Pixel 2 and later phones banned at a company after dangerous uninstallable app was discovered

2comments
Pixel 2 and later phones banned at a company after dangerous uninstallable app was discovered
The majority of Pixel 2 and later Google phones contain a feature that cybercriminals can exploit to snoop on a user or remotely control their devices, per mobile threat hunting firm iVerify.

iVerify shared its findings with The Washington Post, which reports that Google's master software for Pixel phones included a feature that gave Verizon sales staff deep access to the devices to help with demos.

This feature has security flaws. This came to light after Verify’s endpoint detection and response (EDR) scanner revealed an insecure Android device at Palantir Technologies, an iVerify client that makes defense software solutions for the US army.

When the matter was investigated by iVerify, Palantir, and Trail of Bits, it was discovered that Google's Pixel devices contained a hidden Android app called Showcase, developed by software maker Smith Micro. For a third-party app, it has a disturbingly high level of privilege

iVerify researchers suspect that other Android devices may also have the app.

Recommended For You

Showcase is an otherwise dormant app that can be enabled by cybercriminals remotely, though Google denies that and says physical possession and user password would be required for exploitation of the app.

When Showcase is active, it downloads instructions from an insecure website. Hackers can intercept the data that is transmitted and even send malicious spying instructions instead.

It cannot be deleted from phones by users, which means millions of Pixel devices out there are susceptible to man-in-the-middle attacks.

Ed Fernandez, Google spokesperson, August 2024

Given the nature of what Palantir does, it immediately banned Android devices at its offices. The company shared the findings with Google 90 days ago and the search giant told The Washington Post today that it would roll out an update in the coming weeks to remove the application. Google spokesperson Ed Fernandez also said that he wasn't aware of any device getting hacked through Showcase and that it would be unlikely.

Dane Stuckey, Palantir CEO, August 2024


The app is not present on the Pixel 9 series.

Grab the Pixel 10 at Mint Mobile for $450 off

$349
$799
$450 off (56%)
Mint Mobile now sells the Google Pixel 10 with a massive $450 discount. The promo is available on select color variants with 128GB of storage. You also get a 12-month unlimited data plan for $180 instead of $360.
Buy at Mint Mobile

Pixel 10 Pro: now $475 off at Mint

$524
$999
$475 off (48%)
Grab the pro-grade, compact Pixel 10 Pro at Mint Mobile with a 12-month unlimited plan, and you can save a huge $475. The data plan comes with a discount, too: 50% off, to be exact.
Buy at Mint Mobile

The Pixel 10 Pro XL is $700 off at Mint right now

$499
$1199
$700 off (58%)
The high-end Gemini AI-enhanced Pixel 10 Pro XL is now available with a mind-blowing discount. You can now save $700 on the phone, plus 50% off unlimited 12-month plans.
Buy at Mint Mobile

The Pixel 10 Pro Fold is now $400 off

$1399
$1799
$400 off (22%)
The foldable Pixel 10 Pro Fold is another standout holiday offer. Right now, you can get the device for $400 off at Mint Mobile. On top of that, you save $180 on 12-month unlimited data plans.
Buy at Mint Mobile
Google News Follow
Follow us on Google News
COMMENTS (2)

Latest Discussions

by 30zpark • 3

Recommended For You

FCC OKs Cingular\'s purchase of AT&T Wireless