HTC klar til at stikke en prop i sikkerhedshullet

HTC har lavet en opdatering, der skal lukke sikkerhedsbristen i HTC-mobilerne. Opdateringen er sendt til test hos operatørerne.

HTC klar til at stikke en prop i sikkerhedshullet

I sidste uge blev det afsløret, at der er et massivt sikkerhedshul i HTC mobilerne.

Sikkerhedsbristen betyder, at applikationer, der blot beder om adgang til internet, kan få adgang til hele mobilens log – det vil blandt andet sige SMS’er, kendte netværk og GPS-postitioner.

HTC er nu klar med en besked til brugerne:

“HTC takes claims related to the security of our products very seriously. In our ongoing investigation into this recent claim, we have concluded that while this HTC software itself does no harm to customers’ data, there is a vulnerability that could potentially be exploited by a malicious third-party application. A third party malware app exploiting this or any other vulnerability would potentially be acting in violation of civil and criminal laws. So far, we have not learned of any customers being affected in this way and would like to prevent it by making sure all customers are aware of this potential vulnerability.

HTC is working very diligently to quickly release a security update that will resolve the issue on affected devices. Following a short testing period by our carrier partners, the patch will be sent over-the-air to customers, who will be notified to download and install it. We urge all users to install the update promptly. During this time, as always, we strongly urge customers to use caution when downloading, using, installing and updating applications from untrusted sources.”

HTC konkluderer kort sagt, at der er et sikkerhedshul, som kan give tredjeparts applikationer adgang til brugernes private oplysninger.

HTC skriver videre, at der arbejdes på en sikkerheds-update, der vil løse problemet. Opdateringen vil blive udsendt OTA efter en test-periode hos operatørerne.