Security Policy Update - Yay Or Nay? - Verizon Samsung Galaxy S6

Just received a security policy update push message:
I'm wondering whether to accept and install or no? Security is great, blocking my currently working WiFi tether ala Foxfi is not great. I'm not saying it would do that but I'm also not sure about the intent of these updates. Anybody have thoughts or previous experience with this feature?

Related

Samsung JACK SGH-i637

well ATT sticks it to us again.
I cant seem to drop the security level on my phone.
I get a tier-two security prompt.
I also tried changing the registry security policy using CeReg editor and no luck.
Has anyone out there had any luck dropping the security level down.
Also GPS seems to be disabled.
I just found another POst with same question.
Sorry for the duplicate Post.
Unlock here:
http://pocketnow.com/index.php?a=portal_detail&t=news&id=7565
Make sure after you install clearsecurity.cab and do the provisioning with microsoft security center, that you uninstall the SOTI clear security or you will have terrible battery life.

[Q] network may be monitored

Hi, I just got my Nexus 5 yesterday and everyone is fine until I install a certificate that is required to connect to my University's wireless network.
The installation is fine, but after that I got a warning saying network may be monitored. I know I can get rid of it temporarily by swipe it away, but is there any way to disable this warning permanently? (see the attachment if my wording is confusing)
I am seeing this same thing in relation to the use of my own personal certificates. The issue stems from the use of private CA cert which I use for my local lan and vpn. Google has decided to enable CA certificate pinning as a security measure I guess hopefully there is a way to disable this.

How do you disable FCC mandated updates?

I already can and do disable auto updates of apps and system so I can choose when/if to do them BUT VZW let me know that updates can be mandated by the FCC and get forced on owners regardless of phone settings.
I assume that if we can find out the url these updates come from then any app can add a false ip (1.2.3.4) to that domain/address but the question is:
Where do these updates come from?
I don't mind doing updates but I can't afford to have issues with an update that did not go well while on the road for work and I as the phone owner should have the choice to update or not. Unless the FCC wants to start cutting out their taxes or paying for the phones - HANDS OFF.
On a side note can we start a "hand off my phone" movement to petition the FCC to stop all mandatory changes to any phone?

blue tooth

Someone keeps turning on blue tooth while on public WiFi were to locate and rid of certificates or intrusive coding
raymondbernard said:
Someone keeps turning on blue tooth while on public WiFi were to locate and rid of certificates or intrusive coding
Click to expand...
Click to collapse
You need to provide more info ie what version of Android & security patch date .
Anyhow, You should always use a VPN when accessing a public wifi, only use a trusted provider (many VPN companies are dodgy, they severe you their adds, harvest your data etc many even appear to be controlled by governments ef China, Iran, etc) Use a list of trusted VPN's from a trusted organisation like like the EFF ... though you may trust someone else more ...) Set up a VPN and see if Bluetooth starts, before messing with certs.
Do you have Bluetooth tethering on? Some apps may be able to create a hotspot if allowed.
See "user credentials" in settings for any EXTRA installed certificates, normally this will be empty, unless you or your work or an app have installed a certificate.
Do not mess with system certificates unless you know what you are doing. however you can probably disable most of them, I have, you just have to remember that if you get error msgs warnings from apps or websites this is likely why. Which ones you disable will depend on who you trust & which country you are in.
IronRoo said:
You need to provide more info ie what version of Android & security patch date .
Anyhow, You should always use a VPN when accessing a public wifi, only use a trusted provider (many VPN companies are dodgy, they severe you their adds, harvest your data etc many even appear to be controlled by governments ef China, Iran, etc) Use a list of trusted VPN's from a trusted organisation like like the EFF ... though you may trust someone else more ...) Set up a VPN and see if Bluetooth starts, before messing with certs.
Do you have Bluetooth tethering on? Some apps may be able to create a hotspot if allowed.
See "user credentials" in settings for any EXTRA installed certificates, normally this will be empty, unless you or your work or an app have installed a certificate.
Do not mess with system certificates unless you know what you are doing. however you can probably disable most of them, I have, you just have to remember that if you get error msgs warnings from apps or websites this is likely why. Which ones you disable will depend on who you trust & which country you are in.
Click to expand...
Click to collapse
Android patch January 1 2018
Version=asks v 1.4 released on 161228
SMR-jan 1 2018 release MS
No Bluetooth tethering is disabled
System certificates are disabled I do know what doing
When running VPN Bluetooth still sometimes turns on anyway to trace path of access
raymondbernard said:
Android patch January 1 2018
Version=asks v 1.4 released on 161228
SMR-jan 1 2018 release MS
No Bluetooth tethering is disabled
System certificates are disabled I do know what doing
When running VPN Bluetooth still sometimes turns on anyway to trace path of access
Click to expand...
Click to collapse
Sorry, just trying to cover all possibilities as I have no idea what you know about security certs, so I try not to assume anything, though I did assume you have turned off Bluetooth scanning already ? Was there a reason you suspect BT certs is your problem? Is there another device listed as connected to your phone when BT turns itself on?
OK, good you are on a relatively recent security patch it seems so many vulnerabilities should already be patched, if it is actually some sort of security issue you have. That said there have already been some Bluetooth related vulnerabilities in 2019 eg this one from March CVE-2019-2009, but it needs BT turned on already, so not your problem. (should have also asked before are you on stock with selinux enforcing?)
I believe Google Play services can sometimes turn on Bluetooth, check "recent location requests" in settings (also might show you another app that is doing it?) Then you can go to, settings> apps> advanced>permissions>location & change setting for Play Services This might of course affect other features you want ... so maybe turn off another app listed there especially if it was listed in "recent location requests" when BT has turned itself on.
No other devices listed on my account
Am useing stock selinux enforcing not google play services as it only gets turned on when on public WiFi will check locations history
raymondbernard said:
No other devices listed on my account
Am useing stock selinux enforcing not google play services as it only gets turned on when on public WiFi will check locations history
Click to expand...
Click to collapse
Good, you should be pretty secure then.
As I understand it, Play Services can be used by other apps to send location requests, it may activate location when it sees a public wifi, so it could be why some people have reported it turning on Bluetooth as this is also part of location. However I'm not 100% clear exactly how this works, so I may be wrong.
Do you know anything about setting up bitcoin wallets as it won't confirm my I'D I've tried several times
raymondbernard said:
Do you know anything about setting up bitcoin wallets as it won't confirm my I'D I've tried several times
Click to expand...
Click to collapse
sorry, no

VPN Issues

I'm thinking this is more of an Android 10 issue. I cannot use ANY VPN when on Wifi. It's not my router. I've tried different routers. If I'm on Wifi, VPNs will connect, but I'll immediately lose all internet. If I turn the VPN off, I have to flip Wifi off and on again in order to get my connection back. This doesn't happen on 5G. I'm using AT&T.
I don't plan on rooting, and I cannot use an adblocker because most of them require creating a VPN connection. Any suggestions?
Ya this is an LG software issues... I read in the blokada thread someone who was getting help and the dev said it was our device fault. Then the person said they got a software update and it fixed their issue.
I guess we just have to wait for LG to send us a new security patch fixing the issue ?*
danial.aw said:
Ya this is an LG software issues... I read in the blokada thread someone who was getting help and the dev said it was our device fault. Then the person said they got a software update and it fixed their issue.
I guess we just have to wait for LG to send us a new security patch fixing the issue ?*
Click to expand...
Click to collapse
At first I thought it was my router. But, I tried at work too. I don't really use a VPN, but I want it because that's how non-root ad-blockers work. Oh well. Thanks.
danial.aw said:
Ya this is an LG software issues... I read in the blokada thread someone who was getting help and the dev said it was our device fault. Then the person said they got a software update and it fixed their issue.
I guess we just have to wait for LG to send us a new security patch fixing the issue ?*
Click to expand...
Click to collapse
Heh I think that was me ? It's working normally now and all I did was software update.
nimr0dv said:
Heh I think that was me ? It's working normally now and all I did was software update.
Click to expand...
Click to collapse
Which model do you have and also which security patch please
danial.aw said:
Which model do you have and also which security patch please
Click to expand...
Click to collapse
Model LM-G900UM
SW VERSION G900UM10e
Security June 1, 2020
I'm guessing there's no root for this phone.
mrsubway said:
Model LM-G900UM
SW VERSION G900UM10e
Security June 1, 2020
I'm guessing there's no root for this phone.
Click to expand...
Click to collapse
Weird I'm running the July 1st one 10d ... I don't really know how LGs scheming works but ya VPN won't work for me.
And nah pretty much forget any hope of root on our model since our bootloader is locked. Also this phones not that popular that we'll have devs creating bounties to try and put the effort
danial.aw said:
Weird I'm running the July 1st one 10d ... I don't really know how LGs scheming works but ya VPN won't work for me.
And nah pretty much forget any hope of root on our model since our bootloader is locked. Also this phones not that popular that we'll have devs creating bounties to try and put the effort
Click to expand...
Click to collapse
It works on 5G. It won't on wifi.
So no solution to this yet? Very annoying. As said above, VPN works with mobile connection, breaks connection when on wifi. Reported to LG (and where is even their link or address for reporting it)?
mlamm said:
So no solution to this yet? Very annoying. As said above, VPN works with mobile connection, breaks connection when on wifi. Reported to LG (and where is even their link or address for reporting it)?
Click to expand...
Click to collapse
Believe me. If there were a solution, it'd be posted here. I've fiddled with some settings. By the way. It's NOT DNS. I've tried loading raw ip addresses, and no go. What's odd is the vpns connect, which means that, somehow, THAT'S getting out. Weird.
Same stuff here on my LM-G900EM.
I've been using AdGuard for years without any glitch, but since last LG software update, no luck on wifi. Waiting for a new version from LG.
The latest October security patch that my phone just got fixed the VPN issue. So keep an eye out whenever you get the next security patch it should be fixed.
The horrible laggy scrolling in apps has been fixed as well.
LG launcher is still a POS though and still seems to redraw at times going back home... And the random lag going into the eecents screen still exists ?.
I miss the LG of the G2 and G3 days
I got an update on october 15, with september security patch. It changed nothing on my wifi/VPN behaviour...
mrsubway said:
I'm thinking this is more of an Android 10 issue. I cannot use ANY VPN when on Wifi. It's not my router. I've tried different routers. If I'm on Wifi, VPNs will connect, but I'll immediately lose all internet. If I turn the VPN off, I have to flip Wifi off and on again in order to get my connection back. This doesn't happen on 5G. I'm using AT&T.
I don't plan on rooting, and I cannot use an adblocker because most of them require creating a VPN connection. Any suggestions?
Click to expand...
Click to collapse
If you want adblocking without battery drain, just go to SETTINGS/NETWORK AND INTERNET/PRIVATE DNS... and type in dns.adguard.com. It will block most ads without a VPN or any other app installed and it's free. It's a built in function of Android 10
Ryano89 said:
If you want adblocking without battery drain, just go to SETTINGS/NETWORK AND INTERNET/PRIVATE DNS... and type in dns.adguard.com. It will block most ads without a VPN or any other app installed and it's free. It's a built in function of Android 10
Click to expand...
Click to collapse
Thank you! ??
@mrsubway @pomponazzo I got the same bug. There is a workaround to use VPN on wifi.
1. Connect to VPN on data connection.
2. Change to wifi.
3. Disable Data Connection.
4.Disable wifi.
5. Enable wifi and enjoy.
pok5 said:
@mrsubway @pomponazzo I got the same bug. There is a workaround to use VPN on wifi.
1. Connect to VPN on data connection.
2. Change to wifi.
3. Disable Data Connection.
4.Disable wifi.
5. Enable wifi and enjoy.
Click to expand...
Click to collapse
I can't believe that actually worked. Thanks for the workaround
I just got Android 11 update in Europe today. They finally fixed the VPN issue
So, this saga has finally ended. My firmware was G900UM10e. VPN bug, and phone would not take OTA. It kept saying I had the latest firmware. To their credit, AT&T support DID try everything. The phone wouldn't even take a push from their servers. New SIM card, factory reset, nada.
So, they sent a warranty replacement with G900UM10n loaded. VPN works perfect. I NEED it for work. And, today I managed to get G900UM10o over the air.
Either the IMEI of my old phone was MAJORLY hard bricked on their update server, or there was a bug in 10e blocking OTA.
Anyhoo, just wanted to share.
I also had such issues with my VPN. When I was connecting to a server, the Internet speed was slow. I changed different VPN until I decided to buy a licensed one. I bought the subscription on NordVPN because it is one of the best VPN, according to Reddit. The problem with slow Internet remained. I didn't know what to do. Then I understood that my internet connection at home is too and for using VPN. I had to change on fibro-optic cables to raise my Internet speed. When I changed the cables, all the problems were solved, and now it is working normally.

Categories

Resources