Google has brought a huge change to the Android monthly security bulletin


Have you noticed something strange in recent Android security bulletins (ASB)? The release of July did not indicate any security vulnerability for Pixel phones, while the September update had 119 of these faults. It was not a coincidence but a change made by Google on the monthly ASBs which are broadcast monthly. There are actually two published each month, and the one you know is that published publicly on the first Monday of each new month.

There is also a private ASB which is sent to manufacturers of telephones and companies that provide them with fleas. The latter is distributed 30 days before sending the public bulletin so that manufacturers and flea suppliers can test the fixes before being announced.

Google modifies the way he publishes the Android monthly security bulletin

Not all Android phones receive safety fixes each month. These models that do not (generally the budget and the mid -range Android phones) could receive them quarterly, twice a year or not have Android support. Consequently, these models may be exploited, and personal data, including the identification information used by an individual to open their applications, can be stolen and used to eliminate financial accounts. To help prevent this from happening, Google has made a change to the Android security bulletin because it implements a new version strategy called “risk -based system” (RBU).

Google is now publishing only information on “high -risk” vulnerabilities “monthly. Consequently, the majority of software fixes will be received on a quarterly basis. So, what does Google consider high-risk vulnerability? The company defines these crucial problems which must be treated immediately, including those which are actively exploited or are part of an operating chain. The latter is a series of multiple vulnerabilities linked by an attacker to help him reach a wider goal, something like taking control of the complete system of a phone.

Calling a “high -risk” software flaw in this way is different from that of “critical” or “high severity” vulnerabilities that appear in the ASB.

Manufacturers will benefit from the new Google security bulletin outlet

With the new ASB output plan, Telephone manufacturers will have less difficulty publishing updates each month. At the same time, this could allow them to release more frequent security fixes for certain handsets. Manufacturers will also be able to focus on the release of larger quarterly updates while limiting the monthly “high -risk” vulnerabilities to aforementioned.

With the new plan, we must expect to see monthly bulletins, like that of the Pixel in July, published without vulnerabilities to list, although two functional fixes have been included in this update. The functional fixes exterminate the bugs which prevent a functionality from functioning properly. A security patch eliminates a defect that creates a safety danger when exploited.

While Pixel users had no security corrections to manage according to the July Bulletin, the Samsung monthly report said that Samsung Mobile had corrected 17 Samsung vulnerabilities and exhibitions (SVE), as well as some problems corrected by Samsung Semiconductor.

What you need to know about this

In fact, most telephone owners are probably not thinking twice about the monthly security versions. Pixel enthusiasts are much more interested in the quarterly drop in pixel features than the monthly safety version. Functional fixes are also more expected than security fixes because they exterminate a bug that prevents you from doing something with your phone. Although the security fixes are obviously very important, the installation does not lead to a modification of the software that you can notice.

Even so, each time you receive a monthly, quarterly or even semi-annual security update, you must install it immediately. Faster, these updates are installed, earlier your Android phone is protected against attackers who seek to enter your device.

“Emblematic phones” arrives this fall!

Good news to all! In the past year, we have worked on one of our exciting projects and we are delighted to announce that it will be ready to go out in just a few months.

“Emblematic phones: Revolution at Your Pringertips” is an essential coffee table book for each head of technology that will take you on a trip to relive the largest technological revolution of the 21st century. For more details, simply follow the link below!

Learn more and register for early discounts here

Leave a Reply

Your email address will not be published. Required fields are marked *