Monday, 21 November 2022 06:03

Hackers found a way to unlock your Android phone without your password. This is what to do

Rate this item
(0 votes)

Your phone’s lock screen is supposed to be a safeguard against the world (and accidental unlocks in your pocket). When it’s locked, your phone can’t be opened without either the passcode, a face scan, or a fingerprint. If you lose your phone or someone snatches it from you, you can rest assured they won’t be able to do anything with it. Except right now they can, thanks to a recently discovered vulnerability allowing anyone to bypass an Android device’s lock screen.

As reported by Bleeping Computer, cybersecurity researcher David Schütz discovered a way to unlock both a Google Pixel 6 and Pixel 5 without needing to know the passcode. It happened after his Pixel 6 ran out of charge, and after he incorrectly entered his PIN wrong three times. His SIM card was then locked, so he entered the PUK (Personal Unblocking Key) to restore it.

However, once the SIM was recovered, the Pixel asked him to scan his fingerprint. That shouldn’t happen, since Pixels (as well as most phones) require you to enter the passcode in order to unlock after a reboot. You shouldn’t have the option to use your fingerprint to unlock the phone until after one successful unlock with the passcode.

From there, Schütz realized there was a legitimate security flaw here. If an attacker inserts their own SIM into a target’s Android, then enters the wrong SIM PIN three times, they can enter their SIM’s PUK to be able to create a new SIM PIN. Once they do, they bypass the lock screen entirely and access the phone.

Schütz brought this flaw to Google’s attention back in June of this year, but it took the company five months to finally push a patch. Still, it’s good there is a patch: It’s not clear how long this vulnerability was actually floating around, potentially putting millions of Androids in jeopardy.

How to fix the latest lock screen security flaw on Android

If you have a phone running Android 10, 11, 12, or 13, you need to install the November 2022 security update in order to patch this vulnerability. If you already installed the patch, you’re good to go! But otherwise, install it ASAP.

To install a security patch on Android, head to Settings > System > System Update, then allow the OS to look for a new update. If there’s one available, you can download and install it. You can also check for security updates from Settings > Security > Google Security checkup.

 

Lifehacker

June 06, 2025

Nigeria now Africa’s top cement exporter, says Aliko Dangote

Nigeria has transformed from being the world’s second-largest cement importer to becoming Africa’s leading cement…
June 02, 2025

Afenifere blasts Tinubu: ‘Midterm report shows woeful failure, economic deforms, and rising despair’

The pan-Yoruba socio-political organization, Afenifere, has issued a scathing midterm assessment of President Bola Tinubu’s…
June 05, 2025

This is the process that lets managers get the best out of their team

Frans Van Loef What does it mean to be a manager? In today’s world, managers…
May 31, 2025

Tools made of whale bones reveal inventiveness of prehistoric people

Artifacts found at archeological sites in France and Spain along the Bay of Biscay shoreline…
June 06, 2025

Gunmen kill two policemen, abduct Chinese in Kwara

The Kwara State Police Command on Thursday confirmed the killing of two policemen and the…
June 06, 2025

What to know after Day 1198 of Russia-Ukraine war

WESTERN PERSPECTIVE Four killed in intense Russian air attack on Ukraine's capital Russia mounted an…
June 06, 2025

Common supplements and medications could cause liver damage, studies show

Melissa Rudy Arun Sanyal, M.D., director of the VCU Stravitz-Sanyal Institute for Liver Disease and…
May 13, 2025

Nigeria's Flying Eagles qualify for World Cup after dramatic win over Senegal

Nigeria's U-20 national football team, the Flying Eagles, have secured their place at the 2025…

NEWSSCROLL TEAM: 'Sina Kawonise: Publisher/Editor-in-Chief; Afolabi Ajibola: IT Manager;
Contact Us: [email protected] Tel/WhatsApp: +234 811 395 4049

Copyright © 2015 - 2025 NewsScroll. All rights reserved.