Android phones not running the latest Oreo OS are vulnerable to a high-severity “toast” overlay attack.
Security researchers warned of a high-severity Android flaw on Thursday that stems from what they call a “toast attack” overlay vulnerability. Researchers say criminals could use the Android’s toast notification, a feature that provides simple feedback about an operation in a small pop up, in an attack scenario to obtain admin rights on targeted phones and take complete control of them.
Source: Threatpost Android Users Vulnerable to ‘High-Severity’ Overlay Attacks