Actively exploited Android zero-day forces emergency June security update
Google $GOOGL confirmed a zero-day in the core Android Framework is being actively exploited in the wild. The elevation-of-privilege flaw lets a malicious app gain higher system access and affects Android 14, 15, and 16. The fix ships in the June security update, which closed mor
Google $GOOGL has confirmed that a zero-day vulnerability in the core Android Framework, the layer of system services every app communicates with, is under active exploitation in the wild. The flaw is an elevation-of-privilege bug that lets a malicious app climb to higher system access than it should ever have. Google described the exploitation as limited and targeted, its usual phrasing for confirmed real-world attacks. The attack vector is local, so the most likely path is a trojanized app a user is tricked into installing. It affects Android 14, 15, and 16. Google shipped the fix in its June security bulletin with two patch levels for the month, and the same update closed more than a hundred other security flaws. The patch is rolling out now and reaches different devices on different dates.