with 100W charging output

If you are on the move often, own a OnePlus device, and are away from the outlet frequently, this power bank is an ideal companion. It offers 12,000mAh of capacity and 100W SuperVOOC output.

So, it basically acts as a 100W wall adapter when charging a OnePlus device, which is great, needless to say. It can charge any supported device extremely fast. You should be able to charge the OnePlus 12 in less than half an hour, for example.

This power bank also supports 45W PD charging output for computers, laptops, and smartwatches. In order to charge the power bank itself, you can use 45W SuperVOOC adapters. With that adapter, the power bank will charge from 1 to 100% in only 90 minutes.

OnePlus 12 000mAh power bank image 1

There are 12 layers of safety protection included here

The device itself weighs 318 grams, and it’s equipped with 12 layers of safety protection. OnePlus includes a battery core temperature monitor, overcharge protection, and over-discharge protection. This power bank also complies with international air transportation standards.

When it comes to output, there are USB-A and Type-C ports on the thing. This power bank supports PD 2.0, PD 3.0, PPS, Quick Charge 2.0, Quick Charge 3.0, AFC, BC 1.2 and SuperVOOC standards.

Yes, you can use this power bank to charge more than one device at the same time. The OnePlus 12,000mAh power bank measures 149 x 72.8 x 19.1mm.

This device has a dual-tone design, as you can see in the provided image. It comes in Green Cloud and Silver Wing White colors. The device is priced at CNY299 ($41) in OnePlus’ homeland. Let’s hope that this thing will make its way to global markets.

OnePlus 12 000mAh power bank image 2


[ad_2]
Source link

FCC proposes rule for carriers to unlock phones within 60 days

0
[ad_1]

The Federal Communications Commission (FCC) wants to make it easier for US mobile consumers to unlock their carrier-locked phones. The agency has proposed a new rule that requires wireless carriers to unlock the devices within 60 days of activation. The rule is currently in the draft stage with the Commission set to discuss it at its July 18 Open Meeting.

FCC aims to make carriers unlock mobile phones within 60 days

Most popular smartphones are available in locked and unlocked variants in the US. Locked phones are sold by carriers and come with a software system locking them to the carrier’s network. The devices cannot connect to networks of other service providers. This means you cannot freely switch carriers, something you can do with an unlocked phone.

However, a locked phone is usually less expensive because the carrier you buy it from subsidizes the cost in the form of bill credit for your phone service. In exchange, you sign a contract to use its service for a certain period. Your phone will remain locked to the carrier until the contract is up or you pay off its full price. You then have the freedom to switch carriers.

While this sounds fairly reasonable, the current regulations for unlocking a phone aren’t quite clear or transparent. The process varies depending on the device and carrier. It also varies by the service type—prepaid or postpaid. Per the FCC, “a carrier may automatically unlock a device after certain conditions are met, send instructions to customers on how to unlock a device upon request, or complete the unlocking process in-store.”

Sometimes, consumers might have to pay an early termination fee to unlock their phones and move them to different carriers. The FCC aims to simplify this process by setting up “a clear and uniform set” of rules that will force all wireless service providers to unlock the phones they sell within 60 days of activation. FCC Chairwoman Jessica Rosenworcel announced the Notice of Proposed Rulemaking (NPRM) on Thursday.

The Commission will vote on the proposed rule next month

In FCC rulemaking, the NPRM is the stage where public feedback has not been solicited for a draft rule. The Commission will vote on the proposed expansion of phone unlocking requirements on July 18, 2024. Following the meeting, it will seek comments on the rule’s impact on the discounts and incentives carriers offer on locked phones. The FCC will also seek feedback on whether the updated unlocking requirements would benefit smaller providers and resellers.

“Real competition benefits from transparency and consistency,” said Chairwoman Rosenworcel. “That is why we are proposing clear, nationwide mobile phone unlocking rules. When you buy a phone, you should have the freedom to decide when to change service to the carrier you want and not have the device you own stuck by practices that prevent you from making that choice.”


[ad_2]
Source link

Apple could change the AI landscape, but not how we expect

0
[ad_1]

When Apple unveiled Apple Intelligence, it basically set a new standard for on-device AI. This is why the iPhone 16 series could be one of the best-selling iPhones ever. This upcoming phone could have a massive impact on the AI landscape, but it might not be because of Apple’s own models. Apple could revolutionize AI by how it uses other companies’ models. In fact, the iPhone 16 might be a game-changer for that very reason.

First, a little backstory

During WWDC 2024, Apple announced that it had partnered with OpenAI to integrate GPT-4o into iOS. This is for when the user requests something that Apple’s own on-device models can’t process. When it feels that it needs a little more power, it will ask your permission to reach out to GPT-4o.

While that’s the case, we also got the news that Apple was in talks with Google about integrating its AI as well. We originally thought that it wanted to integrate Gemini Nano into the system. However, it seems that Apple’s own models are plenty capable of handling things on their own. If Apple Intelligence needs to use Gemini for the same reason it uses GPT-4o, then we’re sure that it will reach out to Gemini 1.5 Pro models. At the time of writing this, Apple is most likely still in talks with Google if it isn’t already working on implementing it.

If Apple integrates Gemini into iOS, then it will give you the option to choose the model that you want to use. This is an interesting concept. We’re used to having the choice between different models but only from the same company. For example, if you’re a ChatGPT Plus subscriber, you’re able to choose between GPT-3.5, GPT-4 Turbo, and GPT-4o. The same thing goes for Google and its respective subscription services and models.

However, imagine choosing between Gemini and GPT-4o using the same platform.

Reaching out

As the reports go, Apple didn’t only tap Google and OpenAI for the role of the iPhone’s AI waiter. The company also talked to Meta to utilize its AI, according to The Wall Street Journal. We haven’t seen too much of what Meta’s AI can do, but it’s pretty capable.

As if that’s not enough, reports also point to Apple reaching out to Perplexity AI and Anthropic AI for much the same thing. The latter is the company that develops the Claude 3 model.

So, that’s five companies that Apple reached out to, and the jury is out on whether Apple will eventually partner with those companies to bring their AI over to the iPhone 16.

If so, then Apple could revolutionize the AI landscape

How so? Sure, we were all gawking at how impressive iOS 18 is with Apple’s own models. However, it’s not just about building a better model. Apple introduced Apple Intelligence as an overarching lifestyle improvement for iPhone users, not just a collection of models. This is why the company proudly claimed GPT-4o’s involvement as part of the Apple Intelligence experience. So, this is something that you’ll associate with the iPhone. This is important to remember.

It could solve an inevitable problem in the AI space

Every industry is populated with a myriad of companies trying to push their brands into every crevasse of our lives. With this comes brand identity, but it also brings massive fragmentation. There are things that you can get from some companies that you just don’t get from others.

You want to play Zelda: Tears of The Kingdom and God of War: Ragnarok; guess what, you need to buy two consoles. You want to watch all of your favorite Disney Movies and all of your favorite Nickelodeon shows; time to shell out for Disney+ and Paramount+. That’s just how the world works. It’s unavoidable for any industry.

Now, let’s talk about the AI industry. You love using Google’s Gemini, well there are several ways to access it. There are also separate ways to access ChatGPT. This is the same for Grok, Claude, Meta AI, etc. Each of these companies are developing their own models and implementing them into their own services. That’s just the natural progression of business. Each company is trying to offer the best service.

However, this is something that’s going to make using AI tools hard in the future. Each model is going to have its own strengths and something that no other model can do. When choosing what model to use, they’re going to have to either choose one, the other, or both. Also, some of these models have capabilities locked behind paywalls.

If you want the best from Gemini and ChatGPT, those are two separate $20/month subscriptions you’ll have to pay for. Other companies like Meta are looking for ways to monetize their AI as well.

The AI landscape is going to become a mess as people try to pick and choose which models offer the best experience across different services, subscriptions, sites, apps, and operating systems.

Wouldn’t it be great if there was something (or some phone) that could act as a central hub for AI models?

So, now we come back to Apple and iOS 18. Again, iOS 81 will tap OpenAI’s data centers if it needs to access more powerful AI. If Apple does cut a deal with Google, then you’ll have access to Gemini. This goes for any other companies that Apple has in its sights. What makes this significant is the fact that the iPhone could, ostensibly, be a hub to access different models to accomplish the same goals.

It could be the “Best of both worlds,” so to speak when selecting models. Rather than downloading ChatGPT, Gemini, and other apps just to have a choice, you’ll just need to choose from the available models.

If Apple does implement this sort of method, it might be onto something pretty big for the AI industry. It will also be big for Apple’s wallet. Right now, there’s no end-all-be-all way to access different models. You’ll have to use different apps, websites, operating systems, and browsers. That’s not to mention several subscription services. Apple Intelligence gives users access to GPT-4o, which is primarily a paid platform.

Imagine being able to access different forms of all on one platform. No jumping through hoops, dodging subscription fees, and avoiding extra apps. If this is the kind of thing that Apple is pushing, then it might just solve one of the biggest developing issues in the AI space.

But what about Apple’s models?

Here’s the thing: other companies are training their models to be the best and smartest on the market. This is to get more people and businesses using the models, sell access to the APIs, get subscription service fees, and feed those hungry investors. But, what’s the difference between Apple and other companies? Meta is primarily a social media and ad company, Google is mostly an ad company, Microsoft is a software company, OpenAI is an AI company, etc.

Apple is a HARDWARE company. Sure, it has software services, but it gains most of its money from the iPhone. None of the other companies make as much money from their physical tech as Apple does. So, there’s not as much pressure to craft the biggest and smartest AI model on the globe. Its priority is to build a smarter iPhone experience to sell more hardware.

Apple is working on its own models, yes, but it doesn’t need to stuff more parameters or tokens into them than Gemini or GPT-4o. It doesn’t need to revolutionize the AI industry. The models have already proven to give the iPhone a much-needed glow-up. They’ve already done their job.

So, there doesn’t seem to be too much pressure to wall off the iPhone from other models. The models that the company is using are powerful enough for on-device AI, and they’re only going to get better. However, the ability to reach out to other models seamlessly is also a part of Apple Intelligence; it’s something that you can’t get anywhere else.

Apple could bring some serious change

So, if Apple is able to combat the severe fragmentation throughout the AI landscape, then it could be ahead of the game. Creating a platform that gives you the choice between different models might be something that pushes AI forward.

While other companies push their models and services as the definitive AI model you should use, the iPhone could be the device to give you a truly integrated AI experience.

This is only speculation, of course. We’ll need to wait for this to play out. We also have to think about Apple as the company it’s always been. This is the company that sometimes has the most walled off walled garden. It took the threat of a multi-billion-dollar fine from the EU just for the company to open its precious App Store. Hell, don’t get us started on the whole green bubble vs. blue bubble argument!

So, there’s a chance that this could just be a pipe dream. However, if Apple doesn’t do it, another company, hopefully, will. AI is set to revolutionize….. humanity! If we want the dream of safe AI, it can’t be this huge profit-driven rat race between multi-billion and multi-trillion-dollar corporations.

Every company is delivering its own flavor of AI, and this means that there’s some serious fragmentation in the industry. Maybe giving people options and an integrated ecosystem to interact with models might be the thing to make AI just a bit better.


[ad_2]
Source link

TeamViewer Internal Systems Accessed by APT Hackers

0
[ad_1]

TeamViewer, a leading provider of remote access software, announced that attackers had compromised its internal corporate IT environment.

The company’s security team detected the breach, who noticed an “irregularity” in their internal systems, prompting an immediate response.

Swift Response and Investigation

Upon detecting the irregularity, TeamViewer activated its incident response procedures and enlisted external cybersecurity experts to investigate and implement remediation measures.

In a statement, TeamViewer emphasized that its corporate IT environment is “completely independent” from its product environment, assuring customers that there is no evidence the breach affected customer data or the TeamViewer product itself.

However, investigations are still ongoing. “Security is of utmost importance to us; it is deeply rooted in our DNA,” TeamViewer stated.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

“We value transparent communication and will continuously update the status of our investigations as new information becomes available.”

Marked as no-follow

Hidden Page and APT Group Involvement

Interestingly, TeamViewer seems to have deliberately hidden the page detailing the breach from Google searches, although the reason for this action remains unclear.

While the company has not provided specific details on the nature of the attack, NCC Group, a cybersecurity firm, alerted its customers about a “significant compromise of the TeamViewer remote access and support platform by an APT group.”

APT stands for Advanced Persistent Threat, typically referring to sophisticated, state-sponsored hacking groups.

NCC Group circulated the alert citing the “widespread usage” of TeamViewer, though the firm did not disclose its sources and said it is still investigating the incident.

Millions of users worldwide rely on TeamViewer for remote access and support.

The company asserts that its primary focus remains ensuring the integrity of its systems as it continues to investigate the full scope of the breach.

This incident underscores the ongoing cybersecurity challenges faced by major technology providers.

Users of TeamViewer are advised to monitor for any updates from the company regarding potential impacts or required actions.

As the investigation unfolds, TeamViewer’s commitment to transparency and security will be crucial in maintaining user trust and mitigating any potential fallout from this breach.

Stay in the loop with the latest in cybersecurity by following us on Linkedin and X for daily updates!


[ad_2]
Source link

Feast your eyes on Galaxy Z Fold 6 & Flip 6 renders in every color

0
[ad_1]

Yesterday, a flurry of leaks gave us a closer look at all of Samsung‘s upcoming products slated to debut at Unpacked on July 10. From the Galaxy Z Fold 6 and Galaxy Z Flip 6 to the Galaxy Watch 7, Galaxy Watch Ultra, and the Galaxy Buds 3 series, we saw official-looking renders of them all. A fresh leak shows us the two foldables in additional colors, leaving nothing to the imagination.

Galaxy Z Fold 6 and Flip 6 renders leaked in all colors

Leaks have already revealed that Samsung will release the Galaxy Z Fold 6 in three colors: Navy, Silver, and Pink. The Galaxy Z Flip 6 is said to come in four colors: Blue, Mint, Silver, and Yellow. These are the standard color options sold widely, with the company expected to offer additional colorways exclusively through its official website. Those may be Black and White for the Fold and Black, White, and Peach for the Flip.

If history is any indication, Samsung will come up with some fancy names for these shades. But that doesn’t change the appearance of the devices. Yesterday’s leak gave us visuals of the Galaxy Z Fold 6 in Silver and Navy colors and the Galaxy Z Flip 6 in Blue and Silver colors. Today, we have renders of both upcoming Samsung foldables in the remaining shades, i.e., the Fold in Pink and the Flip in Mint and Yellow.

Shared by Roland Quandt of Winfuture, the images were allegedly posted online by the Australian retailer Harvey Norman. The retailer seems to have taken down those premature product listings from its website, but not before the internet saved the images. In the gallery below, we can see the Galaxy Z Fold 6 in all three colors, with the Pink variant first up. We have attached the Galaxy Z Flip 6’s images at the end of the article.

The new foldables bring a minor redesign

At first glance, Samsung’s upcoming foldables don’t look different from their predecessors. But some minor design differences become apparent when you watch closely or put them side-by-side. The Galaxy Z Fold 6 is more boxy with sharper corners, like the Galaxy S24 Ultra. It is also slightly shorter and wider than the Fold 5. Rumors say Samsung will offer a titanium frame on the new book-style foldable.

The Galaxy Z Flip 6’s design changes aren’t as apparent. However, it might end up getting more notable hardware upgrades. We are expecting a bigger battery, a newer primary rear camera, more RAM, and other upgrades. If leaks are accurate, none of this is changing on the Fold. Thankfully, it won’t be long before Samsung takes wraps off the duo. The Unpacked event on July 10 will take place in Paris, the host city of the Summer Olympics 2024.


[ad_2]
Source link

Snowblind Abuses Android Seccomp Sandbox To Bypass Security Mechanisms

0
[ad_1]

A new Android banking trojan named Snowblind was discovered that exploits the Linux kernel feature seccomp, traditionally used for security, which installs a seccomp filter to intercept system calls and bypasses anti-tampering mechanisms in apps, even those with strong obfuscation and integrity checks. 

The novel attack vector allows the malware to steal login credentials, bypass 2FA, and exfiltrate data, making it highly versatile and dangerous, as it is believed that this technique has the potential to be used in many different ways to compromise apps. 

Android malware traditionally exploits accessibility services to steal user input or control applications, but apps can now detect malicious accessibility services, prompting attackers to use repackaging attacks to bypass detection. 

Working of Snowblind

Snowblind, a new malware, leverages seccomp, a Linux kernel security feature, to create a more sophisticated repackaging attack.

Scan Your Business Email Inbox to Find Advanced Email Threats - Try AI-Powered Free Threat Scan

Unlike FjordPhantom, which uses virtualization, Snowblind injects a native library with a seccomp filter before the app’s anti-tampering code runs, which redirects system calls, making the app unable to detect tampering and allowing malicious accessibility services to operate undetected.  

Seccomp is a Linux kernel functionality that allows user processes to define policies for system calls and acts as a sandboxing mechanism to reduce attack surfaces.

Introduced with two modes, strict mode only allows limited system calls, while seccomp-bpf offers fine-grained control through Berkeley Packet Filters. 

While traditionally fragmented across device manufacturers’ custom kernels, seccomp gained traction in Android 8 (Oreo), where Google implemented seccomp in Zygote to restrict apps’ system calls and added tests to the CTS (Compatibility Test Suite) to ensure broader adoption, which suggests that the seccomp-bpf is likely available on most devices running Android 8 and later, potentially even on earlier versions. 

Seccomp-bpf is a Linux kernel feature that allows processes to restrict the system calls they can make, which can be used to improve security by preventing processes from making unauthorized system calls. 

struct is defined

To use seccomp-bpf, a developer first defines a BPF (Berkeley Packet Filter) program that specifies which system calls are allowed, which can be based on the system call number, the arguments to the system call, or the calling process.

Once the BPF program is defined, it is applied to the process using the prctl() system call. 

Putting everything together

According to Promon, the prctl() system call with the PR_SET_SECCOMP option allows the process to install a seccomp filter, which is a pointer to a BPF program that defines which system calls are allowed. 

When a process tries to make a system call, the kernel first checks the seccomp filter, and if the filter allows the system call, the kernel makes the system call.

The kernel returns an error to the process if the filter does not allow the system call.

example of doing on arm64

Apps have adopted countermeasures like implementing their own system calls and obfuscation.

Snowblind injects a native library that installs a seccomp filter, allowing all system calls except open(). 

When the targeted anti-tampering library tries to open a file, the filter triggers a SIGSYS signal.

A custom signal handler injects the original app’s file path into the open() call before it’s re-executed, effectively bypassing the anti-tampering check.

Stay in the loop with the latest cybersecurity by following us on Linkedin and X for daily updates!


[ad_2]
Source link