A new version of the RedHook Android malware abuses the Android Wireless Debugging (Wireless ADB) mechanism in a novel way to gain shell-level privileges without requiring a computer connection.
Google platform engineers are discussing and evaluating restricting the Android Debug Bridge daemon (adbd) to external interfaces, such as Wi-Fi (wlan0). Blocking “localhost loopback” addresses would ...