15 Aug '13, 5pm

Concern mounts as Google confirms Android cryptographic vulnerability

Concern mounts as Google confirms Android cryptographic vulnerability

Google has confirmed reports of a weakness in Android 's Java Cryptography Architecture (JCA) that has left bitcoin wallets generated on Android devices vulnerable to theft. The issue came to light last weekend, with reports that around $5,700 worth of the bitcoin cryptocurrency had been stolen as a result of the vulnerability on Android. "We have now determined that applications which use the Java Cryptography Architecture (JCA) for key generation, signing, or random number generation may not receive cryptographically strong values on Android devices due to improper initialization of the underlying PRNG," explained Android security engineer Alex Klyubin in a post on Google's Android developers blog . "Applications that directly invoke the system-provided OpenSSL PRNG without explicit initialization on Android are also affected." The Bitcoin Foundation, which oversees the ...

Full article: http://www.theguardian.com/technology/2013/aug/15/google-...

Tweets

Google confirms Bitcoin-theft vulnerability in ...

zdnet.com 15 Aug '13, 6am

Google has verified that a vulnerability that existed within Android allowed for the reported theft of up to 55 bitcoins o...

Google confirms Bitcoin-theft vulnerability in Android

Google confirms Bitcoin-theft vulnerability in ...

linuxtoday.com 16 Aug '13, 6am

Google confirms Bitcoin-theft vulnerability in Android Aug 15, 2013, 19:00 (0 Talkback[s] ) Tweet Google has verified that...

Google confirms Android flaw that led to Bitcoi...

news.cnet.com 15 Aug '13, 2am

Google has confirmed a flaw in Android's operating system, which could make Bitcoin digital wallets vulnerable to theft. A...

Google confirms Android flaw that led to Bitcoi...

news.cnet.com 15 Aug '13, 2am

Google has confirmed a flaw in Android's operating system, which could make Bitcoin digital wallets vulnerable to theft. A...

Google confirms Android flaw that led to Bitcoi...

news.cnet.com 15 Aug '13, 2am

Google has confirmed a flaw in Android's operating system, which could make Bitcoin digital wallets vulnerable to theft. A...

Google confirms critical Android crypto flaw used in $5,700 Bitcoin heist

Google confirms critical Android crypto flaw us...

arstechnica.com 15 Aug '13, 1am

Google developers have confirmed a cryptographic vulnerability in the Android operating system that researchers say could ...

Google responds to Bitcoin vulnerability disclosure, fix coming soon

Google responds to Bitcoin vulnerability disclo...

androidcommunity.com 15 Aug '13, 3am

Early this week, Bitcoin made an announcement that disclosed a security vulnerability on the Android platform that lead to...

Google patches Android after Bitcoin wallet issue

pcworld.com 15 Aug '13, 4am

Google is distributing patches for a cryptography flaw in Android that may affect hundreds of thousands of applications. T...

Google Releases Android Patches After Bitcoin T...

securityweek.com 15 Aug '13, 5pm

The issue came to light after users of a Bitcoin forum reported Saturday their bitcoins had been stolen. According to Bitc...

Google patches Android after Bitcoin wallet issue

networkworld.com 15 Aug '13, 11am

IDG News Service - Google is distributing patches for a cryptography flaw in Android that may affect hundreds of thousands...

Google patches Android after Bitcoin wallet iss...

pcworld.com 15 Aug '13, 4am

Google is distributing patches for a cryptography flaw in Android that may affect hundreds of thousands of applications. T...

Google Maps Adds Location Sharing After Google ...

seroundtable.com 15 Aug '13, 12pm

Google quietly announced on Google+ that they have added "location sharing" features to Google+ for Android. This was expe...

CyanogenMod 10.2 Nightlies Available, Android B...

xda-developers.com 16 Aug '13, 6pm

CyanogenMod 10.2 nightlies are now available for various devices. That and more are covered by Jordan, as he reviews all t...

Google Admits Bitcoin Thieves Exploited Android...

it.slashdot.org 15 Aug '13, 5pm

This certainly affects Bitcoin the most, but a random number generator that actually produces the same "random" numbers is...

Google bestätigt unsichere Bitcoin-Geldbörsen für Android: Der Fehler liegt im Zufallszahlengenerator von Andr...

Google bestätigt unsichere Bitcoin-Geldbörsen f...

zdnet.de 15 Aug '13, 3pm

Google hat eine Schwachstelle im Zufallszahlengenerator von Android bestätigt, aufgrund derer Diebstähle der virtuellen Wä...