150M Android Apps Still Susceptible to Heartbleed

Heartbleed has been an interesting topic of discussion for the past few weeks. Just last week, a 19-year-old Canadian was arrested for allegedly hacking into the Canada Revenue Agency (CRA) portal by using Heartbleed.
 
Word has now surfaced that Heartbleed may be ready to cause a significant problem for Android users. Reports indicate that 150 million Android apps are vulnerable to Heartbleed. Security researchers say that while there are 17 Android apps that are able to scan for Heartbleed, at least six of that number use methods of scanning that are insufficient.
 
The findings came from FireEye researchers Yulong Zhang, Hui Xue and Tao Wei. The researchers wrote, “For the Android platform, we find that roughly 150M downloads of Android apps contain OpenSSL libraries vulnerable to Heartbleed.”
 
Some versions of Android aren’t vulnerable to Heartbleed, including Jelly Bean 4.1 and 4.1.1, since they don’t use OpenSSL or use it in a way where the flawed features susceptible to Heartbleed are disabled by default.
 
Most of the apps that are vulnerable are games according to the researchers.
 
On the plus side, the number of apps vulnerable to Heartbleed has declined according to the researchers since April 10 when 220 million were estimated to be vulnerable.

Recent Posts

AMD Dual-Core Optimization Utility Available

Improving dual-core compatibility for gaming

5.7″ ZTE ZMAX “Phablet” Coming to T-Mobile Sept 24 for $252

ZMAX will come with a Snapdragon 400 processor and 720p display

100 Northern California Households to Receive Plug-in Priuses

UC Davis dares to go where Toyota won't with the Prius

Apple on Microsoft Ads: PCs Are “No Bargain”, Macs Are “Cool”

An Apple spokesperson fires back over Microsoft's latest commercials

Update: 13.3″ Dell XPS m1330 Notebook Details Leaked

Engadget gets the scoop on Dell's latest "ultra-portable" notebook