灯火互联
管理员
管理员
  • 注册日期2011-07-27
  • 发帖数41778
  • QQ
  • 火币41290枚
  • 粉丝1086
  • 关注100
  • 终身成就奖
  • 最爱沙发
  • 忠实会员
  • 灌水天才奖
  • 贴图大师奖
  • 原创先锋奖
  • 特殊贡献奖
  • 宣传大使奖
  • 优秀斑竹奖
  • 社区明星
阅读:1758回复:0

中兴(ZTE)手机存在后门 能拿到Root Shell

楼主#
更多 发布于:2012-08-23 11:36

转自:http://www.landofdroid.com/2012/security-zte-phones-root-backdoor/

It’s appearing that a root backdoor has appeared in ZTE phones, allowing full root to devices. It simply provides a root shell using a hard-coded password. This is serious news for any hackers, as this command can cause major damage to phones.

Here is the information, should you wish to have a go:

The ZTE Score M is an Android2.3.4(Gingerbread) phone available in the UnitedStates on MetroPCS, made by Chinese telecom ZTE Corporation.There is a setuid-root application at /system/bin/sync_agent that serves no function besides providing a root shell backdoor on the device.Just give the magic, hard-coded password to get a root shell:$ sync_agent ztex1609523# iduid=0(root) gid=0(root)Nice backdoor, ZTE.
It is confirmed on these devices:

ZTE Skate WWE edition
More as we hear…
If you have tested and got this to work for your devices, tell us in the comments or on any social networks.

We should know more when ZTE makes an announcement as to why this was included.

Source via Justin Case

喜欢0 评分0
游客

返回顶部