Everything iPhone, Windows Phone and Android.
  • About
  • Twitter
  • Feed
  • Facebook
  • Youtube
  • The Team
  • Podcast
  • Log in
Coolsmartphone
  • Forum
  • Android
  • iOS
  • Windows Phone
  • MWC 2013
  • Software
  • Hardware
  • Contact
Print Email Shortlink

Android is going to be a bit more secure with Jelly Bean

By James Pearce on July 17, 2012 in Android

ASLR is a security feature used in many operating systems. From Windows XP through to OSX or iOS6 and for a while Android has been avoiding using it. Android 4.0 Ice Cream Sandwich partially used it and now with the release of Android 4.1 Jelly Bean it uses it fully. Although it should be noted that the implementation still lags behind the security of the upcoming iOS6. But lets not get into that here.

You may be wondering what ASLR is. Well here is what Wikipedia defines it as.

Address space layout randomization (ASLR) is a computer security method which involves randomly arranging the positions of key data areas, usually including the base of the executable and position of libraries, heap, and stack, in a process’s address space.

Address space randomization hinders some types of security attacks by making it more difficult for an attacker to predict target addresses. For example, attackers trying to execute return-to-libc attacks must locate the code to be executed, while other attackers trying to execute shellcode injected on the stack have to find the stack first. In both cases, the related memory addresses are obscured from the attackers. These values have to be guessed, and a mistaken guess is not usually recoverable due to the application crashing.

So what does it all mean for the average user? Not much really, just that if you are lucky enough to either have a Jelly Bean device then great or if you plan to get a new device in the future, then you should think about a Jelly Bean device.

It all sounds a bit worrying as to why our devices running Gingerbread or Ice Cream Sandwich could be exploited. It is all down to what apps you install and where you get them from really.

So what do you do if you are using a device running Ginger Bread or Ice Cream Sandwich? Well first and foremost I would get into the habit of checking what permissions any apps you install need. I got my wife doing this recently and she regularly asks me “why does this game need access to all of my contacts”, my reply “don’t install it”.

So the only thing that remains is to sit and wait for some devices running Jelly Bean. Manufacturers still to this day release devices running Gingerbread and many of the current devices running Ice Cream Sandwich have no published upgrade schedule. Things like core level security updates really should be able to bypass all of the carrier stuff and all of the oem skins. This sort of stuff is actually important.

All I can say is that I’m glad I bought another Galaxy Nexus recently.

Sources

Wikipedia - The Unlockr - Threatpost

About James Pearce

I spend most of the day telling people to turn stuff off and back on again. Inbetween doing that I post news and reviews over here.

I am about to embark on a Windows Phone 8 and Windows RT self imposed restriction for a few months. Keep your eyes on the site for updates.

Share this:

  • Twitter
  • Facebook
  • Google +1
  • Reddit
  • More
  • Pinterest
  • Print
  • Tumblr
  • Email
  • StumbleUpon
  • LinkedIn
  • Pocket
  • Digg
androidjelly beanossecure
← Previous<.. Next →
  • Podcast
  • RSS Feed
  • Facebook
  • Twitter
  • Google+
  • YouTube

Recent Comments

Why don’t you want Windows Phone?

Latest reviews

Covert Low Profile flip case for Samsung Ativ S - Review

Covert Low Profile flip case for Samsung Ativ S - Review

May 20th, 2013

If, like me, you got yourself a bargain Samsung Ativ S Windows phone recently you'll know what a[...]

BlackBerry Q10 - Review

BlackBerry Q10 - Review

May 20th, 2013

I've had the BlackBerry Q10 for a couple of weeks now and I've grown to love like it quite a bit. Th[...]

Review - Sumo Omni

Review - Sumo Omni

May 20th, 2013

I'm sitting outside right now. I'm sitting in the sunshine on a beanbag. It's not something I do [...]

Cygnett SoundWave Bluetooth speaker with dock - Review

Cygnett SoundWave Bluetooth speaker with dock - Review

May 14th, 2013

The Cygnett SoundWave Bluetooth speaker is a compact mains or battery powered wireless sound sys[...]

Gemini JoyTab Duo 7 3G - Review

Gemini JoyTab Duo 7 3G - Review

May 13th, 2013

So, in the time after my original First Impressions post on the Gemini Devices JoyTab Duo 7 3G, a [...]

Samsung Galaxy S4 - Review

Samsung Galaxy S4 - Review

May 13th, 2013

It's fair to say that Samsung's success with the Galaxy S3 has been nothing short of astonishing.[...]

Latest posts

EE reset data for last weeks issues

EE reset data for last weeks issues

May 24th, 2013

EE have apologised for the network issues that had lots of customers voicing their opinions on socia[...]

My Choice Of Apps - Android Edition #3

My Choice Of Apps - Android Edition #3

May 24th, 2013

As with other members of the team I've been writing a choice of Apps piece and the reasons why. The[...]

HTC One Google Edition coming soon

HTC One Google Edition coming soon

May 24th, 2013

Where Samsung go, HTC will follow. In a remarkable change of direction, HTC will be releasing a 'G[...]

Huawei Ascend P6 leaks - updated with more colours

Huawei Ascend P6 leaks - updated with more colours

May 24th, 2013

At MWC we brought you hands on coverage of the  6.1 inch Huawei Ascend Mate plus a look at their new[...]

New Samsung Galaxy Young coming to the UK

New Samsung Galaxy Young coming to the UK

May 24th, 2013

There's already a Samsung Galaxy Y, aka the "Young" out there and it's a couple of years old now. [...]

Our friends

Shop for unique cell phone cases
Cell Phone
China Android Handy
MoDaCo
TracyAndMatt
  • Gears Blog

Copyright © 2013 Coolsmartphone.

loading Cancel
Post was not sent - check your email addresses!
Email check failed, please try again
Sorry, your blog cannot share posts by email.