YoVDO

Hacking Android Foreground Services Escalation Of Privileges

Offered By: nullcon via YouTube

Tags

nullcon Courses Privilege Escalation Courses Android Security Courses Vulnerability Research Courses

Course Description

Overview

Explore a conference talk on hacking Android foreground services and escalation of privileges. Delve into the background execution limitations introduced in Android Oreo and Pie, and learn how these restrictions affected app functionality. Discover the concept of foreground services and their intended purpose in maintaining user awareness. Examine a race condition bug found in foreground notification services and its implications for Android security. Follow the speaker's journey in bypassing Google's patch for this vulnerability, resulting in a $5,000 reward. Gain insights into the ongoing challenges of balancing app functionality with security measures in the Android ecosystem.

Syllabus

Hacking Android Foreground Services Escalation Of Privileges by Rony Das | Nullcon Goa 2022


Taught by

nullcon

Related Courses

Unearthing Malicious and Risky OpenSource Packages Using Packj
nullcon via YouTube
Pushing Security Left by Mutating Byte Code
nullcon via YouTube
The Faces of MacOS Malware - Detecting Anomalies in a Poisoned Apple
nullcon via YouTube
Contextomy - Let's Debug Together
nullcon via YouTube
Mind The Gap - The Linux Ecosystem Kernel Patch Gap
nullcon via YouTube