Friday, April 3, 2015

The Good the Bad and the Ugly: Xposed modules the Roms and security

Xposed Framework is a "layer" that we installed so simple in our phone and we will  allow to make small modifications to the phone without changing ROM.  If we got tired and did not want a module   apk with which we add the functions and we again have uninstalled the smartphone as usual. However thanks to the popularity of this type of repositories comes a discussion about security .Although Xposed Framework is regularly updated  is not in the hands of its creator but the developers of each module where the modules do not contain bugs exploits and other bugs that could threaten the stability of our smartphone and associated services we have in him.

Known Code

The code ROMs like Cyanogen Paranoid or OMNIrom is free known and reviewed by many  which ensures that there is minimal significant hazards. But there ROMs and modules Xposed many developers. Some of these ROMs no longer variations of other known but which have been able to add anything from bugs to inadvertently modified apks to consciousness for their own benefit. And of course to be guarded by only a few need to be aware.  Xposed happens in the same way that there are other repositories such as F-droid the code is revisable by their creators and can be filtered to show only those with credentials validated but not everyone uses these options. It is difficult to analyze the code of many modules and also because they do not have to have liberalized. already have seen problems in Chrome and its extensions with malware so this would be something similar. Framework   We have always said that Android and viruses is a thing of the past  but through applications like Xposed we can find less reliable modules. If there are applications that are malware and removed shortly afterwards in Xposed something similar happens in Play Store with the difference that there are fewer eyes watching included. The importance of open source is vital to the security but the developers know many users are driven by the incredible new features get without noticing all the code behind. Because remember that in Xposed not even need to have root permissions. 

Notices to Users

There are many applications that do not need special permits or root access but significantly modify the system. CyanogenMod is working to alert users that some modules could tinker certain sensitive areas of Android.  Everything is little to improve the safety of our androids. Have you tried Xposed Framework? Did you find any module unreliable? Should we put more care in what we install and not get carried away by the excitement of all?

No comments:

Post a Comment