3 security risks from Android motion sensors and how to stay safe

A surprising discovery of the security flaw is the smartphone motion sensor embedded in their hardware.

Even if you are very careful about security when using phones and other devices, there are risks that you do not realize. Security researchers regularly find new threats that allow malicious agents to access a user's personal data.

An unexpected discovery of security holes from motion sensors in smartphones embedded in their hardware. These sensors are designed to detect when the phone is moving and in use. But they can be misused.

The app collects sounds from your motion sensor

3 security risks from Android motion sensors and how to stay safe
Application that collects sounds from your motion sensor

Security researchers have recently demonstrated a scary flaw in Android phones. This attack, called Spearphone, could collect data from speakers. Therefore, it has the ability to eavesdrop on conversations when the phone is placed nearby. It uses the accelerometer motion sensor, to measure acceleration, tilt or rotation of the device. Location apps like Google Maps use the accelerometer to determine your location.

Spearphone works by turning this component into a microphone. The accelerometer is placed on the same plane as the phone speaker, allowing it to capture echoes generated by the speech. When someone uses their phone in speaker activation mode or interacts with a smartphone assistant like Google Assistant , the accelerometer can record the echo of the voice. The attacker can then forward the logs to their server.

Through arXiv, researchers discovered the flaw that demonstrated how it works by creating a malicious Android application. They then tested the app on devices including LG G3, Samsung Galaxy S6 and Samsung Galaxy Note 4. It can record speech using the accelerometer, send audio recordings to. servers that researchers control. Then automatically analyze the record by machine learning software.

Using the data collected in this way, the researchers were able to determine the speaker's gender in 90% of cases and accurately identify the speaker 80% of the time.

The app uses motion sensor data to avoid being detected

According to a report by Trend Micro, a group of different security researchers have discovered two Android apps that do this. These are Currency Converter and BatterySaverMobi , which appear as useful tools to convert currencies and track your phone's battery. But in reality, they contain a banking malware called Anubis , which steals credit card data and online banking credentials.

These applications took advantage of motion sensors to evade detection. When security researchers search for malware, they often run tests on a virtual operating system stored on a computer. This means that the motion sensors do not sense any movement during the test, but when users install an application on their mobile phone, they usually hold their phone with them. Obviously, this creates a lot of movement that the sensor receives.

Malicious applications check for vibration using motion sensors. If motion is not detected, they understand that the application is being tested and do not deploy any malicious code. Therefore, security researchers will not find anything suspicious. But when a user installs an application and one of the above and starts moving around, it will turn on malware and may start stealing your data.

The app uses motion sensor data to get your fingerprints

3 security risks from Android motion sensors and how to stay safe
The application uses motion sensor data to get your fingerprints

Another security issue you've probably heard of is browser fingerprinting. That's when data from your computer and browser is used to identify and track yourself. For example, it may work by viewing the different browser extensions you have installed and the fonts you use on your computer. This data can be used to build a unique picture of users and follow them on the Internet.

Both iOS and Android devices can face security risks from using motion sensors. Using a technique called SensorID, it can create fingerprints using the gyroscope and magnetometer sensor data from your phone. These sensors are calibrated in a unique way for each user, meaning they can rely on them to identify you. If apps or websites have access to a user's motion sensor, they can track when they use the Internet.

This technique works even when you take security precautions, such as using a VPN or using another browser. More frightening, it still exists after users perform a factory reset on the phone. The reason is that the calibration fingerprint of your motion sensor never changes. According to the researchers, this is a fast attack, taking less than 1 second to create fingerprints.

How to protect yourself from applications that misuse motion sensor data

These attacks are very hard to counter. However, there are some steps you can take to protect yourself from the security risks of abusing motion sensors on your phone.

See the necessary permissions before installing a new application

3 security risks from Android motion sensors and how to stay safe
Always view permissions before installing applications

First, be careful when granting permission to an application. When you install a new app from Google Play , it asks the user for permission to use various functions on the phone. For example the camera application will require access to the mobile camera.

Many users agree to allow permissions without even realizing and this is at a very high risk of security risks. Next time you install a new app or game on your phone, check what permissions it requires. If it requires permission to use your phone's motion sensor, ask yourself what it needs that permission for. If there is no good reason for an application to need access to it, do not install it.

Protect your phone speaker

Secondly, if you are really worried about the motion sensor being abused to eavesdrop on your conversations, users can perform many direct actions such as adding anti-vibration material around the phone speakers to prevents the motion sensor from capturing the echo. Also, avoid leaving the phone on a flat, hard surface like a table when using the speaker. This will prevent the accelerometer from obtaining sound information.

Always update the operating system for the phone

To protect against fingerprint security risks, it is best to ensure the phone operating system is always up to date, as this issue has been resolved in operating systems such as iOS 12.2 . Google has also been aware of the problem and is working hard to update the Android system to protect users.

Always be vigilant and protect your information by using your smartphone intelligently. Hope this article will be helpful to help you use your phone safer and more secure!

Sign up and earn $1000 a day ⋙

Leave a Comment

How to turn on NFC on iPhone easily and quickly

How to turn on NFC on iPhone easily and quickly

Near Field Communication is a wireless technology that allows devices to exchange data when they are in close proximity to each other, typically within a few centimeters.

Adaptive Power and Low Power: Which iPhone battery saving mode should you use?

Adaptive Power and Low Power: Which iPhone battery saving mode should you use?

Apple introduced Adaptive Power, which works alongside Low Power Mode. Both extend iPhone battery life, but they work in very different ways.

Youre Missing Out on Your Phone Cameras Potential: This Free App Will Change That!

Youre Missing Out on Your Phone Cameras Potential: This Free App Will Change That!

Samsung's camera app works well out of the box, but Camera Assistant adds new features that you wish were built in from the start.

Top 21 ADB Commands Android Users Should Know

Top 21 ADB Commands Android Users Should Know

Android Debug Bridge (ADB) is a powerful and versatile tool that allows you to do many things like find logs, install and uninstall apps, transfer files, root and flash custom ROMs, create device backups.

Instructions for making quick calls on iPhone are very simple

Instructions for making quick calls on iPhone are very simple

If you frequently need to contact someone, you can set up speed calling on your iPhone, with a few simple steps.

Instructions for rotating iPhone screen on all models

Instructions for rotating iPhone screen on all models

Rotating the screen horizontally on iPhone helps you watch movies or Netflix, view PDFs, play games,... more conveniently and have a better experience.

How to search images with Google Images on your phone

How to search images with Google Images on your phone

Reverse image search on iPhone is very simple when you can use the browser on the device, or use some 3rd party applications for more search options.

Tricks to help you use Chrome on Android effectively that you may not know

Tricks to help you use Chrome on Android effectively that you may not know

Chrome on Android is a great browser out of the box, but you can make it even better. These tips and features will help you browse the web faster.

7 Ways Smartphones Are Getting Worse

7 Ways Smartphones Are Getting Worse

When you compare smartphones from nearly two decades ago and today, you can't help but notice that they've gotten worse in a variety of ways.

What is an APK file? How to download and install an APK file?

What is an APK file? How to download and install an APK file?

Just like the .exe file on the Windows operating system is used to install software, the same is true on the Android operating system. APK files on the Android operating system are used to install software on the system. So how to download and install APK files on Android devices, please refer to the article below of WebTech360.

Instructions to turn videos into beautiful wallpapers on Android phones

Instructions to turn videos into beautiful wallpapers on Android phones

Are you bored with static wallpapers on your phone? Try this method of turning videos into beautiful wallpapers for Android.

9 Android Phone Lock Screen Security Settings

9 Android Phone Lock Screen Security Settings

The lock screen on your phone or tablet is a tool designed to prevent strangers from accessing your device. Because of this importance, setting up the lock screen in the safest and most reasonable way is something every user should do. The article below summarizes 4 things you should apply to the lock screen on Android and iOS to master the above feature and protect your device from unauthorized access.

How to extract, copy text from photos on iPhone

How to extract, copy text from photos on iPhone

Today's technological developments can allow you to directly extract text from images captured with a smartphone camera.

How to set a face-uncovering wallpaper on iOS 16 to “follow the trend”

How to set a face-uncovering wallpaper on iOS 16 to “follow the trend”

As soon as you update your iPhone to the official iOS 16 version, you will be able to set an iPhone wallpaper without covering your face when adjusting the wallpaper according to the depth effect.

4 must-have photo editing apps for iPhone

4 must-have photo editing apps for iPhone

While Apple's Photos app is useful for basic tasks like cropping photos, it doesn't offer many advanced editing features. And that's where a third-party photo editor comes in handy.